SecurityFocus Microsoft Newsletter #443
[email protected] Thu, 7 May 2009 17:01:56 -0600
| Newsgroups | gmane.comp.security.news.microsoft |
|---|---|
| Message-ID | <[email protected]> |
SecurityFocus Microsoft Newsletter #443
----------------------------------------
This issue is sponsored by Thawte
Extended Validation SSL Certificates: Inspire Trust, Improve Confidence a=
nd Increase Sales
Extended Validation SSL delivers the acknowledged industry standard for t=
he highest level of online identity assurance processes for SSL certifica=
te issuance. Find out how the EV standard increases the visibility of aut=
hentication status through the use of a green address bar in the latest h=
igh security web browsers.
http://www.dinclinx.com/Redirect.aspx?36;5004;25;1371;0;3;946;54442f0f214=
c470a
SECURITY BLOGS
SecurityFocus has selected a few syndicated sources that stand out as con=
veying topics of interest for our community. We are proud to offer conten=
t from Matasano at this time and will be adding more in the coming weeks.
http://www.securityfocus.com/blogs
------------------------------------------------------------------
I. FRONT AND CENTER
1. A Botnet by Any Other Name
2. Projecting Borders into Cyberspace
II. MICROSOFT VULNERABILITY SUMMARY
1. Sorinara Streaming Audio Player '.m3u' File Remote Stack Buffer=
Overflow Vulnerability
2. 32bit FTP 'CWD' Response Remote Buffer Overflow Vulnerability
3. 32bit FTP 'banner' Remote Buffer Overflow Vulnerability
4. Quick 'n Easy Mail Server SMTP Request Remote Denial Of Service=
Vulnerability
5. Bmxplay 'BMX' File Remote Buffer Overflow Vulnerability
6. Grabit 'NZB' File Remote Stack Buffer Overflow Vulnerability
7. EW-MusicPlayer '.m3u' File Remote Stack Buffer Overflow Vulnera=
bility
8. RM Downloader '.smi' File Buffer Overflow Vulnerability
9. Beatport Player '.m3u' File Remote Stack Buffer Overflow Vulner=
ability
10. Mercury Audio Player 'm3u/b4s/pls' File Multiple Remote Stack =
Buffer Overflow Vulnerabilities
11. McAfee Products RAR/ZIP Files Scan Evasion Vulnerability
12. Baby Web Server URL File Disclosure Vulnerability
13. Symantec WinFax Pro 'DCCFAXVW.DLL' Heap Buffer Overflow Vulner=
ability
14. Multiple Trend Micro Products RAR/ZIP/CAB Files Scan Evasion V=
ulnerability
15. Pablo Software Solutions Quick 'n Easy Web Server Directory Tr=
aversal Vulnerability
16. DWebPro Directory Traversal Vulnerability and Arbitrary File D=
isclosure Vulnerability
III. MICROSOFT FOCUS LIST SUMMARY
1. SecurityFocus Microsoft Newsletter #442
IV. UNSUBSCRIBE INSTRUCTIONS
V. SPONSOR INFORMATION
I. FRONT AND CENTER
---------------------
1. A Botnet by Any Other Name
By Gubter Ollmann
The news has been awash the last few weeks with fears over globe-spanning=
botnets and their criminal intent: Conficker managed to hog the limeligh=
t for well over a month, and then came Finjan's disclosure of a previousl=
y unknown - and currently unnamed - botnet consisting of some 1.9 million=
malicious agents.=20
http://www.securityfocus.com/columnists/501
2. Projecting Borders into Cyberspace
By Jeffrey Carr
Two recent stories of significant cyber attacks come close to blaming the=
Chinese for the intrusions but stop short.=20
http://www.securityfocus.com/columnists/500
II. MICROSOFT VULNERABILITY SUMMARY
------------------------------------
1. Sorinara Streaming Audio Player '.m3u' File Remote Stack Buffer Overfl=
ow Vulnerability
BugTraq ID: 34842
Remote: Yes
Date Published: 2009-05-05
Relevant URL: http://www.securityfocus.com/bid/34842
Summary:
Sorinara Streaming Audio Player is prone to a remote stack-based buffer-o=
verflow vulnerability because the application fails to perform adequate b=
oundary checks on user-supplied input.
Attackers may leverage this issue to execute arbitrary code in the contex=
t of the application. Failed attacks will cause denial-of-service conditi=
ons.
Sorinara Streaming Audio Player 0.9 is vulnerable; other version may also=
be affected.
2. 32bit FTP 'CWD' Response Remote Buffer Overflow Vulnerability
BugTraq ID: 34838
Remote: Yes
Date Published: 2009-05-05
Relevant URL: http://www.securityfocus.com/bid/34838
Summary:
32bit FTP is prone to a buffer-overflow vulnerability because it fails to=
properly perform adequate boundary checks on user-supplied data.=20
An attacker may exploit this issue to execute arbitrary code in the conte=
xt of the vulnerable application. Failed exploit attempts will likely res=
ult in a denial-of-service condition.
32bit FTP 09.04.24 is vulnerable; other versions may also be affected.
