Network Security

AERAsec
Network Security
Current Security Messages


Most of the links lead to the corresponding files at CERT or other organisations. So changes take place immediately, especially which patches should be installed or which changes in the configuration should be made to avoid this vulnerability. Some of the files are transferred by FTP.

By the way: If we're not publishing well-known risks inheritant in any widely used platform or program that doesn't mean this particular platform or program is safe to use!

Here you find our network security search engine!


This is some information you send:

Your Browser

CCBot/2.0

Your IP address

ec2-184-73-74-47.compute-1.amazonaws.com [184.73.74.47]

Your referer

(filtered or not existing)

Current month, Last month, Last 10 messages, Last 20 messages (index only)

Chosen month 05 / 2012

System: Mandriva Enterprise Server
Topic: Vulnerability in tomcat5
Links: MDVSA-2012:085, CVE-2011-4858, CVE-2012-0022
ID: ae-201205-074

A vulnerability has been discovered and corrected in tomcat5. Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service via a request that contains many parameters and parameter values. The updated packages have been patched to correct this issue.

System: Linux, Unix, OSX
Topic: Vulnerability in Certified Asterisk
Links: AST-2012-007, AST-2012-008, CVE-2012-2948, CVE-2012-2947, ESB-2012.0503
ID: ae-201205-073

A remotely exploitable crash vulnerability exists in the IAX2 channel driver of Asterisk. To exploit this vulneability the followin paramters must be matched: 1. The setting mohinterpret=passthrough must be set on the end placing the call on hold. 2. A call must be established. 3. The call is placed on hold without a suggested music-on-hold class name. When these conditions are true, Asterisk will attempt to use an invalid pointer to a music-on-hold class name. Use of the invalid pointer will either cause a crash or the music-on-hold class name will be garbage. Updated packages are now available.

System: Red Hat Enterprise Linux
Topic: Vulnerability in openssl
Links: RHSA-2012-0699, CVE-2012-2333, CVE-2012-0884, ESB-2012.0502
ID: ae-201205-072

Updated openssl packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 5.

System: Red Hat Enterprise Linux
Topic: Vulnerability in kernel
Links: RHSA-2012-0690, CVE-2012-2136, ESB-2012.0501
ID: ae-201205-071

Updated kernel packages that fix one security issue and various bugs are now available for Red Hat Enterprise Linux 5.

System: Many
Topic: Vulnerabilities in request-tracker3.8
Links: dsa-2480, CVE-2011-4460, CVE-2011-4459, CVE-2011-4458, CVE-2011-2085, CVE-2011-2084, CVE-2011-2083, CVE-2011-2082, CVE-2011-0009, ESB-2012.0494.2
ID: ae-201205-070

Several vulnerabilities were discovered in Request Tracker, an issue tracking system. Updated packages are available now to fix these vulnerabilities.

System: Mandriva Enterprise Server
Topic: Vulnerabilities in ncpfs
Links: MDVSA-2012:08, CVE-2011-1089, CVE-2011-1679, CVE-2011-1680
ID: ae-201205-069

Multiple vulnerabilities has been discovered and corrected in ncpfs. Updated packages are available now.

System: Mandriva Enterprise Server
Topic: Vulnerabilities in util-linux
Links: MDVSA-2012:083, CVE-2011-1089, CVE-2011-1675, CVE-2011-1677
ID: ae-201205-068

Multiple vulnerabilities have been discovered and corrected inutil-linux. Updated packages are available now.

System: Many
Topic: Vulnerabilities in Atlassian JIRA
Links: JIRA+Security+Advisory+2012-05-17, CVE-2012-2928, CVE-2012-2927, CVE-2012-2926, ESB-2012.0499
ID: ae-201205-067

A vulnerability in JIRA, that results from the way third-party XML parsers are used in JIRA, has been identified and fixed. This vulnerability allows an attacker who is an authenticated JIRA user to execute Denial of Service (DoS) attacks against the JIRA server. A patch is available now.

System: VMWare ESX Server
Topic: Vulnerability in VMware vMA
Links: VMSA-2012-0010, CVE-2012-2752, ESB-2012.0498
ID: ae-201205-066

A flaw in the way library files are loaded could allow privilege escalation. A patch is available now.

