2011年3月9日水曜日

9日 水曜日、赤口

ウイルスバスター コーポレートエディション 10.5 Patch 1 リパック版 公開のお知らせ
http://www.trendmicro.co.jp/support/news.asp?id=1543

トレンドマイクロ オンラインストレージ SafeSync
容量無制限のサービスご利用のお客さまへの重要なお知らせ
http://www.trendmicro.co.jp/support/news.asp?id=1538

JVNTA11-067A Microsoft 製品における複数の脆弱性に対するアップデート
http://jvn.jp/cert/JVNTA11-067A/index.html

JVNVU#584356 Java for Mac OS における複数の脆弱性に対するアップデート
http://jvn.jp/cert/JVNVU584356/index.html

Apple updates Java
http://isc.sans.edu/diary.html?storyid=10513

JVNDB-2011-001209 Adobe Reader および Acrobat の ACE.dll における整数オーバーフローの脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001209.html

JVNDB-2011-001208 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001208.html

JVNDB-2011-001207 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001207.html

JVNDB-2011-001206 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001206.html

JVNDB-2011-001205 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001205.html

JVNDB-2011-001204 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001204.html

JVNDB-2011-001203 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001203.html

JVNDB-2011-001202 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001202.html

JVNDB-2011-001201 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001201.html

JVNDB-2011-001200 Adobe Reader および Acrobat における権限昇格の脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001200.html

JVNDB-2011-001199 Adobe Reader および Acrobat におけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001199.html

JVNDB-2011-001198 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001198.html

JVNDB-2011-001197 Adobe Reader および Acrobat における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001197.html

JVNDB-2011-001196 Adobe Reader および Acrobat における権限昇格の脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001196.html

JVNDB-2011-001007 Linux kernel の net/packet/af_packet.c における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-001007.html

JVNDB-2010-002719 Linux kernel の wait_for_unix_gc 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002719.html

JVNDB-2010-002718 Linux kernel の sk_run_filter 関数における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002718.html

JVNDB-2010-002716 Linux kernel の uart_get_count 関数における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002716.html

JVNDB-2010-002715 Linux kernel の ipc サブシステムにおける重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002715.html

JVNDB-2010-002714 Linux kernel の copy_shmid_to_user 関数における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002714.html

JVNDB-2010-002710 Linux kernel の snd_hdsp_hwdep_ioctl 関数における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002710.html

JVNDB-2010-002676 Linux kernel の hci_uart_tty_open 関数におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002676.html

JVNDB-2010-002675 Linux kernel の ioc_general 関数における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002675.html

JVNDB-2010-002674 Linux kernel の copy_semid_to_user 関数における重要な情報を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002674.html

JVNDB-2010-002672 Linux kernel の TIPC 実装における権限を取得される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-002672.html

JVNDB-2011-000018 IBM Lotus におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-000018.html

JVNDB-2011-000017 IBM WebSphere Application Server におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-000017.html

JVNDB-2011-000016 IBM DB2 におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-000016.html

Red Hat Enterprise Linux Kernel lockd Use-After-Free Flaw Lets Remote Users Deny Service
http://www.securitytracker.com/id/1025176

ClamAV 'vba_read_project_strings()' Double Free Memory Corruption Vulnerability
http://www.securityfocus.com/bid/46470

ClamAV 'cli_pdf()' PDF File Processing Denial Of Service Vulnerability
http://www.securityfocus.com/bid/40317




+ マイクロソフト セキュリティ情報 2011 年 3 月のセキュリティ情報
http://www.microsoft.com/japan/technet/security/bulletin/ms11-mar.mspx

+ MS11-015 Windows Media の脆弱性により、リモートでコードが実行される (2510030)
http://www.microsoft.com/japan/technet/security/bulletin/MS11-015.mspx

+ MS11-017リモート デスクトップ クライアントの脆弱性により、リモートでコードが実行される (2508062)
http://www.microsoft.com/japan/technet/security/bulletin/MS11-017.mspx

