ソフト名:Gentoo Linux
回避策:アップデート, GLSA 201012-01にて対応
脆弱性:DoS攻撃, 不正アクセス, ブラウザのクラッシュ, メモリ破壊, 区域外メモリの使用, 不特定のエラー
ソース:http://www.gentoo.org/
http://www.gentoo.org/security/en/glsa/glsa-201012-01.xml
http://secunia.com/advisories/42605/
http://secunia.com/advisories/42648/
http://dvw-j.blogspot.com/2010/12/google-chrome_15.html
危険性:High Risk
2010-12-22
2010-12-15
Google Chrome
ソフト名:Google Chrome 8.x
回避策:アップデートにて対応
脆弱性:DoS攻撃, 不正アクセス, ブラウザのクラッシュ, メモリ破壊, 区域外メモリの使用, 不特定のエラー
ソース:http://www.google.co.jp/chrome/intl/ja/landing_ff_yt.html?hl=ja
http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates_13.html
http://secunia.com/advisories/42605/
危険性:High Risk
回避策:アップデートにて対応
脆弱性:DoS攻撃, 不正アクセス, ブラウザのクラッシュ, メモリ破壊, 区域外メモリの使用, 不特定のエラー
ソース:http://www.google.co.jp/chrome/intl/ja/landing_ff_yt.html?hl=ja
http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates_13.html
http://secunia.com/advisories/42605/
危険性:High Risk
2010-12-08
Google Chrome
ソフト名:Google Chrome 7.x
回避策:アップデートにて対応
脆弱性:機密情報の奪取, DoS攻撃, 不正アクセス, 不特定のエラー, ブラウザのクラッシュ, メモリ破壊, 解放後使用エラー, 区域外メモリの使用, 二重解放エラー
ソース:http://www.google.co.jp/chrome/intl/ja/landing_ff_yt.html?hl=ja
http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates.html
http://secunia.com/advisories/42472/
危険性:High Risk
回避策:アップデートにて対応
脆弱性:機密情報の奪取, DoS攻撃, 不正アクセス, 不特定のエラー, ブラウザのクラッシュ, メモリ破壊, 解放後使用エラー, 区域外メモリの使用, 二重解放エラー
ソース:http://www.google.co.jp/chrome/intl/ja/landing_ff_yt.html?hl=ja
http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates.html
http://secunia.com/advisories/42472/
危険性:High Risk
2010-11-24
ImageShack ActiveX control
ソフト名:ImageShack ActiveX control 4.8.3.75
回避策:未対応
脆弱性:リモートコード実行, ブラウザのクラッシュ
ソース:http://toolbar.imageshack.us/ImageShackToolbar.exe
http://www.exploit-db.com/exploits/15601/
危険性:High Risk
回避策:未対応
脆弱性:リモートコード実行, ブラウザのクラッシュ
ソース:http://toolbar.imageshack.us/ImageShackToolbar.exe
http://www.exploit-db.com/exploits/15601/
危険性:High Risk
Netcraft Toolbar ActiveX control
ソフト名:Netcraft Toolbar ActiveX control 1.8.1
回避策:未対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://toolbar.netcraft.com/install/Netcraft%20Toolbar.msi
http://www.exploit-db.com/exploits/15600/
危険性:High Risk
回避策:未対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://toolbar.netcraft.com/install/Netcraft%20Toolbar.msi
http://www.exploit-db.com/exploits/15600/
危険性:High Risk
2010-11-23
Novell iPrint Client
ソフト名:Novell iPrint Client 5.52
回避策:Novell Document ID: 7007234にて対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.novell.com/support/viewContent.do?externalId=7007234
http://www.zerodayinitiative.com/advisories/ZDI-10-256/
http://www.securityfocus.com/bid/44966
http://secunia.com/advisories/42298
http://www.vupen.com/english/advisories/2010/3023
危険性:High Risk
回避策:Novell Document ID: 7007234にて対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.novell.com/support/viewContent.do?externalId=7007234
http://www.zerodayinitiative.com/advisories/ZDI-10-256/
http://www.securityfocus.com/bid/44966
http://secunia.com/advisories/42298
http://www.vupen.com/english/advisories/2010/3023
危険性:High Risk
2010-11-17
Camtron CMNC-200 IP Camera ActiveX control
ソフト名:Camtron CMNC-200 IP Camera ActiveX control
回避策:未対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.camtron.com/
http://www.exploit-db.com/exploits/15504/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4230
CVE:CVE-2010-4230
