Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Winamp File Processing Buffer and Integer Overflow Vulnerabilities

Multiple vulnerabilities have been identified in Winamp, which could be exploited by attackers to cause a denial of service or execute arbitrary code.1. Due to an integer overflow error in the Matroska Demuxer (in_mkv.dll) when processing a malformed MKV files, which...
Last Update Date: 28 Jan 2011 Release Date: 15 Oct 2010 5666 Views

RISK: Medium Risk

Medium Risk

Oracle Sun Java JDK / JRE / SDK Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Sun Java, which can be exploited by malicious users to cause a DoS (Denial of Service) and by malicious people to disclose potentially sensitive information, manipulate certain data, and compromise a vulnerable system.
Last Update Date: 28 Jan 2011 Release Date: 14 Oct 2010 5970 Views

RISK: Medium Risk

Medium Risk

Oracle Sun Solaris Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Sun Solaris, which can be exploited by malicious users to manipulate certain data or cause a DoS (Denial of Service) and by malicious people to disclose sensitive information, manipulate certain data, cause a DoS (Denial of Service), ...
Last Update Date: 28 Jan 2011 Release Date: 14 Oct 2010 5724 Views

RISK: Medium Risk

Medium Risk

Oracle Sun StarOffice / StarSuite Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Oracle Sun StarOffice and StarSuite, which could be exploited by remote attackers to compromise a vulnerable system, manipulate certain information or bypass restrictions.
Last Update Date: 28 Jan 2011 Release Date: 14 Oct 2010 5622 Views

RISK: Medium Risk

Medium Risk

Opera Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Opera, which could allow attackers to gain knowledge of certain information, manipulate data or execute arbitrary code.1. An error when handling CSS files, which could allow cross domain scripting attacks.2. An error when manipulating the...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 5717 Views

RISK: Medium Risk

Medium Risk

Oracle Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Oracle, which could allow attackers to execute arbitrary code.
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 5680 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows OpenType Font Multiple Vulnerabilities ( 13 October 2010 )

1. OpenType Font Parsing VulnerabilityAn elevation of privilege vulnerability exists in the way that the Windows OpenType Font (OTF) format driver improperly parses specially crafted OpenType fonts. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 5411 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Server 2008 R2 Permissions on New Cluster Disks Vulnerability ( 13 October 2010 )

A tampering vulnerability exists in the way the Failover Cluster Manager user interface handles permissions on shared cluster disks. This vulnerability exists because the Failover Cluster Manager uses unsecured default permissions when adding disks to a cluster. When an administrator adds a disk to a shared cluster, ...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 5413 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows TLSv1 Denial of Service Vulnerability ( 13 October 2010 )

A denial of service vulnerability exists in the way that SChannel processes client certificates in implementations of Internet Information Services (IIS) 7. on Windows Server 2008 and Windows Vista, and in IIS 7.5 on Windows Server 2008 R2 and Windows 7. A remote...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 5465 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows LPC Message Buffer Overrun Vulnerability ( 13 October 2010 )

An elevation of privilege vulnerability exists in the Remote Procedure Call Subsystem (RPCSS) running in the context of the NetworkService account, where a local application can use LPC to request that the LPC server connect back to the client using LRPC. This request could contain specially...
Last Update Date: 28 Jan 2011 Release Date: 13 Oct 2010 5414 Views