FrSIRT Security Advisories by Vendor
MED Security Advisories :
13.10.2008 : CUPS Data Handling Buffer and Integer Overflow Vulnerabilities
10.10.2008 : Sun Java System Web Proxy Server FTP Heap Overflow
09.10.2008 : Nortel Multimedia Communication Server Multiple Vulnerabilities
09.10.2008 : CA Products Code Execution and Denial of Service Vulnerabilities
09.10.2008 : Cisco Unity Security Bypass and Denial of Service Vulnerabilities
08.10.2008 : D-Bus Signature Validation Local Denial of Service Vulnerability
07.10.2008 : iseemedia LPViewer ActiveX Control Code Execution Vulnerabilities
06.10.2008 : mIRC "PRIVMSG" Command Handling Buffer Overflow Vulnerability
06.10.2008 : Apple TV Multiple File Processing Code Execution Vulnerabilities
06.10.2008 : Fedora Security Update Fixes Libxml2 Denial of Service Vulnerability
02.10.2008 : Trend Micro OfficeScan Buffer Overflow and DoS Vulnerabilities
30.09.2008 : MPlayer "demux_real_fill_buffer()" Integer Underflow Vulnerabilities
24.09.2008 : Mozilla Products Code Execution and Security Bypass Vulnerabilities
23.09.2008 : HP-UX "rpcbind" RPC Request Remote Denial of Service Vulnerability
16.09.2008 : LANDesk Products QIP Server Service Buffer Overflow Vulnerability
16.09.2008 : Microsoft Windows Vista "WRITE_ANDX" Denial of Service Vulnerability
10.09.2008 : Apple QuickTime Multiple Remote Code Execution Vulnerabilities
09.09.2008 : Windows Media Player 11 Code Execution Vulnerability (MS08-054)
09.09.2008 : Windows Media Encoder Code Execution Vulnerability (MS08-053)
09.09.2008 : Microsoft GDI+ Multiple Code Execution Vulnerabilities (MS08-052)
09.09.2008 : IBM DB2 Universal Database Multiple Denial of Service Vulnerabilities
03.09.2008 : ClamAV CHM File Processing Remote Denial of Service Vulnerability
03.09.2008 : Redhat Security Update Fixes Directory Server Multiple Vulnerabilities
02.09.2008 : Dreambox DM500 Web Interface Denial of Service Vulnerability
02.09.2008 : VMware Products Code Execution and Security Bypass Vulnerabilities
01.09.2008 : HP TCP/IP Services for OpenVMS Finger Format String Vulnerability
28.08.2008 : JustSystems Ichitaro Products Remote Code Execution Vulnerability
26.08.2008 : OpenVMS "SMGSHR.EXE" Unspecified Buffer Overflow Vulnerability
26.08.2008 : LibTIFF LZW Data Decoding Buffer Underflow Vulnerability
25.08.2008 : neon "parse_domain()" Function Denial of Service Vulnerability
25.08.2008 : Libxml2 Buffer Overflow and Denial of Service Vulnerabilities
21.08.2008 : Opera Browser Code Execution and Security Bypass Vulnerabilities
18.08.2008 : Yelp URI Processing Remote Format String Vulnerability
15.08.2008 : xine-lib Multiple Code Execution and Denial of Service Vulnerabilities
12.08.2008 : Microsoft PowerPoint Command Execution Vulnerabilities (MS08-051)
12.08.2008 : Microsoft Windows MSCMS Code Execution Vulnerability (MS08-046)
12.08.2008 : SOURCENEXT Virus Security Denial of Service Vulnerability
11.08.2008 : rPath Security Update Fixes CUPS Integer Overflow Vulnerability
11.08.2008 : PowerDNS Malformed Queries Dropping Security Weakness
04.08.2008 : Python Multiple Module Buffer and Integer Overflow Vulnerabilities
04.08.2008 : CA ARCserve Backup LGServer Service Code Execution Vulnerability
04.08.2008 : F-PROT Antivirus Archive Scanning Denial of Service Vulnerability
01.08.2008 : Apple Mac OS X Code Execution and Security Bypass Vulnerabilities
31.07.2008 : Unreal Tournament 3 Memory Corruption and DoS Vulnerabilities
31.07.2008 : Unreal Tournament 2004 Remote Denial of Service Vulnerability
29.07.2008 : AVG Anti-Virus UPX File Processing Denial of Service Vulnerability