+ Microsoft .NET Runtime Optimization Service Local Privilege Escalation
http://www.vupen.com/english/advisories/2011/0614
http://www.securityfocus.com/bid/46773
http://www.exploit-db.com/exploits/16940/

+ Apache Tomcat 7.0.10 released
http://tomcat.apache.org/tomcat-7.0-doc/changelog.html

+ RHSA-2011:0327-1: Moderate: subversion security and bug fix update
http://rhn.redhat.com/errata/RHSA-2011-0327.html

+ Linux Kernel Native Instruments USB Device Name String Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/46419

+ Linux Kernel 'oops' on Reset NULL Pointer Dereference Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/46793

+ PHP 'shmop_read()' Remote Integer Overflow Vulnerability
http://www.securityfocus.com/bid/46786

++ GNU patch Directory Traversal Vulnerability
http://secunia.com/advisories/43677/

- MS11-016 Microsoft Groove の脆弱性により、リモートでコードが実行される (2494047)
http://www.microsoft.com/japan/technet/security/bulletin/MS11-016.mspx

- Important: Security constraint bypass CVE-2011-1088
http://tomcat.apache.org/security-7.html
http://www.securityfocus.com/bid/46685

- Linux Kernel RPC Server Socket Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/46790

UPDATE: MS11-003 (緊急) Internet Explorer 用の累積的なセキュリティ更新プログラム (2482017)
http://www.microsoft.com/japan/technet/security/bulletin/MS11-003.mspx

UPDATE: MS11-004 (重要) インターネット インフォメーション サービス (IIS) の FTP サービスの脆弱性により、リモートでコードが実行される (2489256)
http://www.microsoft.com/japan/technet/security/bulletin/MS11-004.mspx

UPDATE: MS11-007 (緊急) OpenType Compact Font Format (CFF) ドライバーの脆弱性により、リモートでコードが実行される (2485376)
http://www.microsoft.com/japan/technet/security/bulletin/MS11-007.mspx

UPDATE: MS11-009 (重要) JScript および VBScript スクリプト エンジンの脆弱性により、情報漏えいが起こる (2475792)
http://www.microsoft.com/japan/technet/security/bulletin/MS11-009.mspx

RHSA-2011:0328-1: Moderate: subversion security update
http://rhn.redhat.com/errata/RHSA-2011-0328.html

RHSA-2011:0329-1: Important: kernel security update
http://rhn.redhat.com/errata/RHSA-2011-0329.html

About the security content of Java for Mac OS X 10.5 Update 9
http://support.apple.com/kb/HT4563

About the security content of Java for Mac OS X 10.6 Update 4
http://support.apple.com/kb/HT4562

Chrome 10.0.648.127 released
http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.html

トレンドマイクロ オンラインストレージ SafeSync クライアントソフト 最新ビルド公開のお知らせ
http://www.trendmicro.co.jp/support/news.asp?id=1542

UPDATE: 2491888: Vulnerability in Microsoft Malware Protection Engine Could Allow Elevation of Privilege
http://www.microsoft.com/technet/security/advisory/2491888.mspx
http://www.microsoft.com/japan/technet/security/advisory/2269637.mspx

UPDATE: 2269637: Insecure Library Loading Could Allow Remote Code Execution
http://www.microsoft.com/technet/security/advisory/2269637.mspx
http://www.microsoft.com/japan/technet/security/advisory/2491888.mspx

Independent Researcher : Kodak InSite Login Page Cross-Site Scripting
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35242

Mandriva : [MDVSA-2011:042] mozilla-thunderbird
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35240

Red Hat : [RHSA-2011:0324-01] logwatch: Important Advisory
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35239

SuSE : [SUSE-SA:2011:011] acroread
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35238

Ubuntu Security Notice : [USN-1049-2] Firefox and Xulrunner vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35235

Ubuntu Security Notice : [USN-1084-1] avahi vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35236

Ubuntu Security Notice : [USN-1085-1] tiff vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35237

Independent Researcher : Plaintext injection in STARTTLS (multiple implementations)
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35241

TEHTRI-Security : [TEHTRI-SA-2010-036] Security and iPhone iOS 4.3 Personal Hotspot feature
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35244

