Network Security

AERAsec
Network Security
Current Security Messages


Most of the links lead to the corresponding files at CERT or other organisations. So changes take place immediately, especially which patches should be installed or which changes in the configuration should be made to avoid this vulnerability. Some of the files are transferred by FTP.

By the way: If we're not publishing well-known risks inheritant in any widely used platform or program that doesn't mean this particular platform or program is safe to use!

Here you find our network security search engine!


This is some information you send:

Your Browser

CCBot/2.0

Your IP address

ec2-54-224-75-101.compute-1.amazonaws.com [54.224.75.101]

Your referer

(filtered or not existing)

Current month, Last month, Last 10 messages, Last 20 messages (index only)

Chosen month 06 / 2012

System: Microsoft Windows
Topic: Vulnerability in IBM Eclipse Help System
Links: IBM swg24032950, ESB-2012.0632
ID: ae-201206-101

An APAR fix addresses vulnerabilities in the IBM Eclipse Help System version 3.6.2. They could allow Cross-Site Scripting (XSS) attacks as well as file path traversal. So this fix is recommended.

System: Microsoft Windows
Topic: Vulnerability in IBM Rational ClearQuest CQOle ActiveX Control
Links: ZDI-12-113, IBM swg21591705, CVE-2012-0708, ESB-2012.0631
ID: ae-201206-100

A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of IBM Rational ClearQuest. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. A patch is available now.

System: Several
Topic: Vulnerability in SAP Netweaver
Links: ZDI-12-111, ESB-2012.0630
ID: ae-201206-099

A new vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of SAP NetWeaver ABAP. Authentication isn't required to exploit this vulnerability. A patch is available now.

System: Several
Topic: Vulnerability in Avaya IP Office Customer Call Reporter
Links: ASA-2012-222, ZDI-12-106, CVE-2011-3811, ESB-2012.0629, X-Force #76631
ID: ae-201206-098

A flaw exists in Avaya IP Office Customer Call Reporter because it allows unauthenticated users to upload files to the webserver through ImageUpload.ashx. The uploaded files will not be stripped of their file extensions and the directory where they are uploaded to has no scripting restrictions. This flaw can lead the remote code execution under the context of the user running the IP Office Customer Call Reporter. Avaya has issued an update to correct this vulnerability.

System: Printer
Topic: Vulnerability in HP Photosmart Printers
Links: HPSBPI02794 SSRT100542, CVE-2012-2017, ESB-2012.0628
ID: ae-201206-097

A potential security vulnerability has been identified with certain HP Photosmart printers. The vulnerability could be exploited remotely to create a Denial-of-Service (DoS). Firmware updates are available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in bcfg2 and libspring-2.5-java
Links: DSA-2503, CVE-2012-3166, ESB-2012.0626,
DSA-2504, CVE-2011-2730, ESB-2012.0627
ID: ae-201206-096

It was discovered that malicious clients can trick the server component of the Bcfg2 configuration management system to execute commands with root privileges. This is done via shell command injection.
It has been found that the Spring Framework contains an information disclosure vulnerability in the processing of certain Expression Language (EL) patterns, allowing attackers to access sensitive information using HTTP requests.
Updated packages are available now.

System: Many
Topic: Vulnerabilities in Symantec Message Filter
Links: SYM12-010, CVE-2012-0300, CVE-2012-0301, CVE-2012-0302, CVE-2012-0303, ESB-2012.0625
ID: ae-201206-095

Symantecs Message Filter management interface, the Brightmail Control Center, is susceptible to a number of security concerns resulting from improper input validation and authentication. Successful exploitation of these issues could result in unauthorized privileged access to the application, execution of unauthorized scripts in the context of the targeted users browser or disclosure of application versioning information that could potentially be leveraged in further exploitation attempts. Symantec has verified these issues and has released an update to address them.

System: Several
Topic: Vulnerability in SAP Netweaver
Links: ZDI-12-104, ESB-2012.0624
ID: ae-201206-094

A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of SAP NetWeaver ABAP. Authentication isn't required to exploit this vulnerability. A patch is available now.

System: Many
Topic: Vulnerability in Novell iPrint Client
Links: ZDI-12-102, CVE-2011-4187, ESB-2012.0623, Novell #3D7010143
ID: ae-201206-093

A vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Novell iPrint Client. User interaction is required in that a target must visit a malicious page or open a malicious file. A patch is available now.

System: Many
Topic: Vulnerabilities in HP System Management Homepage
Links: HPSBMU02786 SSRT100877, ESB-2012.0622
ID: ae-201206-092

Several potential security vulnerabilities have been identified with HP System Management Homepage (SMH) running on Linux and Windows. The vulnerabilities could be exploited remotely resulting in unauthorized access, disclosure of information, data modification, Denial-of-Service (DoS), and execution of arbitrary code. HP has provided HP System Management Homepage v7.1.1 or subsequent to resolve the vulnerabilities.

System: IBM AIX
Topic: Vulnerability in sendmail
Links: IBM, CVE-2012-2200, ESB-2012.0621
ID: ae-201206-091

Sendmail is a common software for all mail purposes. A vulnerability could allow users with an existing account to initiate a Denial-of-Service (DoS) or to compromise the root account. This is due to a bug in handling the .forward file of a user. Updated APARs are available now.

System: Red Hat Enterprise Linux
Topic: Vulnerabilities in PHP
Links: RHSA-2012-1045, RHSA-2012-1046, RHSA-2012-1047, CVE-2010-2950, CVE-2011-4153, CVE-2012-0057, CVE-2012-0781, CVE-2012-0789, CVE-2012-1172, CVE-2012-1823, CVE-2012-2143, CVE-2012-2336, CVE-2012-2386, ESB-2012.0619
ID: ae-201206-090

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. Several vulnerabilities have been found. They allow several attacks like e.g. Denial-of-Service (DoS), access to confidential data or remote execution of arbitrary code. Updated packages are available, they should be installed as soon as possible.