3. 32bit FTP 'banner' Remote Buffer Overflow Vulnerability
BugTraq ID: 34822
Remote: Yes
Date Published: 2009-05-05
Relevant URL: http://www.securityfocus.com/bid/34822
Summary:
32bit FTP is prone to a buffer-overflow vulnerability because it fails to=
properly perform adequate boundary checks on user-supplied data.=20
An attacker may exploit this issue to execute arbitrary code in the conte=
xt of the vulnerable application. Failed exploit attempts will likely res=
ult in a denial-of-service condition.
32bit FTP 09.04.24 is vulnerable; other versions may also be affected.
4. Quick 'n Easy Mail Server SMTP Request Remote Denial Of Service Vulner=
ability
BugTraq ID: 34814
Remote: Yes
Date Published: 2009-05-04
Relevant URL: http://www.securityfocus.com/bid/34814
Summary:
Quick 'n Easy Mail Server is prone to a denial-of-service vulnerability b=
ecause it fails to adequately handle multiple socket requests.
Attackers can exploit this issue to cause the affected application to rej=
ect SMTP requests, denying service to legitimate users.=20
The demonstration release of Quick 'n Easy Mail Server 3.3 is vulnerable;=
other versions may also be affected.
5. Bmxplay 'BMX' File Remote Buffer Overflow Vulnerability
BugTraq ID: 34810
Remote: Yes
Date Published: 2009-05-04
Relevant URL: http://www.securityfocus.com/bid/34810
Summary:
Bmxplay is prone to a remote buffer-overflow vulnerability because the ap=
plication fails to perform adequate boundary checks on user-supplied inpu=
t.
Attackers may leverage this issue to execute arbitrary code in the contex=
t of the application. Failed attacks will cause denial-of-service conditi=
ons.
Bmxplay 0.4 is vulnerable; other versions may also be affected.
6. Grabit 'NZB' File Remote Stack Buffer Overflow Vulnerability
BugTraq ID: 34807
Remote: Yes
Date Published: 2009-05-04
Relevant URL: http://www.securityfocus.com/bid/34807
Summary:
Grabit is prone to a remote stack-based buffer-overflow vulnerability bec=
ause the application fails to perform adequate boundary checks on user-su=
pplied input.
Attackers may leverage this issue to execute arbitrary code in the contex=
t of the application. Failed attacks will cause denial-of-service conditi=
ons.
Grabit 1.7.2 beta 3 is vulnerable; other versions may also be affected.
7. EW-MusicPlayer '.m3u' File Remote Stack Buffer Overflow Vulnerability
BugTraq ID: 34806
Remote: Yes
Date Published: 2009-05-04
Relevant URL: http://www.securityfocus.com/bid/34806
Summary:
EW-MusicPlayer is prone to a remote stack-based buffer-overflow vulnerabi=
lity because the application fails to perform adequate boundary checks on=
user-supplied input.
Attackers may leverage this issue to execute arbitrary code in the contex=
t of the application. Failed attacks will cause denial-of-service conditi=
ons.
EW-MusicPlayer 0.8 is vulnerable; other versions may also be affected.
8. RM Downloader '.smi' File Buffer Overflow Vulnerability
BugTraq ID: 34794
Remote: Yes
Date Published: 2009-05-01
Relevant URL: http://www.securityfocus.com/bid/34794
Summary:
RM Downloader is prone a buffer-overflow vulnerability because the applic=
ation fails to perform adequate boundary checks on user-supplied data.=20
Successfully exploiting this issue allows remote attackers to execute arb=
itrary code in the context of the application. Failed exploit attempts li=
kely result in denial-of-service conditions.
9. Beatport Player '.m3u' File Remote Stack Buffer Overflow Vulnerability
BugTraq ID: 34793
Remote: Yes
Date Published: 2009-05-01
Relevant URL: http://www.securityfocus.com/bid/34793
Summary:
Beatport Player is prone to a remote stack-based buffer-overflow vulnerab=
ility because the application fails to perform adequate boundary checks o=
n user-supplied input.
Attackers may leverage this issue to execute arbitrary code in the contex=
t of the application. Failed attacks will cause denial-of-service conditi=
ons.
Beatport Player 1.0.0.283 is vulnerable; other versions may also be affe=
cted.
10. Mercury Audio Player 'm3u/b4s/pls' File Multiple Remote Stack Buffer =
Overflow Vulnerabilities
BugTraq ID: 34788
Remote: Yes
Date Published: 2009-04-30
Relevant URL: http://www.securityfocus.com/bid/34788
Summary:
Mercury Audio Player is prone to multiple remote stack-based buffer-overf=
low vulnerabilities because the application fails to perform adequate bou=
ndary checks on user-supplied input.
Attackers may leverage these issues to execute arbitrary code in the cont=
ext of the application. Failed attacks will cause denial-of-service condi=
tions.
Mercury Audio Player 1.21 is vulnerable; other versions may also be affec=
ted.
