Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

IBM AFP Viewer Plug-In "SRC" Property Buffer Overflow Vulnerability

A vulnerability has been identified in IBM AFP Viewer Plug-In, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. This issue is caused by a buffer overflow error when handling an overly long "...
Last Update Date: 28 Jan 2011 Release Date: 30 Jun 2008 5605 Views

RISK: Medium Risk

Medium Risk

Adobe Products JavaScript Method Code Execution Vulnerability

A vulnerability has been identified in Adobe Reader and Acrobat, which could be exploited by remote attackers to take complete control of an affected system. This issue is caused by an unspecified input validation error in a JavaScript method, which could allow attackers to execute arbitrary code...
Last Update Date: 28 Jan 2011 Release Date: 25 Jun 2008 5352 Views

RISK: Medium Risk

Medium Risk

HP-UX CIFS Server Multiple Vulnerabilities

Multiple vulnerabilities have been identified in HP-UX, which could be exploited by attackers to cause a denial of service or compromise a vulnerable system. These issues are caused by errors in CIFS Server.
Last Update Date: 28 Jan 2011 Release Date: 25 Jun 2008 5399 Views

RISK: Medium Risk

Medium Risk

Apple Safari for Windows Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Apple Safari, which could be exploited by remote attackers to disclose sensitive information or compromise a vulnerable system.1. Due to an error when handling BMP and GIF images, which could cause an out-of-bounds memory read...
Last Update Date: 28 Jan 2011 Release Date: 23 Jun 2008 5364 Views

RISK: Medium Risk

Medium Risk

Mozilla Firefox Unspecified Remote Code Execution Vulnerability

A vulnerability has been identified in Mozilla Firefox, which could be exploited by remote attackers to compromise a vulnerable system. This issue is caused by an unspecified error when processing certain data, which could allow attackers to execute arbitrary code by tricking a user into visiting a...
Last Update Date: 28 Jan 2011 Release Date: 20 Jun 2008 5297 Views

RISK: Medium Risk

Medium Risk

VMware ESX Server Multiple Vulnerabilities

Multiple vulnerabilities have been identified in VMware ESX Server, which could be exploited by remote attackers to bypass security restrictions, disclose sensitive information, cause a denial of service, or execute arbitrary commands and scripting code. These issues are caused by errors in Tomcat and JRE...
Last Update Date: 28 Jan 2011 Release Date: 18 Jun 2008 5354 Views

RISK: Medium Risk

Medium Risk

OpenOffice "rtl_allocateMemory()" Integer Overflow Vulnerability

A vulnerability has been identified in OpenOffice.org, which could be exploited by attackers to cause a denial of service or compromise an affected system. This issue is caused by an integer overflow error in the custom memory allocation function "rtl_allocateMemory()" when processing malformed data...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 5461 Views

RISK: Medium Risk

Medium Risk

SNMPv3 Authentication Bypass Vulnerability

A vulnerability has been identified in the way implementations of SNMPv3 handle specially crafted packets may allow authentication bypass.The Simple Network Management Protocol (SNMP) is a widely deployed protocol that is commonly used to monitor and manage network devices. SNMPv3 (RFC 3410) supports...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 5607 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows Pragmatic General Multicast (PGM) Multiple Vulnerabilities( 11 June 2008 )

1. PGM Invalid Length VulnerabilityA denial of service vulnerability exists in implementations of the Pragmatic General Multicast (PGM) protocol on Microsoft Windows XP and Windows Server 2003. The vulnerability is due to improper validation of specially crafted PGM packets. An attacker who successfully exploited this...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 5440 Views

RISK: Medium Risk

Medium Risk

Microsoft Windows WINS Memory Overwrite Vulnerability( 11 June 2008 )

An elevation of privilege vulnerability exists in the Windows Internet Name Service (WINS) in the way that WINS does not sufficiently validate the data structures within specially crafted WINS network packets. The vulnerability could allow a local attacker to run code with elevated privileges. An attacker...
Last Update Date: 28 Jan 2011 Release Date: 11 Jun 2008 5243 Views