System: Many
Topic: Vulnerabilities in Cisco WebEx Player
Links: cisco-sa-20120627, CVE-2012-3053, CVE-2012-3054, CVE-2012-3055, CVE-2012-3056, CVE-2012-3057, ESB-2012.0620
ID: ae-201206-089

The Cisco WebEx Players are applications that are used to play back WebEx meeting recordings that have been recorded on a WebEx meeting site or on the computer of an online meeting attendee. The Cisco WebEx Recording Format (WRF) player contains four buffer overflow vulnerabilities and the Cisco Advanced Recording Format (ARF) player contains one buffer overflow vulnerability. In some cases, exploitation of the vulnerabilities could allow a remote attacker to execute arbitrary code on the system with the privileges of a targeted user. Cisco has updated affected versions of the WebEx meeting sites and WRF and ARF players to address these vulnerabilities.

System: Red Hat Linux
Topic: Vulnerability in libwpd
Links: RHSA-2012-1043, CVE-2012-2149, ESB-2012.0618
ID: ae-201206-088

Updated libwpd packages that fix one security issue are now available for Red Hat Enterprise Linux 5.

System: Red Hat Linux
Topic: Vulnerabilities in kernel
Links: RHSA-2012-1042, CVE-2012-1179, CVE-2012-1097, CVE-2012-0044, CVE-2012-0038, CVE-2011-4347, ESB-2012.0617
ID: ae-201206-087

Updated kernel packages that fix various security issues and three bugs are now available for Red Hat Enterprise Linux 6.1 Extended Update Support.

System: Red Hat Linux
Topic: Vulnerabilities in redhat-ds-base
Links: RHSA-2012-1041, CVE-2012-2746, CVE-2012-2678, ESB-2012.0616
ID: ae-201206-086

Updated redhat-ds-base packages that fix two security issues are now available for Red Hat Directory Server 8.

System: Microsoft Windows/Solaris
Topic: Vulnerability in HP Business Service Management
Links: emr_na-c0337764, CVE-2012-2561, ESB-2012.0572.2
ID: ae-201206-085

A potential security vulnerability has been identified with HP Business Service Management (BSM) . The vulnerability could be remotely exploited to allow unauthorized disclosure of information, unauthorized modification, and Denial of Service (DoS). The vulnerability can be worked around by implementing firewall rules to block traffic from untrusted sources to JBoss TCP ports 4444, 1098, 1099.

System: Microsoft Windows/MAC OS
Topic: Vulnerability in Adobe Flash Professional
Links: apsb12-12, CVE-2012-0778
ID: ae-201206-084

Adobe released a security update for Adobe Flash Professional CS5.5 (11.5.1.349 and earlier) for Windows and Macintosh. This update addresses a vulnerability that could allow an attacker who successfully exploits this vulnerability to take control of the affected system.

System: Red Hat Linux
Topic: Vulnerabilities in postgresql84/postgresql
Links: RHSA-2012-1037, CVE-2012-2143, CVE-2012-2655
ID: ae-201206-083

Updated postgresql84 and postgresql packages that fix two security issues are now available for Red Hat Enterprise Linux 5 and 6 respectively.

System: Red Hat Linux
Topic: Vulnerability in postgresql
Links: RHSA-2012-1036, RHSA-2012-1037, CVE-2012-2143, ESB-2012.0615
ID: ae-201206-082

Updated postgresql packages that fix one security issue are now available for Red Hat Enterprise Linux 5.

System: Many
Topic: Vulnerability in IBM Rational Directory Server
Links: swg21597191, ESB-2012.0614
ID: ae-201206-081

A Security vulnerability has been discovered in the IBM Rational Directory Server (RDS) Help system shipped with the RDS product. When the Help file is opened in Rational Directory Administrator, the 'href' parameter in advanced/deferredView.jsp causes Cross Site Scripting (XSS).

System: Microsoft Windows
Topic: Vulnerabilities in IBM Lotus Expeditor
Links: swg21575642, CVE-2012-0191, CVE-2012-0187, CVE-2012-0186, CVE-2010-4647, CVE-2008-7271, ESB-2012.0613
ID: ae-201206-080

IBM has identified a total of four vulnerabilities in IBM Lotus Expeditor. All four vulnerabilities are resolved by IBM Lotus Expeditor 6.2 FP5+ Security Pack.

System: Many
Topic: Vulnerabilities in IBM System Storage
Links: 75236, 75239, CVE-2012-2172, CVE-2012-2171, ESB-2012.0612
ID: ae-201206-079

IBM System Storage is found to be vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements via the Manager Profiler, which could allow the attacker to view, add, modify or delete information in the back-end database. New updates are available.

System: Many
Topic: Vulnerability in python-crypto
Links: dsa-2502, CVE-2012-2417, ESB-2012.0611
ID: ae-201206-078

It was discovered that that the ElGamal code in PythonCrypto, a collection of cryptographic algorithms and protocols for Python, used insecure insufficient prime numbers in key generation, which lead to a weakened signature or public key space, allowing easier brute force attacks on such keys. New updates are available to address these issue.

System: Debian GNU/Linux 6
Topic: Vulnerabilities in xen
Links: dsa-2501, CVE-2012-2934, CVE-2012-0218, CVE-2012-0217, ESB-2012.0610
ID: ae-201206-077

Several vulnerabilities were discovered in Xen, a hypervisor. These vulnerabilities may allow denial of service (DoS) and privilege escalation. New updates are available to address these issues.

System: Many
Topic: Vulnerabilities in mantis
Links: dsa-2500, CVE-2012-2692, CVE-2012-1123, CVE-2012-1122, CVE-2012-1120CVE-2012-1119CVE-2012-1118ESB-2012.0609
ID: ae-201206-076

Several vulnerabilities were discovered in Mantis, an issue tracking system. New updates are available to address these issues.

System: Debian GNU/Linux 6
Topic: Vulnerabilities in icedove
Links: dsa-2499, CVE-2012-1940, CVE-2012-1939, CVE-2012-1937, ESB-2012.0608
ID: ae-201206-075

Several vulnerabilities have been discovered in icedove, the Debian version of the Mozilla Thunderbird mail/news client. There were miscellaneous memory safety hazards and a use-after-free issue. New updates are available.

System: Debian GNU/Linux 6
Topic: Vulnerability in dhcpcd
Links: dsa-2498, CVE-2012-2152, ESB-2012.0607
ID: ae-201206-074

It was discovered that dhcpcd, a DHCP client, was vulnerable to a stack overflow. A malformed DHCP message could crash the client, causing a denial of service, and potentially remote code execution through properly designed malicous DHCP packets. New updates are available.