VMware : [VMSA-2011-0004] VMware ESX/ESXi SLPD denial of service vulnerability and ESX third party updates
http://www.criticalwatch.com/support/security-advisories.aspx?AID=35243

ゼロデイ攻撃も防ぐ「目玉製品」でシェア拡大狙う――シマンテック
企業戦略説明会を開催、大企業向けビジネスやクラウドにも注力
http://itpro.nikkeibp.co.jp/article/NEWS/20110309/358111/?ST=security

March 2011 Microsoft Black Tuesday Summary
http://isc.sans.edu/diary.html?storyid=10510

Windows Remote Desktop Client DLL Loading Error Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1025172

Microsoft Groove DLL Loading Error Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1025171

Microsoft DirectShow DLL Loading Error Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1025170

Windows Media Player and Windows Media Center Error in Parsing '.dvr-ms' Files Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1025169

VMware ESX SLPD Bug Lets Remote Users Deny Service
http://www.securitytracker.com/id/1025168

Microsoft Windows DirectShow/Windows Media Two Vulnerabilities
http://secunia.com/advisories/43626/

Microsoft Windows Remote Desktop Client Insecure Library Loading Vulnerability
http://secunia.com/advisories/43628/

Automne Arbitrary File Upload Vulnerability
http://secunia.com/advisories/43589/

NetBSD sysctl Tree Handler Denial of Service Vulnerability
http://secunia.com/advisories/43637/

WordPress GRAND Flash Album Gallery Plugin File Disclosure and SQL Injection Vulnerabilities
http://secunia.com/advisories/43648/

Fedora update for patch
http://secunia.com/advisories/43663/

Linksys WAG120N Cross-Site Request Forgery Vulnerability
http://secunia.com/advisories/43510/

Joomla! Multiple Vulnerabilities
http://secunia.com/advisories/43658/

BMForum Myna "forumid" SQL Injection Vulnerability
http://secunia.com/advisories/43636/

WordPress 1 Flash Gallery Plugin Multiple Vulnerabilities
http://secunia.com/advisories/43640/

GNU patch Directory Traversal Vulnerability
http://secunia.com/advisories/43677/

Fedora update for kernel
http://secunia.com/advisories/43668/

Focalmedia Quick Polls File Inclusion and File Deletion Vulnerabilities
http://secunia.com/advisories/43599/

Ipswitch IMail Server "STARTTLS" Plaintext Injection Vulnerability
http://secunia.com/advisories/43676/

Ubuntu update for avahi
http://secunia.com/advisories/43673/

Ubuntu update for tiff
http://secunia.com/advisories/43674/

HP OpenView Network Node Manager Denial of Service Vulnerability
http://secunia.com/advisories/43659/

Postfix "STARTTLS" Plaintext Injection Vulnerability
http://secunia.com/advisories/43646/

Red Hat update for logwatch
http://secunia.com/advisories/43644/

Fedora update for libtiff
http://secunia.com/advisories/43664/

VMware ESX Server Service Console Multiple Vulnerabilities
http://secunia.com/advisories/43675/

VMware ESX Server / ESXi Service Location Protocol Daemon Denial of Service
http://secunia.com/advisories/43601/

Oracle Solaris Kerberos Standalone Mode Denial of Service Vulnerability
http://secunia.com/advisories/43642/

LOCAL: Movavi VideoSuite 8.0 MediaPlayer m3u Buffer Overflow
http://www.exploit-db.com/exploits/16942/

DoS/PoC: Nokia N97 m3u Playlist Crash PoC
http://www.exploit-db.com/exploits/16945/

DoS/PoC: Movavi VideoSuite 8.0 Movie Editor avi Local Crash PoC
http://www.exploit-db.com/exploits/16944/

DoS/PoC: Movavi VideoSuite 8.0 SlideShow jpg Local Crash PoC
http://www.exploit-db.com/exploits/16943/

Microsoft Windows Remote Desktop Client Insecure Library Loading (MS11-017)
http://www.vupen.com/english/advisories/2011/0616

Microsoft Windows Media Remote Code Execution Vulnerabilities (MS11-015)
http://www.vupen.com/english/advisories/2011/0615