System: Microsoft Windows
Topic: Vulnerability in Measuresoft ScadaPro
Links: ICSA-12-145-01, CVE-2012-1824, ESB-2012.0497, X-Force #75860
ID: ae-201205-065

Measuresoft ScadaPro could allow a remote attacker to execute arbitrary code on the system. The application doesn't directly specify the fully qualified path to a dynamic-linked library when running on Microsoft Windows. By persuading a victim to open a specially-crafted file from a WebDAV or SMB share using a vulnerable application, a remote attacker could exploit this vulnerability via a specially-crafted library to execute arbitrary code on the system. A patch is available now.

System: Several
Topic: Vulnerability in dotCMS
Links: GitHub #261, GitHub #281, CVE-2012-1826, VU #898083, X-Force #75872
ID: ae-201205-064

The dotCMS content management system version 1.9 and possibly earlier versions, contains a vulnerability that allows authenticated users with the appropriate permissions to create a malicious template with arbitrary code. dotCMS version 1.9.5.1 or 2.0.1 and later address this vulnerability.

System: Several
Topic: Vulnerabilities in EMC AutoStart
Links: ESA-2012-020, CVE-2012-0409, ESB-2012.0495
ID: ae-201205-063

EMC AutoStart contains multiple buffer overflow vulnerabilities which can be exploited to potentially cause a Denial-of-Service, or possibly, execute arbitrary code within the context of the affected application. Updates are available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in request-tracker3.8
Links: DSA-2480, CVE-2011-0009, CVE-2011-2082, CVE-2011-2083, CVE-2011-2084, CVE-2011-2085, CVE-2011-4458, CVE-2011-4459, CVE-2011-4460, ESB-2012.0494
ID: ae-201205-062

Several vulnerabilities were discovered in Request Tracker, an issue tracking system. Exploiting them might lead to remote code execution, Cross-Site Scripting (XSS), Cross-Site Request Forgery (CSRF) or other problems. Updated packages are available, and they should be installed immediately.

System: Microsoft Windows
Topic: Vulnerability in Lotus Quickr ActiveX control
Links: IBM #1596191, CVE-2012-2176, X-Force #75322, Secunia #49285, ESB-2012.0496
ID: ae-201205-061

Lotus Quickr ActiveX control as part of Lotus Domino is vulnerable to a stack-based buffer overflow. By persuading a victim to visit a specially-crafted Web page that passes an overly long argument to the Attachment_Times() or Import_Times() insecure method, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the victim's browser to crash. A fix that addresses this issue has been published.

System: Microsoft Windows
Topic: Vulnerabilities in Symantec Endpoint Protection
Links: SYM12-007, CVE-2012-1821, X-Force #75805, VU #149070,
SYM12-008, CVE-2011-0294, X-Force #75807
ID: ae-201205-060

Symantec Endpoint Protection is vulnerable to a Denial-of-Service, caused by an error when handling scans. A remote authenticated attacker could exploit this vulnerability to cause the host to become unresponsive.
Symantec Endpoint Protection could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request to the Management Console containing directory traversal sequences to delete arbitrary files on the system and render the Manager console unusable.
Updates are available now.

System: Microsoft Windows
Topic: Vulnerability in Tftpd32
Links: Tftpd32, Packet Storm, X-Force #75809
ID: ae-201205-059

Tftpd32 is vulnerable to a denial of service. By sending a specially-crafted DHCP Discover packet, a remote attacker could exploit this vulnerability to cause the application to become unresponsive. A hotfix isn't available yet.

System: Microsoft Windows
Topic: Vulnerability in Citrix XenApp
Links: CTX133159, ESB-2012.0493
ID: ae-201205-058

A vulnerability has been identified in Citrix XenApp that could result in a Denial-of-Service. This vulnerability is present in all versions of Citrix XenApp, formerly known as Presentation Server, up to and including version 6.5. In order to trigger this vulnerability, an attacker would need to be able to directly access the XenApp server. A hotfix has been released to address this issue.

System: Debian GNU/Linux
Topic: Vulnerabilities in sudo and libxml
Links: DSA-2478, CVE-2012-2337, ESB-2012.0491,
DSA-2479, CVE-2011-3102, ESB-2012.0492
ID: ae-201205-057

It was discovered that sudo misparses network masks used in Host and Host_List stanzas. This allows the execution of commands on hosts, where the user would not be allowed to run the specified command. An off-by-one error in libxml2 might result in the execution of arbitrary code. Updated packages are available now.

System: Appliance
Topic: Vulnerability in Seagate BlackArmor NAS device
Links: VU #515283, CVE-2012-2568 ESB-2012.0500
ID: ae-201205-056

The Seagate BlackArmor network attached storage device contain a static php file used to reset the administrator password. A remote unauthenticated attacker with access to the device's management web server can directly access the webpage to reset the administrator password using a specific URL. It's recommended to restrict network access to the Seagate BlackArmor network attached storage devices system web interface and other devices using open protocols like HTTP because a patch isn't available yet.