System: OpenVMS
Topic: Vulnerabilities in HP OpenVMS
Links: CVE-2012-2131, CVE-2012-4605, CVE-2012-1165, CVE-2012-0884, CVE-2012-0050, CVE-2011-4619, CVE-2011-4577, CVE-2011-4576, CVE-2011-4109, CVE-2011-4108, ESB-2012.0606
ID: ae-201206-073

A new patch kit is available for OpenVMS to resolve several vulnerabilities.

System: Red Hat Linux
Topic: Vulnerabilities in JBoss Enterprise BRMS Platform 5.3.0
Links: RHSA-2012-1028.html, CVE-2012-2377, CVE-2011-4605, CVE-2011-4085, ESB-2012.0605
ID: ae-201206-072

JBoss Enterprise BRMS Platform 5.3.0, which fixes multiple security issues, various bugs, and adds enhancements is now available from the Red Hat Customer Portal.

System: Many
Topic: Vulnerability in IBM DB2
Links: swg21588100, CVE-2012-0709, ESB-2012.0602
ID: ae-201206-071

Vulnerability in IBM DB2 could allow an authenticated user to view data from a table to which they do not have privileges. New packets are available for download.

System: Many
Topic: Vulnerability in IBM DB2
Links: swg21592556, CVE-2012-0713, ESB-2012.0601
ID: ae-201206-070

Vulnerability in IBM DB2 XML Feature could allow a remote attacker to view XML files owned by the DB2 instance owner. New packets are available for download.

System: Many
Topic: Vulnerability in IBM DB2
Links: swg21597090, CVE-2012-2180, ESB-2012.0600
ID: ae-201206-069

A vulnerability in IBM DB2 could allow an unauthenticated, remote attacker to cause a denial of service. The vulnerability exists in the Distributed Relational Database Architecture (DRDA) module that handles DRDA chaining. A malicious user with knowledge of DRDA could send a specially crafted request to a database server to cause disruptions or a crashes. New packets are available for download.

System: Many
Topic: Vulnerabilities in Cisco AnyConnect Secure Mobility Client
Links: cisco-sa-20120620-ac, CVE-2012-2496, CVE-2012-2495, CVE-2012-2494, CVE-2012-2493, ESB-2012.0604
ID: ae-201206-068

The Cisco AnyConnect Secure Mobility Client is affected by several vulnerabilities. These may lead to the execution of arbitrary code and denial of service (DoS) attacks. Cisco has released free software updates that address these vulnerabilities.

System: Mandriva Linux
Topic: Vulnerabilities in libxml2 and net-snmp
Links: MDVSA-2012:098, CVE-2011-3102,
MDVSA-2012:099, CVE-2012-2141
ID: ae-201206-067

An Off-by-one error in libxml2 allows remote attackers to cause a Denial-of-Service (DoS) or possibly have unspecified other impact via unknown vectors. An array index error, leading to out-of heap-based buffer read flaw was found in the way net-snmp agent performs entries lookup in the extension table. When a certain MIB subtree is handled by the extend directive, a remote attacker having read privilege to the subtree could use this flaw to cause a Denial-of-Service via SNMP GET request involving a non-existent extension table entry
Updated packages address these issues.

System: Cisco
Topic: Vulnerability in Cisco Application Control Engine
Links: cisco-sa-20120620-ace, CVE-2012-3063, ESB-2012.0599
ID: ae-201206-066

A vulnerability exists in Cisco Application Control Engine (ACE) software. Administrative users may be logged into an unintended context (virtual instance) on the ACE when running in multicontext mode. For this vulnerability to be exploited two or more contexts must be configured with the same management IP address. The administrator must have valid login credentials for the incorrect context when being logged in. Cisco has released free software updates that address this vulnerability.

System: Cisco
Topic: Vulnerability in Cisco ASA 5500 Series / Catalyst 6500 Series ASASM
Links: cisco-sa-20120620-asaipv6, ESB-2012.0598
ID: ae-201206-065

Cisco ASA 5500 Series Adaptive Security Appliances (Cisco ASA) and Cisco Catalyst 6500 Series ASA Services Module (Cisco ASASM) contain a vulnerability that may allow an unauthenticated, remote attacker to cause the reload of the affected device. This Denial-of-Service (DoS) can only be triggered by IPv6 transit traffic, and affects both Cisco ASA and Cisco ASASM when configured in transparent firewall mode. Cisco has released free software updates that address this vulnerability.

System: Appliance
Topic: Vulnerabilities in IBM System Storage
Links: IBM, CVE-2012-2171, CVE-2012-2172, X-Force #75236, X-Force #75239
ID: ae-201206-064

IBM System Storage is vulnerable to SQL injection and multiple Cross-Site Scripting (XSS) attacks. A remote attacker could send specially-crafted SQL statements via the Manager Profiler, which could allow the attacker to view, add, modify or delete information in the back-end database. Besides this, a remote attacker could exploit the XSS vulnerabilities using specially-crafted URL to execute arbitrary scripts in the web browser. Patches seem to be available.

System: IBM AIX
Topic: Vulnerability in AIX
Links: IBM, CVE-2012-2179, X-Force #75510
ID: ae-201206-063

AIX could allow a arbitrary file overwrite symlink vulnerability due to libodm.a bug. A local attacker could exploit this vulnerability by creating a symbolic link from a temporary file to various files on the system, which could allow the attacker to overwrite arbitrary files on the system with elevated privileges. APARs correcting this problem are available.

System: Debian GNU/Linux
Topic: Vulnerability in Quagga
Links: DSA-2497, CVE-2012-1820, ESB-2012.0597
ID: ae-201206-062

It has been found that Quagga, a routing daemon, contains a vulnerability in processing the ORF capability in BGP OPEN messages. A malformed OPEN message from a previously configured BGP peer could cause bgpd to crash, causing a Denial-of-Service. Updated packages are available now.

System: Red hat Enterprise Linux
Topic: Vulnerabilities in JBoss Enterprise
Links: RHSA-2012-1010, RHSA-2012-1011, RHSA-2012-1012, RHSA-2012-1013, RHSA-2012-1014, RHSA-2012-1022, RHSA-2012-1023, RHSA-2012-1024, RHSA-2012-1025, RHSA-2012-1026, RHSA-2012-1027, CVE-2012-1154, CVE-2012-1167, CVE-2012-4605, ESB-2012.0569, ESB-2012.0570, ESB-2012.0595, ESB-2012.0596
ID: ae-201206-061

An update for JBoss Enterprise Application Platform 5.1.2 is available now. It fixes some vulnerabilities regarding unauthorized access.