Microsoft .NET Runtime Optimization Service Local Privilege Escalation
http://www.vupen.com/english/advisories/2011/0614

SCOoffice Server STARTTLS Plaintext Command Injection Vulnerability
http://www.vupen.com/english/advisories/2011/0613

Qmail-TLS STARTTLS Protocol Plaintext Command Injection Vulnerability
http://www.vupen.com/english/advisories/2011/0612

Postfix STARTTLS Protocol Plaintext Command Injection Vulnerability
http://www.vupen.com/english/advisories/2011/0611

Kerio Products STARTTLS Plaintext Command Injection Vulnerability
http://www.vupen.com/english/advisories/2011/0610

Ipswitch IMail Server STARTTLS Plaintext Command Injection Vulnerability
http://www.vupen.com/english/advisories/2011/0609

Foxit Reader "createDataObject()" Arbitrary File Creation Vulnerability
http://www.vupen.com/english/advisories/2011/0608

Oracle Sun Solaris Kerberos Remote Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2011/0607

VMware ESX and ESXi Multiple Security Bypass and Denial of Service
http://www.vupen.com/english/advisories/2011/0606

HP OpenView Network Node Manager Java Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2011/0605

NetBSD Security Update Fixes "kern.proc" Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2011/0604

NetBSD Security Update Fixes OpenSSL ClientHello Vulnerability
http://www.vupen.com/english/advisories/2011/0603

Ubuntu Security Update Fixes LibTIFF Code Execution Vulnerabilities
http://www.vupen.com/english/advisories/2011/0602

Ubuntu Security Update Fixes Avahi Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2011/0601

Fedora Security Update Fixes Patch Directory Traversal File Creation
http://www.vupen.com/english/advisories/2011/0600

Fedora Security Update Fixes LibTIFF Fax4Decode Buffer Overflow
http://www.vupen.com/english/advisories/2011/0600

Fedora Security Update Fixes Kernel Privilege Escalation and DoS
http://www.vupen.com/english/advisories/2011/0598

Fedora Security Update Fixes Firefox and Xulrunner Vulnerabilities
http://www.vupen.com/english/advisories/2011/0597

Redhat Security Update Fixes Logwatch Command Injection Vulnerability
http://www.vupen.com/english/advisories/2011/0596

SuSE Security Update Fixes Acroread Code Execution Vulnerabilities
http://www.vupen.com/english/advisories/2011/0595

Mandriva Security Update Fixes Thunderbird Multiple Vulnerabilities
http://www.vupen.com/english/advisories/2011/0595

RETIRED: Microsoft March 2011 Advance Notification Multiple Vulnerabilities
http://www.securityfocus.com/bid/46675

Oracle Java Floating-Point Value Denial of Service Vulnerability
http://www.securityfocus.com/bid/46091

Oracle Java SE and Java for Business CVE-2010-4473 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46403

Oracle Java SE and Java for Business CVE-2010-4471 Remote Security Vulnerability
http://www.securityfocus.com/bid/46399

Oracle Java SE and Java for Business CVE-2010-4469 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46400

Oracle Java SE and Java for Business CVE-2010-4472 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46404

Oracle Java SE and Java for Business CVE-2010-4470 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46387

Oracle Java Applet Clipboard Injection Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/46406

Oracle Java SE and Java for Business CVE-2010-4468 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46393

Oracle Java SE and Java for Business CVE-2010-4448 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46398

Oracle Java SE and Java for Business Java Runtime Environment CVE-2010-4454 Remote Vulnerability
http://www.securityfocus.com/bid/46391

Oracle Java SE and Java for Business CVE-2010-4450 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46397

Oracle Java SE and Java for Business Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/46394

Oracle Java SE and Java for Business CVE-2010-4447 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46409

Oracle Java SE and Java for Business Java Runtime Environment Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/46386

Oracle Java SE and Java for Business CVE-2010-4467 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/46395

Oracle Java SE and Java for Business CVE-2010-4422 Remote Vulnerability
http://www.securityfocus.com/bid/46402

