Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Oracle Sun Java JDK / JRE / SDK Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Sun Java, which can be exploited by malicious users to cause a DoS (Denial of Service) and by malicious people to disclose potentially sensitive information, manipulate certain data, and compromise a vulnerable system.
Last Update Date: 28 Jan 2011 Release Date: 14 Oct 2010 5200 Views

RISK: Medium Risk

Medium Risk

Oracle Sun Solaris Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Sun Solaris, which can be exploited by malicious users to manipulate certain data or cause a DoS (Denial of Service) and by malicious people to disclose sensitive information, manipulate certain data, cause a DoS (Denial of Service), ...
Last Update Date: 28 Jan 2011 Release Date: 14 Oct 2010 5037 Views

RISK: Medium Risk

Medium Risk

Oracle Sun StarOffice / StarSuite Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Oracle Sun StarOffice and StarSuite, which could be exploited by remote attackers to compromise a vulnerable system, manipulate certain information or bypass restrictions.
Last Update Date: 28 Jan 2011 Release Date: 14 Oct 2010 4960 Views

RISK: Medium Risk

Medium Risk

Opera Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Opera, which could allow attackers to gain knowledge of certain information, manipulate data or execute arbitrary code.1. An error when handling CSS files, which could allow cross domain scripting attacks.2. An error when manipulating the...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 5045 Views

RISK: Medium Risk

Medium Risk

Oracle Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Oracle, which could allow attackers to execute arbitrary code.
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 4983 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows OpenType Font Multiple Vulnerabilities ( 13 October 2010 )

1. OpenType Font Parsing VulnerabilityAn elevation of privilege vulnerability exists in the way that the Windows OpenType Font (OTF) format driver improperly parses specially crafted OpenType fonts. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 4741 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Server 2008 R2 Permissions on New Cluster Disks Vulnerability ( 13 October 2010 )

A tampering vulnerability exists in the way the Failover Cluster Manager user interface handles permissions on shared cluster disks. This vulnerability exists because the Failover Cluster Manager uses unsecured default permissions when adding disks to a cluster. When an administrator adds a disk to a shared cluster, ...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 4737 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows TLSv1 Denial of Service Vulnerability ( 13 October 2010 )

A denial of service vulnerability exists in the way that SChannel processes client certificates in implementations of Internet Information Services (IIS) 7. on Windows Server 2008 and Windows Vista, and in IIS 7.5 on Windows Server 2008 R2 and Windows 7. A remote...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 4782 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows LPC Message Buffer Overrun Vulnerability ( 13 October 2010 )

An elevation of privilege vulnerability exists in the Remote Procedure Call Subsystem (RPCSS) running in the context of the NetworkService account, where a local application can use LPC to request that the LPC server connect back to the client using LRPC. This request could contain specially...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 4729 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Media Player Memory Corruption Vulnerability ( 13 October 2010 )

A remote code execution vulnerability exists in the way that the Windows Media Player deallocates objects during a reload operation via a Web browser. This vulnerability could allow code execution if a user visits a specially crafted Web page. If a user is logged on with administrative user...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 4723 Views