System: Red Hat Linux, OSX, Unix
Topic: Vulnerability in bind-dyndb-ldap
Links: RHSA-2012-0683, CVE-2012-2134, ESB-2012.0489
ID: ae-201205-055

A flaw was found in the way bind-dyndb-ldap handled LDAP query errors. If a remote attacker was able to send DNS queries to a named server that is configured to use bind-dyndb-ldap, he could trigger such an error with a DNS query leveraging bind-dyndb-ldap's insufficient escaping of the LDAP base DN (distinguished name). This would result in an invalid LDAP query that named would retry in a loop, preventing it from responding to other DNS queries. New packets are available.

System: Red Hat Linux
Topic: Vulnerabilities in Apache Tomcat
Links: RHSA-2012-0679, RHSA-2012-0681, CVE-2012-0022, CVE-2011-5064, CVE-2011-5063, CVE-2011-5062, CVE-2011-4858, CVE-2011-3375, CVE-2011-3190, CVE-2011-2526, CVE-2011-2204, CVE-2011-1184, ESB-2012.0488
ID: ae-201205-054

An update for the Apache Tomcat 5 component for JBoss Enterprise Web Server 1.0.2 that fixes multiple security issues and two bugs is now available from the Red Hat Customer Portal.

System: Red Hat Linux
Topic: Vulnerabilities in postgresql
Links: RHSA-2012-0677, RHSA-2012-0678, CVE-2012-0868, CVE-2012-0867, CVE-2012-0866, ESB-2012.0487
ID: ae-201205-053

Updated postgresql packages that fix two security issues are now available for Red Hat Enterprise Linux 5.

System: Red Hat Linux
Topic: Vulnerabilities in kvm
Links: RHSA-2012-0676, CVE-2012-2121, CVE-2012-1601, ESB-2012.0486
ID: ae-201205-052

Updated kvm packages that fix two security issues and one bug are now available for Red Hat Enterprise Linux 5.

System: Many
Topic: Vulnerabilities in Symantec Web Gateway
Links: suid=20120517_00, CVE-2012-0299, CVE-2012-0298, CVE-2012-0297, CVE-2012-0296, ESB-2012.0485
ID: ae-201205-051

Symantec's Web Gateway management GUI is susceptible to file include command injection/execution, file upload/execution and file download/deletion security issues. The management GUI is also susceptible to cross-site scripting (XSS). Successful exploitation could result in execution of arbitrary code in the context of the application, denial of service through deletion of arbitrary system files, and unauthorized access to users' data or to unauthorized network information.

System: Debian GNU/Linux
Topic: Vulnerability in pidgin-otr
Links: dsa-2476, CVE-2012-2369, ESB-2012.0483
ID: ae-201205-050

A format string error was discovered in pidgin-otr, an off-the-record messaging plugin for Pidgin. This could be exploited by a remote attacker to cause arbitrary code to be executed on the user's machine. New packets are available.

System: Debian GNU/Linux
Topic: Vulnerability in sympa
Links: dsa-2477, CVE-2012-2352, ESB-2012.0484
ID: ae-201205-049

A vulnerability has been discovered in Sympa, a mailing list manager, that allows to skip the scenario-based authorization mechanisms. This vulnerability allows to display the archives management page, and download and delete the list archives by unauthorized users. New packets are available.

System: Mandriva
Topic: Vulnerability in sudo
Links: MDVSA-2012:079, CVE-2012-2337
ID: ae-201205-048

Sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netmask syntax, which allows local users to bypass intended command restrictions in opportunistic circumstances by executing a command on a host that has an IPv4 address. New packets are available.

System: OpenVMS
Topic: Vulnerability in OpenVMS ACMELOGIN
Links: HPSBOV02780 SSRT100766, CVE-2012-2010, ESB-2012.0481
ID: ae-201205-047

A potential security vulnerability has been identified with OpenVMS ACMELOGIN when SYS$ACM system service for authentication is enabled. The vulnerability could be locally exploited to allow unauthorized access and increased privileges. HP has made patch kits available.

System: Mandriva Linux
Topic: Vulnerabilities in ImageMagick
Links: MDVSA-2012:077, CVE-2010-4167, CVE-2012-0247, CVE-2012-0248, CVE-2012-0259, CVE-2012-0260, CVE-2012-1185, CVE-2012-1798
ID: ae-201205-046

Several vulnerabilities have been found in ImageMagick. Since some of them are critical because they might allow remote code execution, it's recommended to install updates which are available now.