System: Red hat Enterprise Linux 6
Topic: Vulnerabilities in libvirt, libguestfs, rsyslog, busybox, php-pecl-apc, 389-ds-base, abrt, python, kernel, mysql, net-snmp, qt, openssh, openldap, cifs-utils, xorg-x11, sos, nss, sblim-cim-client2, and java-1.7.0-openjdk
Links: RHSA-2012-0748, CVE-2012-2693, ESB-2012.0574,
RHSA-2012-0774, CVE-2012-2690, ESB-2012.0575,
RHSA-2012-0796, CVE-2011-4623, ESB-2012.0576,
RHSA-2012-0810, CVE-2006-1168, CVE-2011-2716, ESB-2012.0577,
RHSA-2012-0811, CVE-2010-3294, ESB-2012.0578,
RHSA-2012-0813, RHSA-2012-0997, CVE-2012-0833, CVE-2012-2678, CVE-2012-2746, ESB-2012.0579, ESB-2012.0592,
RHSA-2012-0841, CVE-2011-4088, CVE-2012-1106, ESB-2012.0580,
RHSA-2012-0862, CVE-2011-1083, CVE-2012-4131, ESB-2012.0581,
RHSA-2012-0874, CVE-2012-2102, ESB-2012.0582,
RHSA-2012-0876, CVE-2012-2141, ESB-2012.0583,
RHSA-2012-0880, CVE-2010-5076, CVE-2011-3922, ESB-2012.0584,
RHSA-2012-0884, CVE-2011-5000, ESB-2012.0585,
RHSA-2012-0899, CVE-2012-1164, ESB-2012.0586,
RHSA-2012-0902, CVE-2012-1586, ESB-2012.0587,
RHSA-2012-0939, CVE-2011-4028, CVE-2011-4029, ESB-2012.0588,
RHSA-2012-0958, CVE-2012-2664, ESB-2012.0589,
RHSA-2012-0973, ESB-2012.0590,
RHSA-2012-0987, CVE-2012-2328, ESB-2012.0591,
RHSA-2012-1009, RHSA-2012-1019, CVE-2012-1711, CVE-2012-1713, CVE-2012-1716, CVE-2012-1717, CVE-2012-1718, CVE-2012-1719, CVE-2012-1723, CVE-2012-1724, CVE-2012-1725, CVE-2012-1726, ESB-2012.0593, ESB-2012.0594,
ID: ae-201206-060

Vulnerabilities have been found in libvirt, libguestfs, rsyslog, busybox, php-pecl-apc, 389-ds-base, abrt, python, kernel, mysql, net-snmp, qt, openssh, openldap, cifs-utils, xorg-x11, sos, nss, sblim-cim-client2, and java-1.7.0-openjdk. It's recommended to update affected systems as soon as possible.

System: Appliance
Topic: Vulnerability in Innominate mGuard Network Appliance
Links: ICSA-12-167-01, CVE-2012-3006, ESB-2012.0573
ID: ae-201206-059

An insufficient entropy vulnerability in Innominates mGuard network appliance product line has been found. By impersonating the device, an attacker can obtain the credentials of administrative users and potentially perform a Man-in-the-Middle (MitM) attack. Innominate has published an update to address this vulnerability.

System: Several
Topic: Vulnerabilities in HP Business Service Management
Links: HPSBMU02792 SSRT100820, CVE-2012-0482, ESB-2012.0572
ID: ae-201206-058

A potential security vulnerability has been identified with HP Business Service Management (BSM). The vulnerability could be remotely exploited to allow unauthorized disclosure of information, unauthorized modification, and Denial-of-Service (DoS). A workaround has been published.

System: Several
Topic: Vulnerability in IBM WebSphere Application Server
Links: IBM swg24032861, ESB-2012.0567
ID: ae-201206-057

A code injection security problem in iehs.war has been found in the IBM WebSphere Application Server. This might allow Cross-Site Scripting (XSS) attacks via the help system of this server. A fix is available now.

System: Microsoft Windows
Topic: Vulnerability in CIFS-Server (Samba)
Links: HPSBUX02789 SSRT100824, CVE-2012-1182, CVE-2012-2111, ESB-2012.0566
ID: ae-201206-056

Potential security vulnerabilities have been identified with HP-UX CIFS-Server (Samba). The vulnerabilities could be exploited remotely to execute arbitrary code or elevate privileges. HP has provided a software update to resolve the vulnerabilities.

System: Microsoft Windows
Topic: Vulnerability in Symantec LiveUpdate Administrator
Links: SYM12-009, CVE-2012-0304, ESB-2012.0568
ID: ae-201206-055

Symantec LiveUpdate Administrator 2.3 and prior install some files with insecure file permissions during a default installation. These files allow full control permission to everyone which could result in arbitrary command execution with elevated privileges on the system. Symantec engineers confirmed the issue and addressed it in Symantec LiveUpdate Administrator 2.3.1.

System: Debian GNU/Linux
Topic: Vulnerabilities in mysql-5.1
Links: DSA-2496, CVE-2012-0583, CVE-2012-1688, CVE-2012-1690, CVE-2012-1703, CVE-2012-2122, ESB-2012.0565
ID: ae-201206-054

Several issues have been discovered in the MySQL database server. Users having an existing account might access privileged data. Besides this, security is reduces. Updated packages are available now.

System: Some
Topic: Vulnerabilities in python
Links: RHSA-2012-0744, RHSA-2012-0745, CVE-2011-4940, CVE-2011-4944, CVE-2012-0845, CVE-2012-1150, ESB-2012.0563
ID: ae-201206-053

Python is an interpreted, interactive, object-oriented programming language. Several vulnerabilities have been found. They allow Denial-of-Service (DoS), Cross-Site Scripting (XSS) attacks as well as access to confidential data. Updated packages are available now.

System: Red hat Enterprise Linux 6
Topic: Vulnerabilities in Kernel
Links: RHSA-2012-0743, CVE-2012-0044, CVE-2012-1179, CVE-2012-2119, CVE-2012-2121, CVE-2012-2123, CVE-2012-2136, CVE-2012-2137, CVE-2012-2372, CVE-2012-2373, ESB-2012.0562
ID: ae-201206-052

The kernel packages contain the Linux kernel, the core of any Linux operating system. Several vulnerablities have been found in the kernel. Users having an existing account might gain increased privileges or unauthorized access as well as the chance to initiate a Denial-of-Service (DoS). Updated kernel packages address these issues.