29.07.2008 : Trend Micro Products ObjRemoveCtrl Buffer Overflow Vulnerabilities
25.07.2008 : RealNetworks RealPlayer Multiple Code Execution Vulnerabilities
22.07.2008 : EMC Retrospect Denial of Service and Information Disclosure Issues
17.07.2008 : Mozilla Firefox for Mac OS X GIF Rendering Code Execution Vulnerability
17.07.2008 : F-Prot Antivirus for Windows Multiple Denial of Service Vulnerabilities
16.07.2008 : WinRemotePC 2008 Packets Handling Denial of Service Vulnerability
14.07.2008 : Apple iPhone and iPod touch Multiple Code Execution Vulnerabilities
14.07.2008 : Apple Xcode Code Execution and Information Disclosure Vulnerabilities
11.07.2008 : Wireshark Packet Reassembly Denial of Service Vulnerability
09.07.2008 : Pidgin "msn_slplink_process_msg" Integer Overflow Vulnerabilities
09.07.2008 : FFmpeg STR Data Processing Remote Buffer Overflow Vulnerability
09.07.2008 : Microsoft Office Word Code Execution Vulnerability (MS08-042)
08.07.2008 : Microsoft SQL Server Privilege Escalation Vulnerabilities (MS08-040)
07.07.2008 : Panda ActiveScan Buffer Overflow and File Download Vulnerabilities
07.07.2008 : ServerView Web Interface Multiple Remote Buffer Overflow Vulnerabilities
02.07.2008 : Mozilla Products Remote Code Execution and Security Bypass Issues
01.07.2008 : Wireshark Denial of Service and Memory Disclosure Vulnerabilities
01.07.2008 : Apple Safari for Mac OS X Remote Code Execution Vulnerability
30.06.2008 : Sun Solaris "snmpXdmid" Packet Handling Denial of Service Vulnerability
30.06.2008 : Fedora Security Update Fixes Libetpan Denial of Service Vulnerability
27.06.2008 : NASM Listing Module Data Handling Buffer Overflow Vulnerability
26.06.2008 : Cisco UCM Denial of Service and Authentication Bypass Vulnerabilities
23.06.2008 : Call of Duty 4 Modern Warfare Remote Denial of Service Vulnerabilities
17.06.2008 : ClamAV Petite File Processing Remote Denial of Service Vulnerability
13.06.2008 : Citect Products ODBC Server Remote Buffer Overflow Vulnerability
11.06.2008 : Opera Browser Multiple Spoofing and Information Disclosure Issues
11.06.2008 : BitTorrent Web UI HTTP "Range" Header Denial of Service Issue
11.06.2008 : uTorrent Web UI HTTP "Range" Header Denial of Service Issue
11.06.2008 : Cisco Products SNMPv3 Authentication Packets Vulnerabilities
11.06.2008 : BackWeb Lite Install Runner ActiveX Buffer Overflow Vulnerabilities
10.06.2008 : Debian Security Update Fixes Kernel Code Execution Vulnerabilities
10.06.2008 : Microsoft Windows DirectX Remote Code Execution (MS08-033)
10.06.2008 : Apple QuickTime Multiple File Handling Code Execution Vulnerabilities
10.06.2008 : Icon Labs Iconfidant SSH Remote Denial of Service Vulnerabilities
10.06.2008 : OpenOffice "rtl_allocateMemory()" Integer Overflow Vulnerability
10.06.2008 : Linksys WRH54G HTTP Interface Denial of Service Vulnerability
09.06.2008 : GraphicsMagick Multiple Buffer Overflow and DoS Vulnerabilities
09.06.2008 : Novell GroupWise Messenger Code Execution and DoS Vulnerabilities
05.06.2008 : Cisco PIX and ASA Security Bypass and Denial of Service Vulnerabilities
04.06.2008 : HP Instant Support ActiveX Control Multiple Remote Vulnerabilities
04.06.2008 : Gentoo Security Update Fixes mtr "split_redraw()" Buffer Overflow
02.06.2008 : Ourgame GLWorld "GLIEDown2.dll" Code Execution Vulnerabilities
30.05.2008 : imlib2 PNM and XPM Image Handling Buffer Overflow Vulnerabilities
27.05.2008 : Motorola RAZR JPG Image Processing Stack Overflow Vulnerability
27.05.2008 : EMC AlphaStor Server Agent and Library Manager Vulnerabilities