System: Microsoft Windows
Topic: Vulnerability in IBM Cognos
Links: X-Force #73182, CVE-2012-0202, ESB-2012.0478
ID: ae-201205-045

IBM Cognos is vulnerable to multiple stack-based buffer overflows, caused by improper bounds checking by the tm1admsd.exe binary. By sending a specially-crafted packet, a remote attacker could exploit this vulnerability to overflow a buffer and execute arbitrary code on the system with elevated privileges or cause the application to crash. A patch is available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in OpenOffice.org and ikiwiki
Links: DSA-2473, CVE-2012-1149, ESB-2012.0476,
DSA-2474, CVE-2012-0220, ESB-2012.0477
ID: ae-201205-044

OpenOffice.org doesn't allocate a large enough memory region when processing a specially crafted JPEG object, leading to a heap-based buffer overflow and potentially arbitrary code execution. Ikiwiki is a wiki compiler. It doesn't properly escape the author (and its URL) of certain metadata, such as comments. This might be used to conduct cross-site scripting attacks.
Updated packages are available now.

System: Several
Topic: Vulnerability in HP Business Service Management 9.12
Links: VU #859230, HP, CVE-2012-2561, ESB-2012.0482
ID: ae-201205-043

The HP Business Service Management (HPBSM) application contains a remote code execution vulnerability. HPBSM uses the JBOSS application server. In the default configuration, HPBSM contains open ports that may be accessed by an unauthenticated attacker. The attacker can upload a jsp-shell as a .war file and have the JBOSS application server deploy it as a service. In the default configuration, this attacker shell will run with SYSTEM privileges. Due to this, an unauthenticated attacker may be able to deploy a backdoor shell with SYSTEM privileges. Workarounds are available, but currently no patch.

System: Several
Topic: Vulnerability in openssl
Links: OpenSSL, CVE-2012-2333,
MDVSA-2012:073, DSA-2475, ESB-2012.0479, HPSBUX02782 SSRT100844, ESB-2012.0480
ID: ae-201205-042

A flaw in the OpenSSL handling of CBC mode ciphersuites in DTLS can be exploited in a Denial-of-Service (DoS) attack on both clients and servers. For some systems new packets are available for download.

System: Debian GNU/Linux
Topic: Vulnerability in gridengine
Links: dsa-2472, CVE-2012-0208, ESB-2012.0475
ID: ae-201205-041

It was discovered that users who are allowed to submit jobs to a Grid Engine installation can escalate their privileges to root because the environment is not properly sanitized before creating processes. A new update is available.

System: HP-UX
Topic: Vulnerabilities in HP-UX Running Java JRE and JDK
Links: CVE-2012-0506, CVE-2012-0505, CVE-2012-0503, CVE-2012-0502, CVE-2012-0499, CVE-2011-3563, CVE-2011-3560, CVE-2011-3557, CVE-2011-3556, CVE-2011-3552, CVE-2011-3549, CVE-2011-3548, CVE-2011-3547, CVE-2011-3545, CVE-2011-3389, CVE-2011-0871, CVE-2011-0867, CVE-2011-0865, ESB-2012.0474
ID: ae-201205-040

Potential security vulnerabilities have been identified in Java Runtime Environment (JRE) and Java Developer Kit (JDK) running on HP-UX. These vulnerabilities may allow remote Denial of Service (DoS), unauthorized modification and disclosure of information. A new update is available.

System: Microsoft Windows
Topic: Vulnerabilities in QuickTime 7
Links: HT5261, CVE-2012-0671, CVE-2012-0670, CVE-2012-0669, CVE-2012-0668, CVE-2012-0667, CVE-2012-0666, CVE-2012-0665, CVE-2012-0664, CVE-2012-0663, CVE-2012-0661, CVE-2012-0660, CVE-2012-0559, CVE-2012-0658, CVE-2012-0265, CVE-2011-3460, CVE-2011-3459, CVE-2011-3458, ESB-2012.0473
ID: ae-201205-039

QuickTime 7.7.2 which fix several security issues is now available for Windows platforms .

System: Red Hat Enterprise Linux
Topic: Vulnerabilities in kernel
Links: RHSA-2012-0571, RHSA-2012-0670, CVE-2012-2123, CVE-2012-1601, CVE-2011-4086, ESB-2012.0472
ID: ae-201205-038

Updated kernel packages that fix two security issues and several bugs are now available for Red Hat Enterprise Linux 6.

