Network Security

AERAsec
Network Security
Current Security Messages


Most of the links lead to the corresponding files at CERT or other organisations. So changes take place immediately, especially which patches should be installed or which changes in the configuration should be made to avoid this vulnerability. Some of the files are transferred by FTP.

By the way: If we're not publishing well-known risks inheritant in any widely used platform or program that doesn't mean this particular platform or program is safe to use!

Here you find our network security search engine!


This is some information you send:

Your Browser

CCBot/2.0

Your IP address

ec2-107-21-186-38.compute-1.amazonaws.com [107.21.186.38]

Your referer

(filtered or not existing)

Last change 5 hours ago

Current month, Last month, Last 10 messages, Last 20 messages (index only)

Chosen the last 20 messages

System: Several
Topic: Several vulnerabilities in IBM InfoSphere Optim
Links: IBM swg21637444, CVE-2013-2953, CVE-2013-2954, CVE-2013-2955, CVE-2013-2956, CVE-2013-2957, CVE-2013-2959, ESB-2013.0700
ID: ae-201305-083

Multiple vulnerabilities have been identified in the Optim E-Business Console making the product vulnerable to phishing attacks, the interception of credentials and the bypass of login entirely. Fixes are available now.

System: VMware ESX Server, Cisco
Topic: Vulnerability in Cisco WebEx Social
Links: Cisco, CVE-2013-1244, ESB-2013.0701
ID: ae-201305-082

A vulnerability in the portal module of WebEx Social could allow an authenticated, remote attacker to inject JavaScript in links attached to posts. The vulnerability is due to insufficient server-side validation and sanitization of user supplied input. An update is available via the common support channels.

System: Several
Topic: Vulnerability in IBM WebSphere Message Broker
Links: IBM swg21635474, CVE-2013-0489, ESB-2013.0699
ID: ae-201305-081

The IBM WebSphere Application Server WS-Security could allow a network attacker to spoof message signatures. By sending a specially-crafted SOAP message, a network attacker could exploit this vulnerability to execute code. Fixes are available now.

System: Several
Topic: Vulnerability in FortiClient VPN
Links: Fortinet, ESB-2013.0698
ID: ae-201305-080

Under certain conditions, FortiClient VPN may be susceptible to a certificate validation vulnerability which would allow an attacker to intercept user credentials in a man-in-the-middle attack. If an attack is successful, full credentials will be revealed and thus full access to the VPN from an outside attacker would be possible. Fortinet points out that solutions have been available since April 2012.

System: Cisco
Topic: Vulnerability in Cisco TelePresence Supervisor
Links: Cisco, CVE-2013-1236, ESB-2013.0697
ID: ae-201305-079

Cisco TelePresence Supervisor MSE 8050 contains a vulnerability that may allow an unauthenticated, remote attacker to cause high CPU utilization and a reload of the affected system. Cisco has released free software updates that address this vulnerability.

System: Red Hat Enterprise Linux
Topic: Vulnerability in openswan
Links: RHSA-2013-0827, CVE-2013-2053, ESB-2013.0696
ID: ae-201305-078

Openswan is a free implementation of Internet Protocol Security (IPsec) and Internet Key Exchange (IKE). A buffer overflow flaw was found in Openswan, allowing attackers in the local network a Denial-of-Service (DoS) or root compromise under certrain circumstances. Updated packages are available now.

System: Appliance
Topic: Several vulnerabilities in F5 BIG-IP
Links: F5, ESB-2013.0692
ID: ae-201305-077

For BIG-IP systems or Enterprise Manager systems using the MySQL database, very many MySQL vulnerabilities may allow local users to gain knowledge of sensitive information, manipulate certain data, or cause a Denial-of-Service (DoS). Upgrades address these issues.

System: Debian GNU/Linux
Topic: Several vulnerabilities in kernel
Links: DSA-2668, DSA-2669, ESB-2013.0691, ESB-2013.0702
ID: ae-201305-076

The kernel is the basis of a linux os. These packages show more than 30 vulnerabilities. Most of them can be exploited by local users only, but they might e.g. lead to root compromise. Updated packages are available.

System: Red Hat Enterprise Linux
Topic: Several vulnerabilities in Java
Links: RHSA-2013-0822, RHSA-2013-0823, ESB-2013.0689, ESB-2013.0690
ID: ae-201305-075

Many vulernabilities have been found in java-1.6.0-ibm and java-1.7.0-ibm. Exploiting them might allow several attack vectors, resulting in e.g. remote code execution. Updated packages are available now.