危険性:High Risk
回避策:未対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.camtron.com/
http://www.exploit-db.com/exploits/15504/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4230
CVE:CVE-2010-4230
危険性:High Risk
2010-11-10
LEAD Technologies LEAD Common Dialogs ActiveX control
ソフト名:LEAD Technologies LEAD Common Dialogs ActiveX control 11.5.0.9
回避策:未対応
脆弱性:DoS攻撃, ブラウザのクラッシュ, アクセスバイオレーションエラー
ソース:http://www.leadtools.com/Default.htm
http://www.exploit-db.com/exploits/15432/
http://www.exploit-db.com/exploits/15433/
http://www.exploit-db.com/exploits/15434/
http://www.exploit-db.com/exploits/15435/
http://www.exploit-db.com/exploits/15436/
危険性:Low Risk
回避策:未対応
脆弱性:DoS攻撃, ブラウザのクラッシュ, アクセスバイオレーションエラー
ソース:http://www.leadtools.com/Default.htm
http://www.exploit-db.com/exploits/15432/
http://www.exploit-db.com/exploits/15433/
http://www.exploit-db.com/exploits/15434/
http://www.exploit-db.com/exploits/15435/
http://www.exploit-db.com/exploits/15436/
危険性:Low Risk
2010-11-03
SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control
ソフト名:SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control 10.5.1.117
回避策:アップデートにて対応
脆弱性:バッファオーバーフロー, ブラウザのクラッシュ
ソース:http://secunia.com/secunia_research/2010-117/
http://www.sonicwall.com/
http://www.securityfocus.com/bid/44535
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2583
http://secunia.com/advisories/41644
CVE:CVE-2010-2583
危険性:High Risk
回避策:アップデートにて対応
脆弱性:バッファオーバーフロー, ブラウザのクラッシュ
ソース:http://secunia.com/secunia_research/2010-117/
http://www.sonicwall.com/
http://www.securityfocus.com/bid/44535
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2583
http://secunia.com/advisories/41644
CVE:CVE-2010-2583
危険性:High Risk
2010-11-02
Mozilla Firefox, Mozilla Thunderbird
ソフト名:Mozilla Firefox 3.5/3.6, Mozilla Thunderbird 3.0~3.1.4
回避策:アップデートにて対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://blog.mozilla.com/security/2010/10/26/critical-vulnerability-in-firefox-3-5-and-firefox-3-6/
http://www.mozillamessaging.com/en-US/
http://norman.com/about_norman/press_center/news_archive/2010/129223/en
http://www.exploit-db.com/exploits/15341/
http://www.exploit-db.com/exploits/15342/
http://www.exploit-db.com/exploits/15352/
http://www.securityfocus.com/bid/44425
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3765
http://www.mandriva.com/en/security/advisories?name=MDVSA-2010:213
https://rhn.redhat.com/errata/RHSA-2010-0808.html
https://rhn.redhat.com/errata/RHSA-2010-0809.html
https://rhn.redhat.com/errata/RHSA-2010-0810.html
https://rhn.redhat.com/errata/RHSA-2010-0812.html
http://secunia.com/advisories/41957
http://secunia.com/advisories/41975
http://www.vupen.com/english/advisories/2010/2782
CVE:CVE-2010-3765
危険性:High Risk
回避策:アップデートにて対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://blog.mozilla.com/security/2010/10/26/critical-vulnerability-in-firefox-3-5-and-firefox-3-6/
http://www.mozillamessaging.com/en-US/
http://norman.com/about_norman/press_center/news_archive/2010/129223/en
http://www.exploit-db.com/exploits/15341/
http://www.exploit-db.com/exploits/15342/
http://www.exploit-db.com/exploits/15352/
http://www.securityfocus.com/bid/44425
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3765
http://www.mandriva.com/en/security/advisories?name=MDVSA-2010:213
https://rhn.redhat.com/errata/RHSA-2010-0808.html
https://rhn.redhat.com/errata/RHSA-2010-0809.html