Subversion 'mod_dav_svn' Apache Server NULL Pointer Dereference Denial Of Service Vulnerability
http://www.securityfocus.com/bid/46734

Wireshark 1.4.3 and 1.2.14 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/46626

Wireshark Visual C++ Analyzer Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/46416

Wireshark '.pcap' File Memory Corruption Vulnerability
http://www.securityfocus.com/bid/46167

Microsoft IIS FTP Service Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/45542

Microsoft Internet Explorer DLL Loading Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/46159

Microsoft Internet Explorer 'mshtml.dll' Dangling Pointer Vulnerability
http://www.securityfocus.com/bid/46158

Microsoft Internet Explorer CSS Parsing Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/45246

Microsoft Internet Explorer CVE-2011-0035 Uninitialized Memory Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/46157

Microsoft Windows OpenType Compact Font Format Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/46106

Microsoft Groove 2007 'mso.dll' DLL Loading Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/42695

Microsoft VBScript and JScript Scripting Engines Information Disclosure Vulnerability
http://www.securityfocus.com/bid/46139

Linux Kernel FSGEOMETRY_V1 IOCTL Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/46417

Linux Kernel 'task_show_regs()' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/46421

Linux Kernel SCTP Local Race Condition Vulnerability
http://www.securityfocus.com/bid/45661

Linux Kernel 'install_special_mapping()' Local Security Bypass Vulnerability
http://www.securityfocus.com/bid/45323

Linux Kernel Native Instruments USB Device Name String Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/46419

Linux Kernel 'load_mixer_volumes()' Multiple Vulnerabilities
http://www.securityfocus.com/bid/45629

Linux Kernel 'irda_getsockopt()' Local Integer Underflow Vulnerability
http://www.securityfocus.com/bid/45556

Linux Kernel 'blk_rq_map_user_iov()' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/45660

Linux Kernel FUSE 'iov_length()' Local Privilege-Escalation Vulnerability
http://www.securityfocus.com/bid/46769

Linux Kernel 'security_filter_rule_init()' Local Security Bypass Vulnerability
http://www.securityfocus.com/bid/46323

Linux Kernel TIOCGICOUNT CVE-2010-4077 Information Disclosure Vulnerability
http://www.securityfocus.com/bid/45059

Linux Kernel TIOCGICOUNT 'serial_core.c' Information Disclosure Vulnerability
http://www.securityfocus.com/bid/43806

XFS Deleted Inode Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/42527

Xen 'blkback/blktap/netback' Leaked Kernel Thread Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/45039

Linux Kernel SCTP HMAC Handling Memory Corruption Vulnerability
http://www.securityfocus.com/bid/43701

Linux Kernel 'setup_arg_pages()' Denial of Service Vulnerability
http://www.securityfocus.com/bid/44301

Linux Kernel Multiple 'net/' Subsystems Local Information Disclosure Vulnerabilities
http://www.securityfocus.com/bid/44630

Linux Kernel 'execve()' Memory Expansion 'OOM-killer' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/45004

Linux Kernel 'AF_ECONET' Protocol NULL Pointer Dereference Denial of Service Vulnerability
http://www.securityfocus.com/bid/45321

Linux Kernel Block Layer Local Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/44793

Oracle Sun Solaris CVE-2010-4440 Local Security Vulnerability
http://www.securityfocus.com/bid/45888

Oracle Solaris CVE-2010-4443 Local Solaris Vulnerability
http://www.securityfocus.com/bid/45886

Oracle Sun Solaris CVE-2010-4446 Local Security Vulnerability
http://www.securityfocus.com/bid/45892

Oracle Solaris CVE-2010-4442 Local Kernel Vulnerability
http://www.securityfocus.com/bid/45891

Oracle Solaris CVE-2010-4459 Local Vulnerability
http://www.securityfocus.com/bid/45878

libTIFF CCITT Group 4 Encoded TIFF Image Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/46658

LibTIFF Multiple Remote Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/35652

LibTIFF 'TIFFroundup()' Remote Integer Overflow Vulnerability
http://www.securityfocus.com/bid/41011