System: Mandriva Linux
Topic: Vulnerabilities in ClamAV and Java
Links: MDVSA-2012:094, CVE-2012-1457, CVE-2012-1458, CVE-2012-1459,
MDVSA-2012:095, CVE-2012-1711, CVE-2012-1713, CVE-2012-1716, CVE-2012-1717, CVE-2012-1718, CVE-2012-1719, CVE-2012-1723, CVE-2012-1724, CVE-2012-1725
ID: ae-201206-051

The TAR file parser in ClamAV 0.96.4 allows remote attackers to bypass malware detection via a TAR archive entry. The Microsoft CHM file parser in ClamAV allows remote attackers to bypass malware detection using a crafted reset interval in the LZXC header of a CHM file.
Multiple vulnerabilities exist in Java for Red Hat Enterprise Linux. They allow remote attackers unautorised access as well as remote code execution and to initiate a Denial-of-Service (DoS).
Updated packages address these issues.

System: Several
Topic: Vulnerability in Oracle Mojarra
Links: X-Force #76179, CVE-2012-2672, ESB-2012.0561
ID: ae-201206-050

Oracle Mojarra could allow a remote attacker to obtain sensitive information, caused by an error in the FacesContext object. By invoking the FacesContext.getCurrentInstance() function, an attacker could exploit this vulnerability to disclose another WAR's resources and obtain sensitive information. A solution isn't available yet.

System: HP-UX
Topic: Vulnerabilities in Apache Web Server
Links: HPSBUX02791 SSRT100856, CVE-2011-4153, CVE-2012-0830, CVE-2012-0883, CVE-2012-1172, CVE-2012-1823, CVE-2012-2311, ESB-2012.0559
ID: ae-201206-049

Potential security vulnerabilities have been identified with HP-UX Apache Web Server running PHP. These vulnerabilities could be exploited remotely to execute arbitrary code, elevate privileges, or create a Denial-of-Service (DoS). PHP is contained in the HP-UX Apache Web Server Suite. Fixes are available.

System: Several
Topic: Vulnerabilities in VMware
Links: VMSA-2012-0011, CVE-2012-3288, CVE-2012-3289, ESB-2012.0556
ID: ae-201206-048

In products of VMware like VMware Workstation, VMware Player, VMware Fusion, ESX, and ESXi some vulnerabilities might lead to the execution of arbitrary code or a Denial-of-Service (DoS). Local access is necessary to exploit these vulnerabilities. An Upgrade is available.

System: Microsoft Windows
Topic: Vulnerability in Lotus Notes
Links: IBM swg21598348, CVE-2012-2174, X-Force #75320, ESB-2012.0560
ID: ae-201206-047

Lotus Notes could allow a remote attacker to execute arbitrary commands on the system, caused by improper validation of user supplied input. By persuading a victim to click on a specially-crafted notes:// URI, an attacker could exploit this vulnerability to execute arbitrary shell commands. This problem will be addressed in Lotus Notes 8.5.3 Fix Pack 2.

System: Mandriva Linux
Topic: Vulnerabilities in PostgreSQL and PHP
Links: MDVSA-2012:092, CVE-2012-2143, CVE-2012-2655,
MDVSA-2012:093, CVE-2012-2143, CVE-2012-2386
ID: ae-201206-046

The crypt(text, text) function in the pgcrypto contrib module doesn't handle certain passwords correctly when producing traditional DES-based hashes. Characters after the first 0x80 byte were ignored. SECURITY DEFINER and SET attributes for a call handler of a procedural language could crash the database server.
The Phar extension for PHP doesn't properly handle crafted tar files, leading to a heap-based buffer overflow. PHP applications processing tar files could crash or, potentially, execute arbitrary code.
Updated packages are available now.

System: OpenVMS
Topic: Vulnerability in BIND 9 Resolver
Links: HPSBOV02774 SSRT100684, CVE-2011-4313, ESB-2012.0553
ID: ae-201206-045

A potential security vulnerability has been identified with the TCP/IP Services for OpenVMS BIND 9 Resolver. The vulnerability could be remotely exploited to cause a Denial-of-Service (DoS). A fix is available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in FFmpeg and OpenConnect
Links: DSA-2494, CVE-2011-3951, CVE-2011-3952, CVE-2012-0851, CVE-2012-0852, ESB-2012.0557,
DSA-2495, CVE-2012-3921, ESB-2012.0558, ESB-2012.0564
ID: ae-201206-044

FFmpeg is Debian's version of the Libav media codec suite. It contains vulnerabilities in the DPCM codecs and in H.264, ADPCM as well as the KMVC Decoder. In OpenConnect, a client for the Cisco AnyConnect VPN, a buffer overflow has been discovered. This could result in a Denial-of-Service (DoS).
Updated packages are available now.

System: Microsoft Windows
Topic: Vulnerability in Check Point Endpoint Connect
Links: Check Point sk76480, CVE-2012-2753, Security Focus #523110, ASB-2012.0087
ID: ae-201206-043

A vulnerability in Checkpoint Endpoint Connect VPN causes the client to be susceptible to an attack that result in arbitrary dynamic-library loading by a local user. So this user is able to execute arbitrary code with his rights. A hotfix for Endpoint Security R75 as well as R73.x and E80.x is available now.

System: Mandriva Linux
Topic: Vulnerabilities in openoffice.org
Links: MDVSA-2012:090, CVE-2012-1149, CVE-2012-2334
ID: ae-201206-042

An integer overflow flaw, leading to a buffer overflow, was found in the way OpenOffice.org processes an invalid Escher graphics records length in Microsoft Office PowerPoint documents. Besides this, multiple integer overflow flaws, leading to heap-based buffer overflows, were found in the JPEG, PNG, and BMP image file reader implementations in OpenOffice.org. These vulnerabilities can be exploited by attackers providing special documents to their victim. Updated packages are available now.

System: Red hat Enterprise Linux
Topic: Vulnerabilities in expat
Links: RHSA-2012-0731, CVE-2012-0876, CVE-2012-1148, ESB-2012.0552
ID: ae-201206-041

Expat is a C library for parsing XML documents. A Denial-of-Service (DoS) flaw has been found in the implementation of hash arrays in Expat. Besides this, a memory leak in Expat has been found. Updated packages are available now.

