Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Android Browser Certificate Spoofing Vulnerability

A vulnerability has been identified in Android, which can be exploited by malicious people to conduct spoofing attacks.The vulnerability is caused due to Browser displaying wrong certificate information, which can be exploited to trick a user into believing to be connected to a trusted site by...
Last Update Date: 28 Dec 2011 15:02 Release Date: 28 Dec 2011 5748 Views

RISK: Medium Risk

Medium Risk

IBM Lotus Domino Authentication Processing Denial of Service Vulnerability

A vulnerability has been identified in IBM Lotus Domino. A remote user can cause denial of service conditions.A remote user can send a specially crafted packet to the target Domino Server via Notes RPC to cause the target server to crash.The vulnerability occurs during Notes...
Last Update Date: 28 Dec 2011 14:55 Release Date: 28 Dec 2011 5923 Views

RISK: Medium Risk

Medium Risk

Mozilla Firefox / Thunderbird JAR File Handling Vulnerability

A vulnerability has been identified in Mozilla Firefox and Thunderbird, which can be exploited by malicious people to compromise a user's system.A malicious JAR file could be downloaded and executed if a user is convinced into holding down the "Enter" key via e...
Last Update Date: 23 Dec 2011 10:22 Release Date: 23 Dec 2011 6063 Views

RISK: High Risk

High Risk

Mozilla Products Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Mozilla Firefox, Thunderbird and SeaMonkey, which can be exploited by malicious people to disclose sensitive information and compromise a user's system. Some unspecified errors can be exploited to corrupt memory. An error exists within the YARR regular expression...
Last Update Date: 22 Dec 2011 12:22 Release Date: 22 Dec 2011 5679 Views

RISK: High Risk

High Risk

VLC Media Player "get_chunk_header()" Double-Free Vulnerability

A vulnerability has been identified in VLC Media Player, which potentially can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a double-free error within the "get_chunk_header()" function (modules/demux/ty...
Last Update Date: 22 Dec 2011 11:08 Release Date: 22 Dec 2011 5485 Views

RISK: Medium Risk

Medium Risk

IrfanView Multiple Vulnerabilities

Multiple vulnerabilities have been identified in IrfanView, which can be exploited by malicious people to compromise a user's system.Due to an error when processing TIFF images with certain "Rows Per Strip" and "Samples Per Pixel" values, which can be exploited...
Last Update Date: 21 Dec 2011 10:44 Release Date: 21 Dec 2011 5658 Views

RISK: High Risk

High Risk

Microsoft Windows win32k.sys Memory Corruption Vulnerability

A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to potentially compromise a user's system. The vulnerability is caused due to an error in win32k.sys and can be exploited to corrupt memory via e.g...
Last Update Date: 20 Dec 2011 11:09 Release Date: 20 Dec 2011 5832 Views

RISK: High Risk

High Risk

Tor "buf_pullup()" Buffer Overflow Vulnerability

A vulnerability has been identified in Tor, which can be exploited by malicious people to compromise a user's system.  The vulnerability is caused due to an error within the "buf_pullup()" function (or/buffers.c) when repacking data and can be...
Last Update Date: 20 Dec 2011 11:08 Release Date: 20 Dec 2011 5450 Views

RISK: Extremely High Risk

Extremely High Risk

Adobe Acrobat and Reader PDF Data Processing Code Execution Vulnerability

A vulnerability has been identified in Adobe Acrobat and Reader, which can be exploited to cause a crash and potentially allow attackers to take control of the affected system. Notes: Vendor supplied patch is currently unavailable.  There are reports that the vulnerability is being actively exploited...
Last Update Date: 19 Dec 2011 Release Date: 7 Dec 2011 6078 Views

RISK: Medium Risk

Medium Risk

RSA SecurID Software Token Insecure Library Loading Vulnerability

A vulnerability has identified in RSA SecurID Software Token, which can be exploited by malicious people to compromise a user's system.The vulnerability is caused due to the application loading libraries (e.g. wintab32.dll) in an insecure manner. This...
Last Update Date: 16 Dec 2011 10:43 Release Date: 16 Dec 2011 5868 Views