System: Microsoft Windows
Topic: Vulnerability in ClearQuest Maintenance Tool
Links: swg21594717, CVE-2011-1390, ESB-2012.0469
ID: ae-201205-037

The ClearQuest Maintenance tool on Microsoft Windows platforms contains a feature to upgrade the user database. This feature is subject to a SQL Injection attack. A new update is available.

System: Debian GNU/Linux, Mandriva Enterprise Server
Topic: Vulnerabilities in ffmpeg
Links: dsa-2471, MDVSA-2012:074, CVE-2011-3892, CVE-2011-3893, CVE-2011-3895, CVE-2011-3929, CVE-2011-3936, CVE-2011-3940, CVE-2011-3947, CVE-2012-0853, CVE-2012-0947, ESB-2012.0466
ID: ae-201205-036

Several vulnerabilities have been discovered in FFmpeg, a multimedia player, server and encoder. These may allow remote attackers to execute arbitrary code or cause a denial of service (DoS). New updates are available.

System: Microsoft Windows
Topic: Vulnerabilities in EMC Documentum Information Rights Management Server
Links: CVE-2012-2277, CVE-2012-2276, ESB-2012.0465
ID: ae-201205-035

The IRM Server in EMC Documentum Information Rights Management allows remote attackers to cause a denial of service (DoS) via line feed characters in the Id fields of many "batch begin untethered" commands. A new update is available.

System: Debian GNU/Linux
Topic: Several vulnerabilities in WordPress
Links: DSA-2470, X-Force #75521
ID: ae-201205-034

Several vulnerabilities were identified in WordPress, a web blogging tool. An upgrade addresses them, so it should be installed immediately.

System: Mandriva Enterprise Server
Topic: Vulnerability in openssl
Links: MDVSA-2012:073, CVE-2012-2333
ID: ae-201205-033

A flaw in the OpenSSL handling of CBC mode ciphersuites in DTLS can be exploited in a denial of service (DoS) attack on both clients and servers. New packets are available for download.

System: Red Hat Linux
Topic: Vulnerability in php
Links: RHSA-2012-0568, RHSA-2012-0569, RHSA-2012-0570, CVE-2012-1823, ESB-2012.0461, ESB-2012.0464
ID: ae-201205-032

A flaw was found in the way the php-cgi executable processed command line arguments when running in CGI mode. A remote attacker could send a specially-crafted request to a PHP script that would result in the query string being parsed by php-cgi as command line options and arguments. This could lead to the disclosure of the script's source code or arbitrary code execution with the privileges of the PHP interpreter. New packets are available for download.

System: Debian GNU/Linux
Topic: Vulnerabilities in linux-2.6
Links: dsa-2469, CVE-2012-2133, CVE-2012-2123, CVE-2012-1601, CVE-2012-0879, CVE-2011-4086, ESB-2012.0460
ID: ae-201205-031

Several vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service (DoS) or privilege escalation. New packets are available for download.

System: Mandriva Linux
Topic: Vulnerabilities in roundcubemail
Links: MDVSA-2012:072, CVE-2011-1491, CVE-2011-1492, CVE-2011-2937, CVE-2011-4078
ID: ae-201205-030

Multiple vulnerabilities has been found and corrected in roundcubemail. They affect Roundcube Webmail 0.5x and allow several attacks like e.g. CSRF, XSS and Denial-of-Service. So an update is recommended.

System: Debian GNU/Linux
Topic: Vulnerabilities in Rails, Mahara, and libjakarta-poi-java
Links: DSA-2466, CVE-2012-1099, ESB-2012.0455,
DSA-2467, ESB-2012.0456,
DSA-2468, CVE-2012-0213, ESB-2012.0457
ID: ae-201205-029

Rails is a Ruby based framework for web development. When developers generate html options tags manually, user input concatenated with manually built tags may not be escaped and an attacker can inject arbitrary HTML into the document.
Mahara is a portfolio, weblog, and resume builder. It has an insecure default with regards to SAML-based authentication used with more than one SAML identity provider. Someone with control over one IdP could impersonate users from other IdP's.
Apache POI, a Java implementation of the Microsoft Office file formats, would allocate arbitrary amounts of memory when processing crafted documents. This could impact the stability of the Java virtual machine and lead to a Denial-of-Service (DoS).
Updated packages are available now.