27.05.2008 : NCTSoft ActiveX Controls Multiple Buffer Overflow Vulnerabilities
27.05.2008 : Creative Software AutoUpdate OCX Module Buffer Overflow Vulnerability
27.05.2008 : [Revoked] Adobe Flash Player Unspecified Remote Code Execution Vulnerability
26.05.2008 : Debian Security Update Fixes mtr "split_redraw()" Buffer Overflow
26.05.2008 : rPath Security Update Fixes mtr "split_redraw()" Buffer Overflow
22.05.2008 : Interchange Remote Denial of Service and 404 Page Vulnerabilities
21.05.2008 : Apple iCal Memory Corruption and Denial of Service Vulnerabilities
21.05.2008 : IBM Lotus Sametime Community Services Multiplexer Vulnerability
21.05.2008 : Borland Interbase 2007 Data Handling Integer overflow Vulnerability
21.05.2008 : Mandriva Security Update Fixes libid3tag Denial of Service Vulnerability
16.05.2008 : Fedora Security Update Fixes libid3tag Denial of Service Vulnerability
15.05.2008 : Gentoo Security Update Fixes libid3tag Denial of Service Vulnerability
15.05.2008 : Linux Kernel Denial of Service and Security Bypass Vulnerabilities
14.05.2008 : Cisco Unified Presence Remote Denial of Service Vulnerabilities
14.05.2008 : Cisco Unified Communications Manager Denial of Service Vulnerabilities
14.05.2008 : Libvorbis Audio Data Handling Buffer Overflow and DoS Vulnerabilities
13.05.2008 : Microsoft Office Multiple Code Execution Vulnerabilities (MS08-026)
13.05.2008 : Redhat Directory Server Regular Expression Buffer Overflow
13.05.2008 : Microsoft Windows CE Image Handling Code Execution Vulnerabilities
09.05.2008 : rdesktop Multiple Code Execution and Denial of Service Vulnerabilities
06.05.2008 : NASA Common Data Format "Read32s_64()" Buffer Overflow Vulnerability
02.05.2008 : Linux Kernel Local Privilege Escalation and Memory Corruption Issues
28.04.2008 : KDE KHTML PNG Image Loader Remote Buffer Overflow Vulnerability
25.04.2008 : HP Software Update HPeDiag ActiveX Control Multiple Vulnerabilities
24.04.2008 : Apple Safari URL Spoofing and Denial of Service Vulnerabilities
23.04.2008 : Foxit Reader Data Processing Two Memory Corruption Vulnerabilities
22.04.2008 : Adobe Photoshop Album Starter BMP File Code Execution Vulnerability
21.04.2008 : Blender "imb_loadhdr()" File Handling Buffer Overflow Vulnerability
18.04.2008 : Poppler Embedded Fonts Handling Code Execution Vulnerability
18.04.2008 : Xpdf Embedded Fonts Handling Code Execution Vulnerability
17.04.2008 : OpenOffice.org Data Processing Multiple Code Execution Vulnerabilities
17.04.2008 : Mozilla JavaScript Garbage Collector Code Execution Vulnerability
15.04.2008 : ClamAV PeSpin and Archives Processing Multiple Vulnerabilities
14.04.2008 : HP OpenView Network Node Manager Multiple Vulnerabilities
11.04.2008 : TIBCO Enterprise Inbound Data Handling Buffer Overflow Vulnerabilities
11.04.2008 : TIBCO Rendezvous Inbound Data Buffer Overflow Vulnerabilities
09.04.2008 : Adobe Flash Player Code Execution and Security Bypass Vulnerabilities
09.04.2008 : Autonomy Keyview Products Multiple Buffer Overflow Vulnerabilities
08.04.2008 : Microsoft Windows GDI Code Execution Vulnerabilities (MS08-021)
08.04.2008 : Interwoven WorkSite Web TransferCtrl ActiveX Remote Vulnerabilities
31.03.2008 : InspIRCd Data Processing Multiple Denial of Service Vulnerabilities
31.03.2008 : SLMail Pro Memory Corruption and Denial of Service Vulnerabilities
31.03.2008 : IBM solidDB Code Execution and Denial of Service Vulnerabilities
28.03.2008 : NetBSD libc "strfmon()" Multiple Integer Overflow Vulnerabilities
28.03.2008 : FreeBSD libc "strfmon()" Multiple Integer Overflow Vulnerabilities
28.03.2008 : Wireshark Data Processing Remote Denial of Service Vulnerabilities