System: Red hat Enterprise Linux
Topic: Vulnerabilities in Java
Links: RHSA-2012-0729, RHSA-2012-0730, RHSA-2012-0734, CVE-2012-0511, CVE-2012-1711, CVE-2012-1713, CVE-2012-1716, CVE-2012-1717, CVE-2012-1718, CVE-2012-1719, CVE-2012-1721, CVE-2012-1722, CVE-2012-1723, CVE-2012-1724, CVE-2012-1725, ESB-2012.0549, ESB-2012.0550, ESB-2012.0551
ID: ae-201206-040

Multiple vulnerabilities exist in Java for Red Hat Enterprise Linux. They allow remote attackers unautorised access as well as remote code execution and to initiate a Denial-of-Service (DoS). Updated packages address these issues.

System: Debian GNU/Linux
Topic: Vulnerabilities in Asterisk
Links: DSA-2493, CVE-2012-2947, CVE-2012-2948, ESB-2012.0548
ID: ae-201206-039

Asterisk is a free PBX and telephony toolkit for VoIP. The IAX2 channel driver allows remote attackers to cause a Denial-of-Service (DoS) by placing a call on hold under certain conditions. The same can be achieved by remote authenticated users by closing a connection in off-hook mode, because this results in a NULL pointer dereference.
Updated packages are available now.

System: Mac OS X
Topic: Vulnerabilities in Java
Links: APSB12-15, CVE-2012-0511, CVE-2012-1711, CVE-2012-1713, CVE-2012-1716, CVE-2012-1718, CVE-2012-1719, CVE-2012-1721, CVE-2012-1722, CVE-2012-1723, CVE-2012-1724, CVE-2012-1725, Oracle, ESB-2012.0547
ID: ae-201206-038

Multiple vulnerabilities exist in Java for Mac OS X. The most serious of which may allow an untrusted Java applet to execute arbitrary code outside the Java sandbox. Java for OS X 2012-004 and Java for Mac OS X 10.6 Update 9 can be downloaded to fix these vulnerabilities.

System: Several
Topic: Vulnerability in Adobe ColdFusion
Links: APSB12-15, CVE-2012-2041, ESB-2012.0555
ID: ae-201206-037

Adobe released a security hotfix for ColdFusion 9.0.1 and earlier versions for Windows, Macintosh and UNIX. This update resolves an HTTP response splitting vulnerability in the ColdFusion Component Browser. Adobe recommends users update their product installation.

System: Several
Topic: Vulnerability in JBoss Operations Network
Links: RHSA-2012-0725, CVE-2012-2625, ESB-2012.0544
ID: ae-201206-036

JBoss Operations Network (JBoss ON) is a middleware management solution that provides a single point of control to deploy, manage, and monitor JBoss Enterprise Middleware, applications, and services. The new JBoss ON 3.1.0 release serves as a replacement for JBoss ON 3.0.1. It fixes a security vulnerability and includes several bug fixes and enhancements.

System: Several
Topic: Vulnerability in SYSRET
Links: Citrix / Xen, FreeBSD-SA-12:04, ESB-2012.0546, MS12-042, RHSA-2012-0720, ESB-2012.0541, RHSA-2012-0721, ESB-2012.0542, NetBSD-SA2012-003, ESB-2012.0554, CVE-2012-0217
ID: ae-201206-035

Some 64-bit operating systems and virtualization software running on Intel CPU hardware are vulnerable to a local privilege escalation attack. The vulnerability may be exploited for local privilege escalation or a guest-to-host virtual machine escape. Please refer to your vendor if an update is available.

System: Red Hat Enterprise Linux
Topic: Vulnerabilities in Kernel
Links: RHSA-2012-0720, RHSA-2012-0721, CVE-2012-0217, CVE-2012-1583, CVE-2012-2934, ESB-2012.0541, ESB-2012.0542
ID: ae-201206-034

In the kernel of Red Hat Linux, some vulnerabilities have been found. Exploiting them might lead to remote code execution as well as increased privileges or Denial-of-Service (DoS). Updated packages are available.

System: Microsoft Windows
Topic: Vulnerabilities in Microsoft Windows Kernel
Links: MS12-042, CVE-2012-0217, CVE-2012-1515, ESB-2012.0538
ID: ae-201206-033

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerabilities in Microsoft Windows Kernel-Mode Drivers
Links: MS12-041, CVE-2012-1864, CVE-2012-1865, CVE-2012-1866, CVE-2012-1867, ESB-2012.0537
ID: ae-201206-032

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Microsoft Dynamics AX Enterprise Portal
Links: MS12-040, CVE-2012-1857, ESB-2012.0536
ID: ae-201206-031

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerabilities in Microsoft Lync
Links: MS12-039, CVE-2011-3402, CVE-2012-0159, CVE-2012-1849, CVE-2012-1858, ESB-2012.0540
ID: ae-201206-030

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerabilitiy in .NET Framework
Links: MS12-038, CVE-2012-1855, ESB-2012.0535
ID: ae-201206-029

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerabilities in Internet Explorer
Links: MS12-037, CVE-2012-1523, CVE-2012-1858, CVE-2012-1872, CVE-2012-1873, CVE-2012-1874, CVE-2012-1875, CVE-2012-1876, CVE-2012-1877, CVE-2012-1878, CVE-2012-1879, CVE-2012-1880, CVE-2012-1881, CVE-2012-1882, ESB-2012.0534
ID: ae-201206-028

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerabilitiy in Remote Desktop
Links: MS12-036, CVE-2012-0173, ESB-2012.0533
ID: ae-201206-027

No further comment due to legal reasons

System: Many
Topic: Vulnerabilities in HP Onboard Administrator
Links: emr_na-c03315912, CVE-2012-2110, CVE-2012-1583, CVE-2012-0884, CVE-2012-0053, CVE-2012-0050, CVE-2011-4619, CVE-2011-4576, CVE-2011-4108, CVE-2011-3192, CVE-2011-2691, CVE-2011-1473, ESB-2012.0532
ID: ae-201206-026

Potential security vulnerabilities have been identified with HP Onboard Administrator. These vulnerabilities could be exploited remotely resulting in unauthorized access to data, unauthorized disclosure of information, and Denial of Service (DoS).