11. McAfee Products RAR/ZIP Files Scan Evasion Vulnerability
BugTraq ID: 34780
Remote: Yes
Date Published: 2009-04-30
Relevant URL: http://www.securityfocus.com/bid/34780
Summary:
Multiple McAfee products are prone to a vulnerability that may allow cert=
ain compressed archives to bypass the scan engine.
Successful exploits will allow attackers to distribute files containing m=
alicious code that the antivirus application will fail to detect.
The issue affects all McAfee software that uses DAT files.
12. Baby Web Server URL File Disclosure Vulnerability
BugTraq ID: 34772
Remote: Yes
Date Published: 2009-04-29
Relevant URL: http://www.securityfocus.com/bid/34772
Summary:
Baby Web Server is prone to a vulnerability that lets attackers obtain p=
otentially sensitive information because it fails to properly sanitize us=
er-supplied input.
An attacker can exploit this issue to download arbitrary files with the p=
rivileges of the webserver process. Information obtained may aid in furth=
er attacks.
Baby Web Server 2.7.2 is vulnerable; other versions may also be affected.
13. Symantec WinFax Pro 'DCCFAXVW.DLL' Heap Buffer Overflow Vulnerability
BugTraq ID: 34766
Remote: Yes
Date Published: 2009-04-29
Relevant URL: http://www.securityfocus.com/bid/34766
Summary:
Symantec WinFax Pro ActiveX control is prone to a heap-based buffer-overf=
low vulnerability because the application fails to perform adequate bound=
ary checks on user-supplied input.
An attacker can exploit this issue to execute arbitrary code in the conte=
xt of the application using the ActiveX control (typically Internet Explo=
rer). Failed attacks will likely cause denial-of-service conditions.
Symantec WinFax Pro 10.03 is vulnerable; other versions may also be affe=
cted.
14. Multiple Trend Micro Products RAR/ZIP/CAB Files Scan Evasion Vulnerab=
ility
BugTraq ID: 34763
Remote: Yes
Date Published: 2009-04-29
Relevant URL: http://www.securityfocus.com/bid/34763
Summary:
Multiple Trend Micro products are prone to a vulnerability that may allow=
certain compressed archives to bypass the scan engine.
Successful exploits will allow attackers to distribute files containing m=
alicious code that the antivirus application will fail to detect.
ServerProtect for Microsoft Windows/Novell NetWare
ServerProtect for EMC Celerra
ServerProtect for NetApp
ServerProtect for Linux
ServerProtect for Network Appliance Filers
Internet Security Pro Internet Security
OfficeScan Component
Worry Free Business Security - Standard
Worry Free Business Security - Advanced=20
Worry Free Business Security Hosted
Housecall
InterScan Web Security Suite=20
InterScan Web Protect for ISA
InterScan Messaging Security Appliance
Neatsuite Advanced
ScanMail for Exchange
ScanMail for Domino Suites
15. Pablo Software Solutions Quick 'n Easy Web Server Directory Traversal=
Vulnerability
BugTraq ID: 34758
Remote: Yes
Date Published: 2009-04-28
Relevant URL: http://www.securityfocus.com/bid/34758
Summary:
Quick 'n Easy Web Server is prone to a directory-traversal vulnerability.
An attacker can exploit this issue to obtain sensitive information that m=
ay lead to other attacks.
Quick 'n Easy Web Server 3.3.5 is vulnerable; other versions may also be =
affected.
16. DWebPro Directory Traversal Vulnerability and Arbitrary File Disclosu=
re Vulnerability
BugTraq ID: 34721
Remote: Yes
Date Published: 2009-04-27
Relevant URL: http://www.securityfocus.com/bid/34721
Summary:
DWebPro is prone to a directory-traversal vulnerability and a vulnerabili=
ty that allows attackers to view arbitrary files.
An attacker can exploit these issues to obtain sensitive information that=
may lead to other attacks.
DWebPro 6.8.26 is vulnerable; other versions may also be affected.
III. MICROSOFT FOCUS LIST SUMMARY
---------------------------------
1. SecurityFocus Microsoft Newsletter #442
http://www.securityfocus.com/archive/88/503195
IV. UNSUBSCRIBE INSTRUCTIONS
-----------------------------
To unsubscribe send an e-mail message to ms-secnews-unsubscribe@securityf=
ocus.com from the subscribed address. The contents of the subject or mess=
age body do not matter. You will receive a confirmation request message t=
o which you will have to answer. Alternatively you can also visit http://=
www.securityfocus.com/newsletters and unsubscribe via the website.
If your email address has changed email [email protected] and a=
sk to be manually removed.
V. SPONSOR INFORMATION
------------------------
This issue is sponsored by Thawte
Extended Validation SSL Certificates: Inspire Trust, Improve Confidence a=
nd Increase Sales
Extended Validation SSL delivers the acknowledged industry standard for t=
he highest level of online identity assurance processes for SSL certifica=
te issuance. Find out how the EV standard increases the visibility of aut=
hentication status through the use of a green address bar in the latest h=
igh security web browsers.
http://www.dinclinx.com/Redirect.aspx?36;5004;25;1371;0;3;946;54442f0f214=
c470a