Apache Tomcat '@ServletSecurity' Annotations Security Bypass Vulnerability
http://www.securityfocus.com/bid/46685

OpenSSL OCSP Stapling 'ClientHello' Handshake Message Parsing Security Vulnerability
http://www.securityfocus.com/bid/46264

MIT Kerberos 'kpropd' Remote Denial Of Service Vulnerability
http://www.securityfocus.com/bid/46269

Mozilla Firefox and SeaMonkey JavaScript Worker Use-After-Free Memory Corruption Vulnerability
http://www.securityfocus.com/bid/46663

Mozilla Firefox and SeaMonkey 'JSON.stringify()' Use-After-Free Memory Corruption Vulnerability
http://www.securityfocus.com/bid/46661

Mozilla Firefox/SeaMonkey Text Run Construction Memory Corruption Vulnerability
http://www.securityfocus.com/bid/46660

Mozilla Firefox and Thunderbird JPEG Image Decoding Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/46651

Mozilla Firefox/SeaMonkey Cross-Site Request Forgery Vulnerability
http://www.securityfocus.com/bid/46652

Mozilla Firefox and SeaMonkey JavaScript String Values Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/46650

Mozilla Firefox SeaMonkey and Thunderbird CVE-2011-0053 Multiple Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/46645

Mozilla Firefox/SeaMonkey 'eval()' Function Security Bypass Vulnerability
http://www.securityfocus.com/bid/46643

Mozilla Firefox CVE-2011-0062 Multiple Unspecified Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/46647

RPM Package Update and Removal File Attribute Security Bypass Vulnerabilities
http://www.securityfocus.com/bid/40512

pam-xauth Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/42472

PAM 'pam_namespace' Module Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/44590

Linux-PAM 'pam_env' and 'pam_mail' Modules Multiple Vulnerabilities
http://www.securityfocus.com/bid/43487

ISC BIND 9 DNSSEC Validation Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/45385

ISC BIND Key Algorithm Rollover Security Vulnerability
http://www.securityfocus.com/bid/45137

ISC BIND 9 'RRSIG' Record Type Negative Cache Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/45133

Adobe ColdFusion (CVE-2011-0584) Session Fixation Vulnerability
http://www.securityfocus.com/bid/46278

Adobe ColdFusion Administrator Console Information Disclosure Vulnerability
http://www.securityfocus.com/bid/46274

Adobe ColdFusion 'cfform' Tag Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/46277

Adobe ColdFusion (CVE-2011-0581) CRLF Injection Vulnerability
http://www.securityfocus.com/bid/46281

Adobe ColdFusion (CVE-2011-0580) Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/46273

Linux Kernel 'oops' on Reset NULL Pointer Dereference Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/46793

Movavi VideoSuite 8.0 Multiple Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/46791

Linux Kernel RPC Server Socket Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/46790

KDE kdelibs IP Address SSL Certificate Security Bypass Vulnerability
http://www.securityfocus.com/bid/46789

Icinga Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/46788

PHP 'shmop_read()' Remote Integer Overflow Vulnerability
http://www.securityfocus.com/bid/46786

Google Chrome prior to 10.0.648.127 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/46785

1 Flash Gallery WordPress Plugin Cross Site Scripting and SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/46783

PhotoSmash Galleries WordPress Plugin 'action' Parameter Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/46782

Inline Gallery WordPress Plugin 'do' Parameter Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/46781

GRAND Flash Album Gallery WordPress Plugin SQL Injection and Information Disclosure Vulnerabilities
http://www.securityfocus.com/bid/46777

Nokia N97 '.m3u' File Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/46776

NetBSD 'kern.proc' Sysctl Arguments Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/46775

WS Interactive Automne 'admin/upload-controler.php' Remote Arbitrary File Upload Vulnerability
http://www.securityfocus.com/bid/46774

Microsoft .NET Runtime Optimization Service Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/46773

Microsoft DirectShow DLL Loading Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/46682

Microsoft Windows Media Player/Windows Media Center '.dvr-ms' File Code Execution Vulnerability
http://www.securityfocus.com/bid/46680

Microsoft Remote Desktop Connection Client DLL Loading Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/46678

0 件のコメント:

コメントを投稿