System: Several
Topic: Vulnerability in PHP
Links: CVE-2012-1172, CVE-2012-1823, CVE-2012-2311,
RHSA-2012-0546, RHSA-2012-0547, ESB-2012.0439, DSA-2465, ESB-2012.0454, MDVSA-2012:071
ID: ae-201205-028

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. A flaw has been found in the way the php-cgi executable processes command line arguments when running in CGI mode. A remote attacker could send a specially-crafted request to a PHP script that would result in the query string being parsed by php-cgi as command line options and arguments. This could lead to the disclosure of the script's source code or arbitrary code execution with the privileges of the PHP interpreter.
Updated packages are available now.

System: Various
Topic: Vulnerabilities in Apple Safari
Links: APPLE-SA-2012-05-09-2, ESB-2012.0459
ID: ae-201205-027

Safari 5.1.7 is now available and addresses many vulnerabilities. So this update is recommended.

System: Mac OS X
Topic: Security Update available for Apple Mac OS X
Links: APPLE-SA-2012-05-09-1, ESB-2012.0458
ID: ae-201205-026

OS X Lion v10.7.4 and Security Update 2012-002 is now available, fixing many vulnerabilities. So this update is recommended.

System: IBM AIX
Topic: Vulnerabilities in IBM AIX
Links: IBM, CVE-2011-0321, CVE-2011-1385, CVE-2012-0194, ESB-2012.0452
ID: ae-201205-025

A vulnerability which allows remote attackers to register or unregister RPC services, and consequently cause a Denial-of-Service (DoS) or obtain sensitive information from interprocess communication. This is done via crafted UDP packets containing service commands. Fixes are available now.

System: Microsoft Windows, Macintosh
Topic: Vulnerabilities in Adobe Illustrator, Adobe Photoshop, Adobe Flash Professional, and Adobe Shockwave Player
Links: APSB12-10, CVE-2012-0780, CVE-2012-2023, CVE-2012-2024, CVE-2012-2025, CVE-2012-2026,
APSB12-11, CVE-2012-2027, CVE-2012-2028, X-Force #75512,
APSB12-12, CVE-2012-0778,
APSB12-13, CVE-2012-2029, CVE-2012-2030, CVE-2012-2031, CVE-2012-2032, CVE-2012-2033, ESB-2012.0453
ID: ae-201205-024

Adobe released a security upgrade for Adobe Illustrator CS5.5 and earlier for Windows and Macintosh. This upgrade addresses vulnerabilities that could allow an attacker who successfully exploits these vulnerabilities to take control of the affected system. Adobe has released Adobe Illustrator CS6, which addresses these vulnerabilities also.
Adobe released a security upgrade for Adobe Photoshop CS5.5 and earlier for Windows and Macintosh. This upgrade addresses vulnerabilities that could allow an attacker who successfully exploits these vulnerabilities to take control of the affected system. Adobe also has released Adobe Photoshop CS6, which addresses these vulnerabilities.
Adobe released a security upgrade for Adobe Flash Professional CS5.5 (11.5.1.349) and earlier for Windows and Macintosh. This upgrade addresses a vulnerability that could allow an attacker who successfully exploits this vulnerability to take control of the affected system. Adobe has released Adobe Flash Professional CS6, which also addresses this vulnerability.
Adobe released a security update for Adobe Shockwave Player 11.6.4.634 and earlier versions for Windows and Macintosh. This update addresses vulnerabilities that could allow an attacker who successfully exploits these vulnerabilities to run malicious code on the affected system. Adobe recommends users of Adobe Shockwave Player 11.6.4.634 and earlier for Windows and Macintosh update to Adobe Shockwave Player 11.6.5.635.

System: Microsoft Windows
Topic: Vulnerability in ActiveX
Links: Microsoft, ESB-2012.0450
ID: ae-201205-023

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerabilities in .NET Framework
Links: MS12-035, CVE-2012-0160, CVE-2012-0161, ESB-2012.0445
ID: ae-201205-022

No further comment due to legal reasons

System: Microsoft Windows, Mac OS X
Topic: Several vulnerabilities in Microsoft Office, Windows, .NET Framework, Silverlight
Links: MS12-034, CVE-2011-3402, CVE-2012-0159, CVE-2012-0162, CVE-2012-0164, CVE-2012-0165, CVE-2012-0167, CVE-2012-0176, CVE-2012-0180, CVE-2012-0181, CVE-2012-1848, ESB-2012.0444, ISS Alert #449
ID: ae-201205-021

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Windows Partition Manager
Links: MS12-033, CVE-2012-0178, ESB-2012.0449
ID: ae-201205-020

