Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Safari Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple Safari, which could be exploited by remote attackers to disclose sensitive information, cause a denial of service or execute arbitrary code.1. An error in WebKit when handling URLs containing a colon character in the host name, which...
Last Update Date: 28 Jan 2011 Release Date: 18 Apr 2008 4656 Views

RISK: Medium Risk

Medium Risk

DivX Player Subtitle Parsing Client-Side Buffer Overflow Vulnerability

A vulnerability has been identified in DivX Player, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. This issue is caused by a buffer overflow error when parsing overly long subtitles, which could be exploited...
Last Update Date: 28 Jan 2011 Release Date: 17 Apr 2008 4724 Views

RISK: Medium Risk

Medium Risk

ClamAV PeSpin and Archives Processing Multiple Vulnerabilities

Multiple vulnerabilities have been identified in ClamAV (Clam AntiVirus), which could be exploited by attackers or malware to cause a denial of service or compromise a vulnerable system.1. Due to a heap overflow error in "libclamav/spin.c" when processing malformed...
Last Update Date: 28 Jan 2011 Release Date: 16 Apr 2008 4726 Views

RISK: Medium Risk

Medium Risk

ClamAV Upack Executable Processing Buffer Overflow Vulnerability

A vulnerability has been identified in Clam AntiVirus (ClamAV), which could be exploited by remote attackers or malware to cause a denial of service or take complete control of an affected system. This issue is caused by a buffer overflow error in the "cli_scanpe()" [libclamav...
Last Update Date: 28 Jan 2011 Release Date: 15 Apr 2008 4715 Views

RISK: Medium Risk

Medium Risk

Adobe Flash Player Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Adobe Flash Player, which could be exploited by remote attackers to bypass security restrictions, gain knowledge of sensitive information or take complete control of an affected system.1. Due to a buffer overflow error in the processing of "Declare...
Last Update Date: 28 Jan 2011 Release Date: 10 Apr 2008 4754 Views

RISK: Medium Risk

Medium Risk

Microsoft Internet Explorer Data Stream Handling Memory Corruption Vulnerability( 09 April 2008 )

A remote code execution vulnerability exists in Internet Explorer because of the way that it processes data streams. An attacker could exploit the vulnerability by constructing a specially crafted Web page. When a user views the Web page, the vulnerability could allow remote code execution. An...
Last Update Date: 28 Jan 2011 Release Date: 9 Apr 2008 4598 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows VBScript/JScript Remote Code Execution Vulnerability( 09 April 2008 )

A remote code execution vulnerability exists in the way that the VBScript and JScript scripting engines decode script in Web pages. This vulnerability could allow remote code execution if a user opened a specially crafted file or visited a Web site that is running specially crafted script. If...
Last Update Date: 28 Jan 2011 Release Date: 9 Apr 2008 4525 Views

RISK: Medium Risk

Medium Risk

Symantec Mail Security Attachment Parsing Vulnerabilities

Multiple vulnerabilities have been identifed in Symantec Mail Security for SMTP, Symantec Mail Security for Domino and Symantec Mail Security for Exchange, which can be exploited by malicious people to compromise a vulnerable system.The vulnerabilities are caused due to various errors within the third-party...
Last Update Date: 28 Jan 2011 Release Date: 9 Apr 2008 4695 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows GDI Overflow Vulnerability( 09 April 2008 )

1. GDI Heap Overflow VulnerabilityA remote code execution vulnerability exists in the way that GDI handles integer calculations. The vulnerability could allow remote code execution if a user opens a specially crafted EMF or WMF image file. An attacker who successfully exploited this vulnerability could take complete...
Last Update Date: 28 Jan 2011 Release Date: 9 Apr 2008 4483 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Kernel Vulnerability( 09 April 2008 )

An elevation of privilege vulnerability exists due to the Windows kernel improperly validating input passed from user mode to the kernel. The vulnerability could allow an attacker to run code with elevated privileges. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control...
Last Update Date: 28 Jan 2011 Release Date: 9 Apr 2008 4462 Views