28.03.2008 : Cisco IOS Denial of Service and Information Disclosure Vulnerabilities
28.03.2008 : Cisco IOS Packets Processing Remote Denial of Service Vulnerability
26.03.2008 : Mozilla Thunderbird Code Execution and Cross Site Scripting Issues
26.03.2008 : Mozilla Firefox and SeaMonkey Multiple Remote Code Execution Issues
25.03.2008 : VideoLAN VLC Data Processing Multiple Code Execution Vulnerabilities
25.03.2008 : xine-lib Media File Processing Multiple Integer Overflow Vulnerabilities
21.03.2008 : Apple Aperture and iPhoto DNG Image Buffer Overflow Vulnerability
20.03.2008 : Adobe Flash FLA File Processing Code Execution Vulnerabilities
19.03.2008 : Asterisk Products Buffer Overflow and Security Bypass Vulnerabilities
19.03.2008 : BusinessObjects RptViewerAX ActiveX Code Execution Vulnerability
18.03.2008 : Apple Safari Command Execution and Cross Site Scripting Vulnerabilities
18.03.2008 : Sun Solaris Code Execution and Denial of Service Vulnerabilities
18.03.2008 : WinRAR Archive Processing Code Execution and DoS Vulnerabilities
18.03.2008 : Bzip2 Archive Processing Client-Side Denial of Service Vulnerability
18.03.2008 : 7-ZIP Archive Processing Code Execution and DoS Vulnerabilities
17.03.2008 : VMware Security Update Fixes Multiple Security Bypass Vulnerabilities
17.03.2008 : F-Secure Products Archive Handling Code Execution Vulnerabilities
13.03.2008 : McAfee ePolicy Orchestrator "logDetail()" Format String Vulnerability
12.03.2008 : IBM AIX Multiple Privilege Escalation and Security Bypass Vulnerabilities
12.03.2008 : Adobe Form Designer and Client Multiple Code Execution Vulnerabilities
12.03.2008 : IBM Informix Dynamic Server Multiple Buffer Overflow Vulnerabilities
11.03.2008 : Microsoft Office Multiple Code Execution Vulnerabilities (MS08-016)
11.03.2008 : Microsoft Excel Multiple Code Execution Vulnerabilities (MS08-014)
11.03.2008 : Timbuktu Pro Arbitrary File Upload and Denial of Service Vulnerabilities
11.03.2008 : ASG-Sentry Remote Buffer Overflow and Security Bypass Vulnerabilities
10.03.2008 : RemotelyAnywhere "Accept-Charset" Denial of Service Vulnerability
10.03.2008 : Acronis Snap Deploy Remote Directory Traversal and DoS Vulnerabilities
10.03.2008 : Acronis True Image Echo Server Remote Denial of Service Vulnerability
10.03.2008 : Acronis True Image Packet Handling Denial of Service Vulnerability
10.03.2008 : PacketTrap pt360 Tool Suite PRO TFTP Denial of Service Vulnerability
10.03.2008 : MailEnable EXPN/VRFY Commands Denial of Service Vulnerabilities
06.03.2008 : Fujitsu Interstage Smart Repository Denial of Service Vulnerabilities
06.03.2008 : Linux Kiss Server "log_message()" Remote Format String Vulnerability
05.03.2008 : Sun Java Multiple Code Execution and Security Bypass Vulnerabilities
04.03.2008 : Borland StarTeam MPX Integer and Heap Overflow Vulnerabilities
04.03.2008 : Borland StarTeam 2008 Multiple Remote Integer Overflow Vulnerabilities
03.03.2008 : Crysis "name" Argument Processing Remote Format String Vulnerability
28.02.2008 : Wireshark Packets Processing Remote Denial of Service Vulnerabilities
28.02.2008 : Trend Micro OfficeScan Multiple Remote Buffer Overflow Vulnerabilities
28.02.2008 : Ghostscript "zseticcspace()" Function Buffer Overflow Vulnerability
27.02.2008 : VideoLAN VLC Media Player MP4 Demuxer Code Execution Vulnerability
27.02.2008 : Symantec Products Decomposer Buffer Overflow and DoS Issues
26.02.2008 : NetWin SurgeMail Format String and Buffer Overflow Vulnerabilities
25.02.2008 : Fujitsu Interstage Single Sign-on Remote Buffer Overflow Vulnerability
<