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerabilities in Microsoft Windows TCP/IP
Links: MS12-032, CVE-2012-0174, CVE-2012-0179, ESB-2012.0448
ID: ae-201205-019

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Microsoft Visio Viewer
Links: MS12-031, CVE-2012-0018, ESB-2012.0447
ID: ae-201205-018

No further comment due to legal reasons

System: Microsoft Windows, Mac OS X
Topic: Vulnerabilities in Microsoft Office
Links: MS12-030, CVE-2012-0141, CVE-2012-0142, CVE-2012-0143, CVE-2012-0184, CVE-2012-0185, CVE-2012-1847, ESB-2012.0446
ID: ae-201205-017

No further comment due to legal reasons

System: Microsoft Windows, Mac OS X
Topic: Vulnerability in Microsoft Word
Links: MS12-029, CVE-2012-0183, ESB-2012.0443
ID: ae-201205-016

No further comment due to legal reasons

System: Various
Topic: Multiple vulnerabilities in HP Performance Insight for Networks
Links: HPSBMU02775, SSRT100853, CVE-2012-2007, CVE-2012-2008, CVE-2012-2009, ESB-2012.0442
ID: ae-201205-015

Potential security vulnerabilities have been identified with HP Performance Insight for Networks running on HP-UX, Linux, Solaris, and Windows. The vulnerabilities could be exploited remotely resulting in SQL injection, Cross-Site Scripting (XSS), and privilege elevation. HP has made a hotfix available to resolve the vulnerabilities.

System: Red Hat Enterprise Linux
Topic: Vulnerability in PHP
Links: RHSA-2012-0546, RHSA-2012-0547, CVE-2012-1823, ESB-2012.0439
ID: ae-201205-014

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. A flaw has been found in the way the php-cgi executable processes command line arguments when running in CGI mode. A remote attacker could send a specially-crafted request to a PHP script that would result in the query string being parsed by php-cgi as command line options and arguments. This could lead to the disclosure of the script's source code or arbitrary code execution with the privileges of the PHP interpreter.
Updated packages are available now.

System: Red Hat Enterprise Linux
Topic: Multiple vulnerabilities in JBoss Enterprise Web Server
Links: RHSA-2012-0542, RHSA-2012-0543, CVE-2011-3192, CVE-2012-3348, CVE-2011-3368, CVE-2012-3607, CVE-2012-0021, CVE-2012-0031, CVE-2012-0053, ESB-2012.0437
ID: ae-201205-013

Updated httpd packages that fix multiple security issues and one bug are now available for JBoss Enterprise Web Server 1.0.2 for Red Hat Enterprise Linux 5 and 6. Exploiting vulnerabilities might e.g. lead to remote Denial-of-Service (DoS) or access to confidential data. So an upgrade is recommended.

System: Apple iOS
Topic: Multiple vulnerabilities in iOS
Links: Apple HT5278, CVE-2011-3046, CVE-2012-3056, CVE-2012-0672, CVE-2012-0674, ESB-2012.0436
ID: ae-201205-012

The Operating System of iPhone, iPad and iPod shows several vulnerabilities that might lead to e.g. Cross-Site Scripting (XSS) attacks, Denial-of-Service (DoS) or remote code execution. Due to this, an update to Apple iOS 5.1.1 is recommended.

System: Various
Topic: Vulnerability in Adobe Flash Player
Links: APSB12-09, CVE-2012-0779, X-Force #75383, Symantec #53395, ESB-2012.0440, RHSA-2012-0688, ESB-2012.0490
ID: ae-201205-011

Adobe released security updates for Adobe Flash Player 11.2.202.233 and earlier versions for Windows, Macintosh and Linux, Adobe Flash Player 11.1.115.7 and earlier versions for Android 4.x, and Adobe Flash Player 11.1.111.8 and earlier versions for Android 3.x and 2.x. These updates address an object confusion vulnerability that could cause the application to crash and potentially allow an attacker to take control of the affected system.

System: IBM AIX
Topic: Vulnerability in LDAP authentication
Links: IBM, CVE-2012-0745, Secunia #49073, X-Force #74679, ESB-2012.0441
ID: ae-201205-010

IBM AIX could allow a local attacker to gain elevated privileges on the system, caused by an error in the getpwnam() function when customer extended LDAP user filtering is configured. Fixes are available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in icedove
Links: DSA-2464, CVE-2012-0467, CVE-2012-0470, CVE-2012-0471, CVE-2012-0477, CVE-2012-0479, ESB-2012.0433, ESB-2012.0451
ID: ae-201205-009

Several vulnerabilities have been discovered in Icedove, an unbranded version of the Thunderbird mail/news client. They might allow remote attackers to conduct Cross-Site Scripting (XSS) attacks, the execution of arbitrary code as well as to provide misleading information. An updated addresses these issues.