System: Unix, Linux, OSX
Topic: Vulnerability in HP Server Automation
Links: emr_na-c03366886, CVE-2012-1182, ESB-2012.0531
ID: ae-201206-025

A potential security vulnerability has been identified with HP Server Automation for Linux and SunOS. This vulnerability could by exploited remotely resulting in the execution of arbitrary code. The vulnerability is in Samba which is used in HP Server Automation.

System: Windows
Topic: Vulnerabilities in SPSS
Links: swg21596690, CVE-2012-2161, CVE-2012-2159, ESB-2012.0530
ID: ae-201206-024

Some scripts in the help system used by SPSS Data Collection Developer Library are vulnerable to open redirect or cross-site scripting attacks. New updates are available to address these issues.

System: Mac OS X/Windows
Topic: Vulnerabilities in iTunes
Links: HT5318, CVE-2012-0677, CVE-2012-0672, ESB-2012.0529
ID: ae-201206-023

ITunes 10.6.3 is now available for download, which plugs two vulnerabilities. A heap buffer overflow existed in the handling of .m3u playlists which may lead to an unexpected application termination or arbitrary code execution. A memory corruption issue existed in WebKit which may lead to an unexpected application termination or arbitrary code execution.

System: Many
Topic: Vulnerabilities in Adobe Flash Player and Adobe Air
Links: APSB12-14, CVE-2012-2040, CVE-2012-2039, CVE-2012-2038, CVE-2012-2037, CVE-2012-2036, CVE-2012-2035, CVE-2012-2034, ESB-2012.0526,
RHSA-2012-0722, ESB-2012.0543
ID: ae-201206-022

The new release Flash Player 11.3 plugs at least seven security holes in Flash Player and Adobe Air. Attackers may use these flaws to crash the applications and seize control over unpatched systems. Flash updates are available for Windows, Mac, Linux and Android systems. Adobe AIR patches are available for Windows, Mac and Android platforms.

System: Debian GNU/Linux
Topic: Vulnerabilities in postgresql-8.4 and PHP5
Links: DSA-2491, CVE-2012-2143, CVE-2012-2655,
DSA-2492, CVE-2012-2386
ID: ae-201206-021

The crypt(text, text) function in the pgcrypto contrib module doesn't handle certain passwords correctly when producing traditional DES-based hashes. Characters after the first 0x80 byte were ignored. SECURITY DEFINER and SET attributes for a call handler of a procedural language could crash the database server.
The Phar extension for PHP doesn't properly handle crafted tar files, leading to a heap-based buffer overflow. PHP applications processing tar files could crash or, potentially, execute arbitrary code.
Updated packages are available now.

System: Many
Topic: Vulnerabilities in Apache CXF
Links: Apache CXF_2378, Apache CXF_2379, CVE-2012-2378, CVE-2012-2379, Secunia #49361, X-Force #76151, X-Force #76152
ID: ae-201206-020

Apache CXF could allow a remote attacker to bypass security restrictions in two different ways. An official fix is available now.

System: Several
Topic: Vulnerabilities in Adobe Flash Player
Links: APSB12-14, CVE-2012-2034, CVE-2012-2035, CVE-2012-2036, CVE-2012-2037, CVE-2012-2038, CVE-2012-2039, CVE-2012-2040
ID: ae-201206-019

Adobe has released security updates for Adobe Flash Player 11.2.202.235 and earlier versions for Windows, Macintosh and Linux, Adobe Flash Player 11.1.115.8 and earlier versions for Android 4.x, and Adobe Flash Player 11.1.111.9 and earlier versions for Android 3.x and 2.x. These updates address vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system.

System: Microsoft Windows
Topic: Vulnerabilities in IBM Eclipse Help System
Links: IBM swg21596690, CVE-2012-2159, CVE-2012-2161, X-Force #74832, X-Force #74833, Secunia #49438, Secunia #49455
ID: ae-201206-018

Multiple IBM products are vulnerable to cross-site scripting, caused by improper validation of user-supplied input by the IBM Eclipse Help System deferredView.jsp script. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim's Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim's cookie-based authentication credentials. Besides this, a remote attacker to conduct phishing attacks, caused by an open redirect vulnerability in the Eclipse Help System. An attacker could exploit this vulnerability to redirect a victim to arbitrary Web sites.
The IBM Eclipse Help System (IEHS) 3.4.3 Fix Pack addresses these issues.

System: Appliance
Topic: Vulnerabilities in ForeScout CounterACT appliance
Links: ForeScout 12_01, CVE-2012-1825, VU #815532
ID: ae-201206-017

The web interface of the ForeScout CounterACT appliance contains reflected XSS vulnerabilities. A remote attacker may, by luring a user into clicking a malicious URL, be able to disclose sensitive information, steal user cookies, or escalate privileges. Updates that should be applied are available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in iceweasel/iceape and nss
Links: DSA-2488, DSA-2489, CVE-2012-1937, CVE-2012-1940, CVE-2012-1947, ESB-2012.0524,
DSA-2490, CVE-2012-0441, ESB-2012.0525
ID: ae-201206-016

Several vulnerabilities have been discovered in Iceweasel, a web browser based on Firefox and in the Iceape internet suite, an unbranded version of Seamonkey. Exploiting them might allow remote code and command execution. Updated packages are available now.

System: Debian GNU/Linux
Topic: Vulnerabilities in openoffice.org
Links: DSA-2487, CVE-2012-1149, CVE-2012-2334, ESB-2012.0523
ID: ae-201206-015

An integer overflow flaw, leading to a buffer overflow, was found in the way OpenOffice.org processes an invalid Escher graphics records length in Microsoft Office PowerPoint documents. Besides this, multiple integer overflow flaws, leading to heap-based buffer overflows, were found in the JPEG, PNG, and BMP image file reader implementations in OpenOffice.org. These vulnerabilities can be exploited by attackers providing special documents to their victim. Updated packages are available now.

System: NetBSD
Topic: Vulnerabilities in OpenSSL
Links: NetBSD-SA2012-001, CVE-2012-2110,
NetBSD-SA2012-002, CVE-2012-2333
ID: ae-201206-014

OpenSSL is a free software for Transport Layer Security (TLS), formerly SSL. Incorrect integer conversions in OpenSSL DER buffer handling can result in memory corruption. Besides this, a flaw in the OpenSSL handling of CBC mode ciphersuites in TLS 1.1, 1.2 and DTLS can be exploited in a Denial-of-Service (DoS) attack on both clients and servers. Updated packages are available now.