System: Many
Topic: Vulnerabilities in Thunderbird
Links: Thunderbird, CVE-2013-0801, CVE-2013-1670, CVE-2013-1674, CVE-2013-1675, CVE-2013-1676, CVE-2013-1677, CVE-2013-1678, CVE-2013-1679, CVE-2013-1680, CVE-2013-1681,
RHSA-2013-0821, ESB-2013.0688
ID: ae-201305-074

New versions of the mail program Thunderbird are available now. They fix several vulnerabilities that might e.g. allow remote code, execution, remote Denial-of-Service (DoS) or Cross-Site Scripting (XSS) attacks.

System: Many
Topic: Vulnerabilities in Firefox
Links: Mozilla, CVE-2013-0801, CVE-2013-1670, CVE-2013-1674, CVE-2013-1675, CVE-2013-1676, CVE-2013-1677, CVE-2013-1678, CVE-2013-1679, CVE-2013-1680, CVE-2013-1681, ASB-2013.0064,
RHSA-2013-0820, ESB-2013.0687, MDVSA-2013:165
ID: ae-201305-073

New versions of Firefox are available now. They fix several vulnerabilities that might e.g. allow remote code, execution, remote Denial-of-Service (DoS) or Cross-Site Scripting (XSS) attacks.

System: Several
Topic: Vulnerability in IBM InfoSphere Information Server
Links: IBM swg21637036, CVE-2013-0507, ESB-2013.0672
ID: ae-201305-072

The IBM InfoSphere Information Server doesn't update the session identifier after a successful authentication. This can lead to session fixation attacks. An attacker could exploit this vulnerability to gain unauthorized access to the application by acting as the session created by a regular user. Fixes are available now.

System: Several
Topic: Vulnerabilities in IBM InfoSphere Data Replication Dashboard
Links: IBM swg21637087, CVE-2013-0169, CVE-2013-0440, CVE-2013-0443, ESB-2013.0671
ID: ae-201305-071

The IBM JRE embedded in the InfoSphere Data Replication Dashboard has security vulnerabilities that affect SSL connections to the dashboard web server. Further unspecified vulnerabilities allow remote attackers to affect availability via vectors that are related to JSSE. Fixes are available now.

System: Several
Topic: Vulnerabilities in Adobe Reader and Acrobat
Links: APSB13-15, ESB-2013.0685,
RHSA-2013-0826, ESB-2013.0695
ID: ae-201305-070

Adobe has released security updates for Adobe Reader and Acrobat XI (11.0.02) and earlier versions for Windows and Macintosh, and Adobe Reader 9.5.4 and earlier 9.x versions for Linux. These updates address 27 vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system.

System: Several
Topic: Vulnerabilities in Adobe Flash Player
Links: APSB13-14, ESB-2013.0684,
RHSA-2013-0825, ESB-2013.0694
ID: ae-201305-069

Adobe has released security updates for Adobe Flash Player 11.7.700.169 and earlier versions for Windows and Macintosh, Adobe Flash Player 11.2.202.280 and earlier versions for Linux, Adobe Flash Player 11.1.115.54 and earlier versions for Android 4.x, and Adobe Flash Player 11.1.111.50 and earlier versions for Android 3.x and 2.x. These updates address 13 vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system.

System: Several
Topic: Vulnerabilities in Adobe ColdFusion
Links: APSB13-03, CVE-2013-0625, CVE-2013-0629, CVE-2013-0631, CVE-2013-0631, VU #113732, ESB-2013.0683
ID: ae-201305-068

Adobe has released a security hotfix for ColdFusion 10, 9.0.2, 9.0.1 and 9.0 for Windows, Macintosh and UNIX. This hotfix addresses vulnerabilities that could permit an unauthorized user to remotely circumvent authentication controls, potentially allowing the attacker to take control of the affected server. Adobe is aware of reports that four vulnerabilities are being exploited in the wild against ColdFusion customers. Adobe recommends users update their product installation.

System: Microsoft Windows
Topic: Vulnerabilities in Microsoft Windows Kernel-Mode Driver
Links: MS13-046, CVE-2013-1332, CVE-2013-1333, CVE-2013-1334, ESB-2013.0682
ID: ae-201305-067

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Microsoft Windows Essentials
Links: MS13-045, CVE-2013-0096, ESB-2013.0681
ID: ae-201305-066

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Microsoft Visio
Links: MS13-044, CVE-2013-1301, ESB-2013.0680
ID: ae-201305-065

No further comment due to legal reasons

System: Microsoft Windows
Topic: Vulnerability in Microsoft Word
Links: MS13-043, CVE-2013-1335, ESB-2013.0679
ID: ae-201305-064

No further comment due to legal reasons



(c) 2000-2013 AERAsec Network Services and Security GmbH