System: Several
Topic: Vulnerabilities in VMware products
Links: VMSA-2012-0009, CVE-2012-1516, CVE-2012-1517, CVE-2012-2448, CVE-2012-2449, CVE-2012-2450, ESB-2012.0432
ID: ae-201205-008

VMware Workstation, Player, ESXi and ESX patches address critical security issues. Exploiting the vulnerabilities might allow remote attackers to execute arbitrary code on vulnerable systems or to reach a Denial-of-Service (DoS). So installing these patches is strongly recommended.

System: Microsoft Windows
Topic: Vulnerability in Citrix Provisioning Services
Links: CTX133039, ESB-2012.0429
ID: ae-201205-007

A vulnerability has been identified in Citrix Provisioning Services that could result in arbitrary code execution. This vulnerability can be triggered by an attacker sending a specially crafted packet to the Provisioning Services server. Hotfixes address this vulnerability.

System: Linux
Topic: Vulnerabilities in HP SNMP Agents
Links: HPSBMU02771, SSRT100558, CVE-2012-2001, CVE-2012-2002, X-Force #75317, ESB-2012.0428
ID: ae-201205-006

Potential security vulnerabilities have been identified with HP SNMP Agents for Linux. The vulnerabilities could be exploited remotely resulting in Cross-Site Scripting (XSS) and URL redirection. HP has provided updates to resolve the vulnerabilities.

System: Microsoft Windows
Topic: Vulnerabilities in HP Insight Management Agents
Links: HPSBMU02770, SSRT100848, CVE-2012-2003, CVE-2012-2004, CVE-2012-2005, CVE-2012-2006, ESB-2012.0427
ID: ae-201205-005

Potential security vulnerabilities have been identified with HP Insight Management Agents for Windows Server. The vulnerabilities could be exploited remotely resulting in Cross-Site Request Forgery (CSRF), Cross-Site Scripting (XSS), URL redirection, unauthorized modification, and Denial-of-Service (DoS). HP has provided updates to resolve the vulnerabilities.

System: Various
Topic: Vulnerabilities in Drupal Core
Links: DRUPAL_SA-CORE-2012-002, CVE-2012-1588, CVE-2012-1589, CVE-2012-1590, CVE-2012-1591, ESB-2012.0425
ID: ae-201205-004

Multiple vulnerabilities have been found in Drupal Core. They might allow a Denial-of-Service (DoS) or unauthorized access. Users should upgrade to Drupal 7.13.

System: Several
Topic: Vulnerability in HP System Health Application and Command Line Utilities
Links: HPSBMU02772, SSRT100603, CVE-2012-2000, ESB-2012.0424
ID: ae-201205-003

Potential security vulnerabilities have been identified with HP System Health Application and Command Line Utilities for Linux. The vulnerabilities could be exploited remotely resulting in execution of arbitrary code. HP has provided updates that are available now.

System: Several
Topic: Vulnerability in Oracle database
Links: Oracle, CVE-2012-1675, VU #359816, ASB-2012.0064
ID: ae-201205-002

The Oracle database component contains a vulnerability in the TNS listener service. The TNS listener service accepts unauthenticated remote registrations with the appropriate connect packet. Due to this, an unauthenticated attacker may be able to register a client using an already registered database's instance name to perform a man-in-the-middle attack that allows the attack to sniff database traffic and inject database commands to the server. Oracle has published workarounds to address this vulnerability.

System: Several
Topic: Vulnerabilities in HP Systems Insight Manager
Links: HPSBMU02769, SSRT100846, ESB-2012.0423
ID: ae-201205-001

Potential security vulnerabilities have been identified with HP Systems Insight Manager (SIM) for HP-UX, Linux, and Windows. These vulnerabilities could be exploited remotely resulting in unauthorized access, execution of arbitrary code, information disclosure , Cross-Site Request Forgery (CSRF), URL redirection, authentication bypass, and Denial-of-Service (DoS).
HP has provided HP System Insight Manager v7.0 (bundled with IM v7.0) for Windows, Linux, and HP-UX to resolve these vulnerabilities.



(c) 2000-2013 AERAsec Network Services and Security GmbH