|
Prev week |
Colapse all |
Post message
TPTI-11-05: Adobe Shockwave PFR1 Font Chunk Parsing Remote Code Execution Vulnerability 2011-02-09 ZDI Disclosures (zdi-disclosures tippingpoint com) TPTI-11-04: Adobe Shockwave GIF Logical Screen Descriptor Parsing Remote Code Execution Vulnerability 2011-02-09 ZDI Disclosures (zdi-disclosures tippingpoint com) TPTI-11-04: Adobe Shockwave GIF Logical Screen Descriptor Parsing Remote Code Execution Vulnerability http://dvlabs.tippingpoint.com/advisory/TPTI-11-04 February 8, 2011 -- CVE ID: CVE-2010-4189 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Sho [ more ] [ reply ] TPTI-11-02: Adobe Shockwave TextXtra Invalid Seek Remote Code Execution Vulnerability 2011-02-09 ZDI Disclosures (zdi-disclosures tippingpoint com) TPTI-11-02: Adobe Shockwave TextXtra Invalid Seek Remote Code Execution Vulnerability http://dvlabs.tippingpoint.com/advisory/TPTI-11-02 February 8, 2011 -- CVE ID: CVE-2011-0555 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Shockwave Player - [ more ] [ reply ] TPTI-11-01: Adobe Shockwave dirapi.dll IFWV Trusted Offset Remote Code Execution Vulnerability 2011-02-09 ZDI Disclosures (zdi-disclosures tippingpoint com) TPTI-11-01: Adobe Shockwave dirapi.dll IFWV Trusted Offset Remote Code Execution Vulnerability http://dvlabs.tippingpoint.com/advisory/TPTI-11-01 February 8, 2011 -- CVE ID: CVE-2010-4188 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Shockwave [ more ] [ reply ] RE: Microsoft Terminal Services vulnerable to MITM-attacks. 2011-02-09 Jim Harrison (Jim isatools org) Not if you use smartcard authentication. -----Original Message----- From: sam.vaughey (at) gmail (dot) com [email concealed] [mailto:sam.vaughey (at) gmail (dot) com [email concealed]] Sent: Tuesday, February 08, 2011 6:16 AM To: bugtraq (at) securityfocus (dot) com [email concealed] Subject: Re: Microsoft Terminal Services vulnerable to MITM-attacks. Does this issue still exist ? [ more ] [ reply ] Re: Microsoft Terminal Services vulnerable to MITM-attacks. 2011-02-09 Ansgar Wiechers (bugtraq planetcobalt net) On 2011-02-08 sam.vaughey (at) gmail (dot) com [email concealed] wrote: > Does this issue still exist ? Depends on the configuration. Unless configured to require network level authentication, RDP is still prone to MitM attacks AFAIK. Regards Ansgar Wiechers -- "All vulnerabilities deserve a public fear period prior to patc [ more ] [ reply ] iDefense Security Advisory 02.08.11: Adobe Flash Player ActionScript Memory Corruption Vulnerability 2011-02-09 labs-no-reply (labs-no-reply ivcp vrsn com) iDefense Security Advisory 02.08.11 http://labs.idefense.com/intelligence/vulnerabilities/ Feb 08, 2011 I. BACKGROUND Adobe Flash Player is an application for viewing animations and movies using computer programs such as a Web browser; in common usage, Flash lets you put animation and movies on a [ more ] [ reply ] iDefense Security Advisory 02.08.11: Adobe Flash Player ActionScript Integer Overflow Vulnerability 2011-02-09 labs-no-reply (labs-no-reply ivcp vrsn com) iDefense Security Advisory 02.08.11 http://labs.idefense.com/intelligence/vulnerabilities/ Feb 08, 2011 I. BACKGROUND Adobe Flash Player is an application for viewing animations and movies using computer programs such as a Web browser; in common usage, Flash lets you put animation and movies on a [ more ] [ reply ] ZDI-11-081: Adobe Flash Player Point Object Remote Code Execution Vulnerability 2011-02-09 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-081: Adobe Flash Player Point Object Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-081 February 8, 2011 -- CVE ID: CVE-2011-0578 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Flash Player -- Vuln [ more ] [ reply ] ZDI-11-080: Adobe Shockwave CSWV Chunk Substructure Offset Value Remote Code Execution Vulnerability 2011-02-09 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-080: Adobe Shockwave CSWV Chunk Substructure Offset Value Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-080 February 8, 2011 -- CVE ID: CVE-2010-4190 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe [ more ] [ reply ] ZDI-11-079: Adobe Shockwave Player 0xFFFFFF45 Record Count Element Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-079: Adobe Shockwave Player 0xFFFFFF45 Record Count Element Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-079 February 8, 2011 -- CVE ID: CVE-2011-0557 -- CVSS: 9, (AV:N/AC:L/Au:N/C:C/I:P/A:P) -- Affected Vendors: Adobe -- Affected Products: Adob [ more ] [ reply ] ZDI-11-078: Adobe Shockwave Player FFFFFF88 Record Count Element Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-078: Adobe Shockwave Player FFFFFF88 Record Count Element Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-078 February 8, 2011 -- CVE ID: CVE-2010-4192 -- CVSS: 9, (AV:N/AC:L/Au:N/C:C/I:P/A:P) -- Affected Vendors: Adobe -- Affected Products: Adobe [ more ] [ reply ] iDefense Security Advisory 02.08.11: Adobe Shockwave Player Memory Corruption Vulnerability 2011-02-08 labs-no-reply (labs-no-reply ivcp vrsn com) iDefense Security Advisory 02.08.11 http://labs.idefense.com/intelligence/vulnerabilities/ Feb 08, 2011 I. BACKGROUND Adobe Shockwave Player is a popular Web browser plug-in. It is available for multiple Web browsers and platforms, including Windows, and MacOS. Shockwave Player enables Web browser [ more ] [ reply ] ZDI-11-077: Adobe Acrobat Reader U3D Texture Parser ILBM Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-077: Adobe Acrobat Reader U3D Texture Parser ILBM Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-077 February 8, 2011 -- CVE ID: CVE-2011-0590 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Acrobat [ more ] [ reply ] iDefense Security Advisory 02.08.11: Adobe Reader and Acrobat JP2K Invalid Indexing Vulnerability 2011-02-08 labs-no-reply (labs-no-reply ivcp vrsn com) iDefense Security Advisory 02.08.11 http://labs.idefense.com/intelligence/vulnerabilities/ Feb 08, 2011 I. BACKGROUND Adobe Reader/Acrobat is a Portable Document Format Viewer (PDF). For more information, see the vendor's site found at the following link. http://www.adobe.com/products/reader/ II [ more ] [ reply ] ZDI-11-076: RealNetworks Real Player Predictable Temporary File Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-076: RealNetworks Real Player Predictable Temporary File Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-076 February 8, 2011 -- CVE ID: CVE-2011-0694 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: RealNetworks -- Affected Products: [ more ] [ reply ] ZDI-11-075: Adobe Acrobat Reader rt3d.dll Multimedia Playing Arbitrary Memory Overwite Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-075: Adobe Acrobat Reader rt3d.dll Multimedia Playing Arbitrary Memory Overwite Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-075 February 8, 2011 -- CVE ID: CVE-2011-0606 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Aff [ more ] [ reply ] ZDI-11-074: Adobe Reader u3d Parent Node Count Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-074: Adobe Reader u3d Parent Node Count Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-074 February 8, 2011 -- CVE ID: CVE-2011-0600 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Reader -- Vulnera [ more ] [ reply ] ZDI-11-073: Adobe Reader ICC Parsing Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-073: Adobe Reader ICC Parsing Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-073 February 8, 2011 -- CVE ID: CVE-2011-0598 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Reader -- Vulnerability Det [ more ] [ reply ] ZDI-11-072: Adobe Reader BMP ColorData Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-072: Adobe Reader BMP ColorData Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-072 February 8, 2011 -- CVE ID: CVE-2011-0599 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Reader -- TippingPoint(TM [ more ] [ reply ] ZDI-11-071: Adobe Reader BMP RLE_8 Decompression Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-071: Adobe Reader BMP RLE_8 Decompression Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-071 February 8, 2011 -- CVE ID: CVE-2011-0596 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Reader -- Vulne [ more ] [ reply ] ZDI-11-070: Adobe Acrobat Reader U3D Texture .fli RLE Decompression Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-070: Adobe Acrobat Reader U3D Texture .fli RLE Decompression Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-070 February 8, 2011 -- CVE ID: CVE-2011-0595 -- CVSS: 9.7, (AV:N/AC:L/Au:N/C:C/I:C/A:P) -- Affected Vendors: Adobe -- Affected Products: A [ more ] [ reply ] ZDI-11-069: Adobe Acrobat Reader U3D Texture psd RLE Decompression Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-069: Adobe Acrobat Reader U3D Texture psd RLE Decompression Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-069 February 8, 2011 -- CVE ID: CVE-2011-0593 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adob [ more ] [ reply ] ZDI-11-067: Adobe Acrobat Reader U3D Texture rgba RLE Decompression Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-067: Adobe Acrobat Reader U3D Texture rgba RLE Decompression Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-067 February 8, 2011 -- CVE ID: CVE-2011-0591 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Ado [ more ] [ reply ] [HITB-Announce] HITB Magazine Issue 005 Released 2011-02-09 Hafez Kamal (aphesz hackinthebox org) We are proud to announce the immediate availability of HITB Magazine Issue 005 - The first HITB Magazine release for 2011! HITB Magazine ============= http://magazine.hackinthebox.org/ Direct Link =========== http://magazine.hackinthebox.org/issues/HITB-Ezine-Issue-005.pdf Just over a year has pa [ more ] [ reply ] ZDI-11-068: Adobe Acrobat Reader U3D Texture bmp RLE Decompression Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-068: Adobe Acrobat Reader U3D Texture bmp RLE Decompression Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-068 February 8, 2011 -- CVE ID: CVE-2011-0592 -- CVSS: 9, (AV:N/AC:L/Au:N/C:P/I:P/A:C) -- Affected Vendors: Adobe -- Affected Products: Adob [ more ] [ reply ] ZDI-11-066: Adobe Acrobat Reader U3D Texture .iff RLE Decompression Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-066: Adobe Acrobat Reader U3D Texture .iff RLE Decompression Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-066 February 8, 2011 -- CVE ID: CVE-2011-0590 -- CVSS: 10, (AV:N/AC:L/Au:N/C:C/I:C/A:C) -- Affected Vendors: Adobe -- Affected Products: Ad [ more ] [ reply ] ZDI-11-065: Adobe Reader Controlled memset Remote Code Execution Vulnerability 2011-02-08 ZDI Disclosures (zdi-disclosures tippingpoint com) ZDI-11-065: Adobe Reader Controlled memset Remote Code Execution Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-11-065 February 8, 2011 -- CVE ID: CVE-2011-0567 -- CVSS: 10, (AV:N/AC:L/Au:N/C:C/I:C/A:C) -- Affected Vendors: Adobe -- Affected Products: Adobe Reader -- Vulnerabil [ more ] [ reply ] |
|
Privacy Statement |
http://dvlabs.tippingpoint.com/advisory/TPTI-11-05
February 8, 2011
-- CVE ID:
CVE-2011-0569
-- CVSS:
9, (AV:N/AC:L/Au:N/C:P/I:P/A:C)
-- Affected Vendors:
Adobe
-- Affected Products:
Adobe Shockwave Player
[ more ] [ reply ]