弱點週報 - 2011/7/15

  • 1462
  • 0

本週更新弱點
平台 數量
Windows 3
第三方 Windows 應用程式 6
Linux 1
HP-UX 1
跨平台 7
Web 應用程式 3
網路裝置 5

本週更新弱點

平台 數量
Windows 3
第三方 Windows 應用程式 6
Linux 1
HP-UX 1
跨平台 7
Web 應用程式 3
網路裝置 5

Windows

  1. Microsoft Windows Bluetooth Stack Remote Code Execution
  2. Microsoft Windows CSRSS Multiple Local Privilege Escalation Vulnerabilities
  3. Microsoft Windows Kernel "Win32k.sys" Multiple Vulnerabilities

第三方 Windows 應用程式

  1. ESTsoft ALPlayer ".asx" File Buffer Overflow
  2. Chilkat Crypt ActiveX Control "SaveDecrypted()" Insecure Method Vulnerability
  3. ZipWiz 2005 ".zip" File Buffer Overflow
  4. Effective File Search (EFS) DLL Loading Arbitrary Code Execution
  5. ZipItFree ".zip" File Buffer Overflow
  6. Trend Micro Control Manager "CASProcessor.exe" BLOB Remote Code Execution

Linux

  1. Debian and Ubuntu foo2zjs Insecure Temporary File Creation Vulnerability

HP-UX

  1. HP-UX Dynamic Loader Unspecified Local Privilege Escalation

跨平台

  1. Apache XML Security for C++ Signature Key Parsing Denial of Service
  2. libpng PNG File Denial of Service
  3. Opera Web Browser Multiple Security Weaknesses
  4. IBM WebSphere MQ CDP Extension Revoked SSL Certificate Validation Security Bypass Vulnerability
  5. libsndfile PAF File Integer Overflow
  6. libvte9 "vte_sequence_handler_multiple()" Function Remote Denial of Service
  7. SAP MaxDB NULL Pointer Dereference Denial of Service

Web 應用程式

  1. phpMyAdmin Multiple Remote Vulnerabilities
  2. DotNetNuke Multiple Security Bypass Vulnerabilities
  3. Ferdows CMS Cross-Site Scripting and Multiple SQL Injection Vulnerabilities

網路裝置

  1. Cisco Content Services Gateway Malformed ICMP Messages Denial of Service
  2. D-Link DSL-2650U Remote Denial of Service
  3. Aruba Networks ArubaOS HTTP Response Splitting and HTML Injection Vulnerabilities
  4. Ingate Firewall and SIParator SIP Module Remote Denial of Service
  5. Symantec Web Gateway Management GUI SQL Injection Vulnerability