System: Red Hat Enterprise Linux
Topic: Vulnerabilities in Firefox and Thunderbird
Links: RHSA-2012-0710, ESB-2012.0519,
RHSA-2012-0715, ESB-2012.0521,
ID: ae-201206-013

Several vulnerabilities have been found in the web browser Firefox and in the MUA Thunderbird. Since some of them are critical, an update is recommended.

System: IBM AIX
Topic: Vulnerability in AIX
Links: IBM, CVE-2012-2192, Secunia #49404, X-Force #76032
ID: ae-201206-012

IBM AIX is vulnerable to a denial of service, caused by an error in the socketpair() subroutine. A local attacker could exploit this vulnerability to cause the system to crash. A fix is available now.

System: Red Hat Enterprise Linux
Topic: Vulnerabilities in openoffice.org
Links: RHSA-2012-0705, CVE-2012-1149, CVE-2012-2334, ESB-2012.0517
ID: ae-201206-011

An integer overflow flaw, leading to a buffer overflow, was found in the way OpenOffice.org processes an invalid Escher graphics records length in Microsoft Office PowerPoint documents. Besides this, multiple integer overflow flaws, leading to heap-based buffer overflows, were found in the JPEG, PNG, and BMP image file reader implementations in OpenOffice.org. These vulnerabilities can be exploited by attackers providing special documents to their victim. Updated packages are available now.

System: Many
Topic: Vulnerability in BIND 9
Links: ISC, CVE-2012-1667 VU #381699, ESB-2012.0518, X-Force #76034,
DSA-2486, ESB-2012.0520, RHSA-2012-0716, RHSA-2012-0717, ESB-2012.0522, MDVSA-2012:089, FreeBSD-SA-12:03, ESB-2012.0545
ID: ae-201206-010

BIND is a very famous server for the Domain Name System (DNS). Processing of DNS resource records where the rdata field is zero length may cause various issues for the servers handling them. This issue primarily affects recursive nameservers. An upgrade addresses this issue.

System: Several
Topic: Vulnerability in Quagga
Links: VU #962587, CVE-2012-1820
ID: ae-201206-009

Quagga is a routing software suite. A Denial-of-Service condition can be caused by an attacker controlling one of the pre-configured BGP peers. In most cases this means, that the attack must be originated from an adjacent network. For most systems, updates are available now.

System: Microsoft Windows
Topic: Problems with Digital Certificates
Links: Microsoft #2718704, ESB-2012.0516, X-Force #76026
ID: ae-201206-008

No further comment due to legal reasons.

System: Debian GNU/Linux
Topic: Vulnerabilities in arpwatch, libgdata, nut, and imp4
Links: DSA-2481, CVE-2012-2653, ESB-2012.0512,
DSA-2482, CVE-2012-2653, ESB-2012.0513,
DSA-2484, CVE-2012-2944, ESB-2012.0514,
DSA-2485, CVE-2012-0791, ESB-2012.0515
ID: ae-201206-007

A patch for arpwatch (as shipped at least in Red Hat and Debian distributions) in order to make it drop root privileges would fail to do so and instead add the root group to the list of the daemon uses. Libgdata, a library used to access various Google services, isn't validating certificates against trusted system root CAs when using an https connection. Upsd, the server of Network UPS Tools (NUT) is vulnerable to a remote Denial-of-Service attack. Multiple cross-site scripting (XSS) vulnerabilities were discovered in IMP, the webmail component in the Horde framework. The vulnerabilities allow remote attackers to inject arbitrary web script or HTML via various crafted parameters.
Updated packages are available now.

System: Several
Topic: Vulnerability in IBM DB2
Links: IBM swg21592556, CVE-2012-0713, X-Force #73520
ID: ae-201206-006

IBM DB2 could allow a remote attacker to bypass security restrictions, caused an error in the XML feature. A remote authenticated attacker could exploit this vulnerability using the XMLPARSE function containing a specially-crafted character string expression to retrieve restricted XML documents. A fix is available now.

System: Microsoft Windows
Topic: Vulnerability in IrfanView
Links: Protek, Secunia #49204, X-Force #75984
ID: ae-201206-005

IrfanView 4.3.2.0 and 4.3.3.0 are vulnerable to a heap-based buffer overflow, caused by improper bounds checking the ECW plugin (NCSEcw.dll). By persuading a victim to open a specially-crafted FPX file, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the application to crash. IrvanView 4.3.4.0 addresses this vulnerability.

System: Microsoft Windows
Topic: Vulnerability in Lotus iNotes
Links: IBM swg21596862, CVE-2012-2175, X-Force #75321
ID: ae-201206-004

Lotus iNotes 8.5 ActiveX control (dwa85W.dll) is vulnerable to a buffer overflow. By persuading a victim to visit a specially-crafted Web page that passes an overly long argument to the Attachment_Times() insecure method, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause the victim's browser to crash. A fix is available now.

System: Microsoft Windows
Topic: Vulnerability in HP LoadRunner
Links: CVE-2011-4789 , ESB-2012.0511
ID: ae-201206-003

Stack-based buffer overflow in magentservice.exe in the server in HP Diagnostics allows remote attackers to execute arbitrary code via a crafted size value in a packet. A new update is available.

System: Debian GNU/Linux 6
Topic: Vulnerability in strongswan
Links: dsa-2483, CVE-2012-2388, ESB-2012.0510
ID: ae-201206-002

An authentication bypass issue was discovered in strongSwan, an IPsec-based VPN solution. When using RSA-based setups, a missing check in the gmp plugin could allow an attacker presenting a forged signature to successfully authenticate against a strongSwan responder. New packets are available for download, to fix this issue.

System: Cisco
Topic: Vulnerability in Cisco IOS XR
Links: cisco-sa-20120530-iosxr, CVE-2012-2488, ESB-2012.0505.2
ID: ae-201206-001

Cisco IOS XR Software contains a vulnerability when handling crafted packets that may result in a denial of service condition. The vulnerability is a result of improper handling of crafted packets and could cause the route processor, which processes the packets, to be unable to transmit packets to the fabric. Cisco has released free software updates that address this vulnerability



(c) 2000-2013 AERAsec Network Services and Security GmbH