Vulnerability Note VU#596268 Wonderware SuiteLink null pointer deference OverviewA vulnerability in the way Wonderware SuiteLink handles malformed TCP packets could result in a denial of service. I. Description Wonderware SuiteLink is a protocol based on TCP/IP that runs as a service listening for connections on port 5413/tcp on Microsoft Windows operating systems. …
Blogs / US-CERT Vulnerability Notes
Latest posts
-
VU#596268: Wonderware SuiteLink null pointer deference
http://www.kb.cert.org/vuls/id/596268 -
VU#147027: PHP path translation vulnerability
http://www.kb.cert.org/vuls/id/147027Vulnerability Note VU#147027 PHP path translation vulnerability OverviewPHP contains a path translation vulnerability that may allow an attacker to execute arbitrary code. I. DescriptionPHP is a scripting language that is designed for web-based applications and can be imbedded directly into HTML. …
-
VU#929656: Multiple BGP implementations do not properly handle UPDATE messages
http://www.kb.cert.org/vuls/id/929656Vulnerability Note VU#929656 Multiple BGP implementations do not properly handle UPDATE messages OverviewBGP implementations from multiple vendors including Juniper may not properly handle specially crafted BGP UPDATE messages. These vulnerabilities could allow an unauthenticated, remote attacker to cause a denial of service. …
835 blog reactions
-
Adobe Flash Player - Update, Update, Update
http://djtechnocrat.blogspot.com/2008/07/adobe-flash-player-...30% of my blog visitors are still running Adobe Flash Player 9.0.115. While 54.70% are generally running versions older than Adobe Flash Player 9.0.124. If you aren't running Adobe Flash Player 9.0.124, then you are vulnerable to several very serious security vulnerabilities which can be exploited via your browser. Not sure what version of Flash Player you have installed? Use Adobe's Version Checker. Remember to check each browser seperately...as IE uses ActiveX and other browsers do not. Also, I would highly running
-
Internet Explorer User aufgepasst! Speicherung von Tastatureingaben Seitenübergreifend möglich
http://www.pcbeirat.de/browser/internet-explorer/internet-ex...Wie geht sowas? Ohne detailliert auf die Vorgehensweise eingehen zu wollen, möchte ich hier das United States Computer Emergency Readiness Team zitieren. "By convincing a user to view a specially crafted HTML document (e.g., a web page or an HTML email message), an attacker may be able to access non-domain-specific elements from a web page that exists in a different domain. For example, the
-
Уязвимость в Internet Explorer
http://sumy.biz/node/5556продуктов Microsoft планирует выпустить в следующий вторник, 8 июля. Возможно, в состав этих апдейтов будет включена и заплатка для дыры в IE. Сообщение об уязвимости
-
Information Security Log
http://www.islog.ruОрганизация US-CERT, созданная при участии Министерства внутренней безопасности США, предупреждает об обнаружении очередной уязвимости в браузерах Microsoft Internet Explorer последних версий. Как сообщается, проблема связана с особенностями
-
Hacker Alerts and Security
http://backdoor-hunters.blogspot.comVU#607267: Mozilla Firefox code execution vulnerability VU#361043: Apple Safari contains a memory corruption issue in the handling of JavaScript arrays by WebKit VU#516627: Microsoft Internet Explorer fails to properly restrict access to frames
-
セキュリティ関連情報
http://sky.higashiosaka.ac.jp/~center/weblog/index.php?e=128http://www.kb.cert.org/vuls/id/788019
-
Security News from the net
http://securitynewsfromthenet.blogspot.combe exploited by tricking users into visiting a maliciously crafted web site or opening malicious email. Users are urged to disable active scripting until a fix is available. Microsoft is investigating the issue. http://www.kb.cert.org/vuls/id/516627 http://www.informationweek.com/news/internet/browsers/showArticle.jhtml?articleID=208801757 ATTACKS, INTRUSIONS, DATA THEFT & LOSS --Bank Issues New Cards to All Affected by Hannaford Data Breach
-
セキュリティ関連情報
http://sky.higashiosaka.ac.jp/~center/weblog/index.php?e=127http://www.kb.cert.org/vuls/id/516627
-
Уязвимость в Internet Explorer
http://sumy.biz/node/5477продуктов Microsoft планирует выпустить в следующий вторник, 8 июля. Возможно, в состав этих апдейтов будет включена и заплатка для дыры в IE. Сообщение об уязвимости
-
Уязвимость в Internet Explorer
http://grape.southbridge.ru/node/838продуктов Microsoft планирует выпустить в следующий вторник, 8 июля. Возможно, в состав этих апдейтов будет включена и заплатка для дыры в IE. Сообщение об уязвимости
Top Tags
What this blog is about
- buffer overflow
- com
- dos
- internet explorer
- juniper
- microsoft
- music jukebox
- php
- scada
- yahoo!
- zone
- activex
- arbitrary code execution
- bgp update
- cgi_main.c
- denial of service
- exp00-a
- ie
- junos
- mit
- msn games
- path_translated
- privilege escalation
- psn-2007-12-008
- route flapping
- slssvc.exe
- stack-based buffer overflow
- suitelink
- unknown impact
- wonderware