SecurityFocus Microsoft Newsletter #406
[email protected] 7 Aug 2008 00:45:23 -0000
| Newsgroups | gmane.comp.security.news.microsoft |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Microsoft Newsletter #406
----------------------------------------
This issue is sponsored by Sponsored by IBM=AE Rational=AE AppScan
Copy: Failure to properly secure Web applications significantly impacts y=
our ability to protect sensitive client and corporate data. IBM Rational =
AppScan is an automated scanner that monitors, identifies and helps remed=
iate vulnerabilities.=20
Download a free trial of AppScan and see how it can help prevent against =
the threat of attack.
https://www.watchfire.com/securearea/appscan.aspx?id=3D701700000009T0r
SECURITY BLOGS
SecurityFocus has selected a few syndicated sources that stand out as con=
veying topics of interest for our community. We are proud to offer conten=
t from Matasano at this time and will be adding more in the coming weeks.
http://www.securityfocus.com/blogs
------------------------------------------------------------------
I. FRONT AND CENTER
1.An Astonishing Collaboration
2.Bad-Code Blues
II. MICROSOFT VULNERABILITY SUMMARY
1. WebEx Meeting Manager 'atucfobj.dll' ActiveX Control Remote Buf=
fer Overflow Vulnerability
2. JBoss Enterprise Application Platform Information Disclosure Vu=
lnerability
3. Winamp 'NowPlaying' Unspecified Security Vulnerability
4. Ingres Database Multiple Local Vulnerabilities
5. MailEnable 3.52 IMAP Remote Denial of Service Vulnerability
6. Apple Mac OS X QuickLook Multiple Memory Corruption Vulnerabili=
ties
7. Sun xVM VirtualBox 'VBoxDrv.sys' Local Privilege Escalation Vul=
nerability
8. F-PROT Antivirus Archive Parsing Denial of Service Vulnerabilit=
y
9. Citrix Presentation Server 'icabar.exe' Local Privilege Escalat=
ion Vulnerability
10. BlazeVideo HDTV Player PLF File Stack Buffer Overflow Vulnerab=
ility
11. AVG Anti-Virus UPX File Parsing Denial of Service Vulnerabilit=
y
III. MICROSOFT FOCUS LIST SUMMARY
1. SecurityFocus Microsoft Newsletter #405
IV. UNSUBSCRIBE INSTRUCTIONS
V. SPONSOR INFORMATION
I. FRONT AND CENTER
---------------------
1.An Astonishing Collaboration
By Dan Kaminsky
Wow. It's out. It's finally, finally out. Sweet!
http://www.securityfocus.com/columnists/477
2.Bad-Code Blues
By Don Parker
The current state of secure software development by corporations both lar=
ge and small is a mess. We are still cursed with half-baked software, and=
as a result, a never ending stream of vulnerabilities. Secure coding pra=
ctices and active quality assurance (QA) efforts are now more mainstream,=
but that still hasn.t made much of a dent.
http://www.securityfocus.com/columnists/476
II. MICROSOFT VULNERABILITY SUMMARY
------------------------------------
1. WebEx Meeting Manager 'atucfobj.dll' ActiveX Control Remote Buffer Ove=
rflow Vulnerability
BugTraq ID: 30578
Remote: Yes
Date Published: 2008-08-06
Relevant URL: http://www.securityfocus.com/bid/30578
Summary:
WebEx Meeting Manager is prone to a stack-based buffer-overflow vulnerabi=
lity because it fails to perform adequate boundary checks on user-supplie=
d input. This issue affects the 'atucfobj.dll' ActiveX control library.
An attacker can exploit this issue to execute arbitrary code in the conte=
xt of an application using the affected ActiveX control (typically Intern=
et Explorer). Failed attacks will likely cause denial-of-service conditio=
ns.
'atucfobj.dll' 20.2008.2601.4928 is vulnerable; other versions may also b=
e affected.
2. JBoss Enterprise Application Platform Information Disclosure Vulnerabi=
lity
BugTraq ID: 30540
Remote: Yes
Date Published: 2008-08-05
Relevant URL: http://www.securityfocus.com/bid/30540
Summary:
JBoss Enterprise Application Platform is prone to a remote information-di=
sclosure vulnerability.
Remote attackers can exploit this issue to obtain potentially sensitive d=
etails about deployed web contexts. Information obtained may lead to furt=
her attacks.=20
The issue affects versions prior to JBoss Enterprise Application Platform=
4.3.0.CP01 and 4.2.0.CP03.
3. Winamp 'NowPlaying' Unspecified Security Vulnerability
BugTraq ID: 30539
Remote: Yes
Date Published: 2008-08-04
Relevant URL: http://www.securityfocus.com/bid/30539
Summary:
Winamp is prone an unspecified vulnerability.
Very few details are available regarding this issue. We will update this =
BID as more information emerges.
This issue affects versions prior to Winamp 5.541.
4. Ingres Database Multiple Local Vulnerabilities
BugTraq ID: 30512
Remote: No
Date Published: 2008-08-01
Relevant URL: http://www.securityfocus.com/bid/30512
Summary:
Ingres Database is prone to multiple local vulnerabilities:=20
- Multiple local privilege-escalation vulnerabilities
- A vulnerability that may allow attackers to overwrite arbitrary files.=20
Local attackers can exploit these issues to gain elevated privileges on t=
he affected computer, execute arbitrary code with superuser privileges, a=
nd overwrite arbitrary files owned by 'Ingres' user.
5. MailEnable 3.52 IMAP Remote Denial of Service Vulnerability
BugTraq ID: 30498
Remote: Yes
Date Published: 2008-08-01
Relevant URL: http://www.securityfocus.com/bid/30498
Summary:
MailEnable is prone to a remote denial-of-service vulnerability.=20
An attacker can exploit this issue to crash the affected application, den=
ying service to legitimate users.=20
MailEnable 3.62 Professional Edition and Enterprise Edition are vulnerabl=
e; other versions may also be affected.
6. Apple Mac OS X QuickLook Multiple Memory Corruption Vulnerabilities
BugTraq ID: 30493
Remote: Yes
Date Published: 2008-07-31
Relevant URL: http://www.securityfocus.com/bid/30493
Summary:
Apple Mac OS X is prone to multiple memory-corruption vulnerabilities tha=
t affect the QuickLook component.
Attackers can exploit these issues to execute arbitrary code in the conte=
xt of the affected application or cause denial-of-service conditions.
The following versions are affected:
Mac OS X v10.5.4 and prior
Mac OS X Server v10.5.4 and prior
This issue does not affect systems prior to Mac OS X v10.5.
NOTE: These issues were previously covered in BID 30483 (Apple Mac OS X 2=
008-005 Multiple Security Vulnerabilities) but have been given their own =
record to better document these vulnerabilities.
7. Sun xVM VirtualBox 'VBoxDrv.sys' Local Privilege Escalation Vulnerabil=
ity
BugTraq ID: 30481
Remote: No
Date Published: 2008-08-04
Relevant URL: http://www.securityfocus.com/bid/30481
Summary:
Sun xVM VirtualBox is prone to a local privilege-escalation vulnerability=
that occurs in the 'VBoxDrv.sys' driver.=20
An attacker can exploit this issue to execute arbitrary code with kernel-=
level privileges on a Microsoft Windows host operating system. Successful=
ly exploiting this issue will result in the complete compromise of affect=
ed computers. Failed exploit attempts will result in a denial-of-service =
condition.
Sun xVM VirtualBox 1.6.0 and 1.6.2 running on Windows are vulnerable; oth=
er versions may also be affected.
8. F-PROT Antivirus Archive Parsing Denial of Service Vulnerability
BugTraq ID: 30461
Remote: Yes
Date Published: 2008-07-31
Relevant URL: http://www.securityfocus.com/bid/30461
Summary:
F-PROT Antivirus is prone to a denial-of-service vulnerability.
F-PROT Antivirus 6.2.1.4252 is vulnerable; other versions may also be aff=
ected.
9. Citrix Presentation Server 'icabar.exe' Local Privilege Escalation Vul=
nerability
BugTraq ID: 30446
Remote: No
Date Published: 2008-07-30
Relevant URL: http://www.securityfocus.com/bid/30446
Summary:
Citrix Presentation Server (formerly Citrix MetaFrame Server) is prone to=
a privilege-escalation vulnerability caused by a flaw in how 'icabar.ex=
e' is invoked via a 'Run' registry key.
Attackers can leverage this issue to execute arbitrary code with administ=
rator privileges. Successful exploits will completely compromise affected=
computers.
The following products are vulnerable when running on Windows NT, Windows=
2000, and Windows 2003:
Citrix MetaFrame Presentation Server 3.0 and prior
Citrix MetaFrame XP 1.0 and prior
10. BlazeVideo HDTV Player PLF File Stack Buffer Overflow Vulnerability
BugTraq ID: 30442
Remote: Yes
Date Published: 2008-07-30
Relevant URL: http://www.securityfocus.com/bid/30442
Summary:
BlazeVideo HDTV Player is prone to a stack-based buffer-overflow vulnerab=
ility because the application fails to handle malformed playlist files.=20
An attacker can exploit this issue to execute arbitrary code within the c=
ontext of the application or to trigger a denial-of-service condition.=20
BlazeVideo HDTV Player 3.5 is vulnerable; other versions may also be affe=
cted.
11. AVG Anti-Virus UPX File Parsing Denial of Service Vulnerability
BugTraq ID: 30417
Remote: Yes
Date Published: 2008-07-28
Relevant URL: http://www.securityfocus.com/bid/30417
Summary:
AVG Anti-Virus is prone to a denial-of-service vulnerability.
Exploiting this issue may allow attackers to crash AVG Anti-Virus and den=
y service to legitimate users of the application.=20
Versions prior to AVG Anti-Virus 8.0.156 are vulnerable.
III. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. SecurityFocus Microsoft Newsletter #405
http://www.securityfocus.com/archive/88/495002
IV. UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to ms-secnews-unsubscribe@securityf=
ocus.com from the subscribed address. The contents of the subject or mess=
age body do not matter. You will receive a confirmation request message t=
o which you will have to answer. Alternatively you can also visit http://=
www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and a=
sk to be manually removed.
V. SPONSOR INFORMATION
------------------------
This issue is sponsored by Sponsored by IBM=AE Rational=AE AppScan
Copy: Failure to properly secure Web applications significantly impacts y=
our ability to protect sensitive client and corporate data. IBM Rational =
AppScan is an automated scanner that monitors, identifies and helps remed=
iate vulnerabilities.=20
Download a free trial of AppScan and see how it can help prevent against =
the threat of attack.
https://www.watchfire.com/securearea/appscan.aspx?id=3D701700000009T0r