https://rhn.redhat.com/errata/RHSA-2010-0810.html
https://rhn.redhat.com/errata/RHSA-2010-0812.html
http://secunia.com/advisories/41957
http://secunia.com/advisories/41975
http://www.vupen.com/english/advisories/2010/2782
CVE:CVE-2010-3765
危険性:High Risk
2010-10-26
Opera Software Opera
ソフト名:Opera Software Opera 10.62
回避策:アップデートにて対応
脆弱性:DoS攻撃, ブラウザのクラッシュ
ソース:http://www.opera.com/docs/changelogs/mac/1063/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4048
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4049
CVE:CVE-2010-4048, CVE-2010-4049
危険性:Low Risk
回避策:アップデートにて対応
脆弱性:DoS攻撃, ブラウザのクラッシュ
ソース:http://www.opera.com/docs/changelogs/mac/1063/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4048
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4049
CVE:CVE-2010-4048, CVE-2010-4049
危険性:Low Risk
2010-10-22
Google Chrome
ソフト名:Google Chrome 6.0.472.53~6.0.472.62
回避策:アップデートにて対応
脆弱性:不特定のエラー, DoS攻撃, スプーフィング攻撃, リモートコード実行, ブラウザのクラッシュ, ページ違反エラー, ポップアップブロッカーの回避, メモリ破壊
ソース:http://googlechromereleases.blogspot.com/2010/10/stable-channel-update.html
http://www.securityfocus.com/bid/44241
http://secunia.com/advisories/41888
http://www.vupen.com/english/advisories/2010/2731
危険性:High Risk
回避策:アップデートにて対応
脆弱性:不特定のエラー, DoS攻撃, スプーフィング攻撃, リモートコード実行, ブラウザのクラッシュ, ページ違反エラー, ポップアップブロッカーの回避, メモリ破壊
ソース:http://googlechromereleases.blogspot.com/2010/10/stable-channel-update.html
http://www.securityfocus.com/bid/44241
http://secunia.com/advisories/41888
http://www.vupen.com/english/advisories/2010/2731
危険性:High Risk
Mozilla Firefox, Mozilla Seamonkey, Mozilla Thunderbird
ソフト名:Mozilla Firefox 3.5 Linux~3.6.9, Mozilla Seamonkey 2.0 Alpha 1~2.0.8, Mozilla Thunderbird 3.0~3.1.4
回避策:MFSA 2010-67にて対応
脆弱性:リモートコード実行, ブラウザのクラッシュ
ソース:http://www.mozilla.org/security/announce/2010/mfsa2010-67.html
http://www.zerodayinitiative.com/advisories/ZDI-10-219/
http://www.securityfocus.com/bid/44249
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3183
http://secunia.com/advisories/41244
http://secunia.com/advisories/41890
http://secunia.com/advisories/41923
http://www.vupen.com/english/advisories/2010/2726
CVE:CVE-2010-3183
危険性:High Risk
回避策:MFSA 2010-67にて対応
脆弱性:リモートコード実行, ブラウザのクラッシュ
ソース:http://www.mozilla.org/security/announce/2010/mfsa2010-67.html
http://www.zerodayinitiative.com/advisories/ZDI-10-219/
http://www.securityfocus.com/bid/44249
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3183
http://secunia.com/advisories/41244
http://secunia.com/advisories/41890
http://secunia.com/advisories/41923
http://www.vupen.com/english/advisories/2010/2726
CVE:CVE-2010-3183
危険性:High Risk
Mozilla Firefox, Mozilla Seamonkey, Mozilla Thunderbird
ソフト名:Mozilla Firefox 3.5 Linux~3.6.9, Mozilla Seamonkey 2.0 Alpha 1~2.0.8, Mozilla Thunderbird 3.0~3.1.4
回避策:MFSA 2010-65にて対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.mozilla.org/security/announce/2010/mfsa2010-65.html
http://www.securityfocus.com/bid/44247
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3179
http://secunia.com/advisories/41244
http://secunia.com/advisories/41890
http://secunia.com/advisories/41923
http://www.vupen.com/english/advisories/2010/2726
CVE:CVE-2010-3179
危険性:High Risk
回避策:MFSA 2010-65にて対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.mozilla.org/security/announce/2010/mfsa2010-65.html
http://www.securityfocus.com/bid/44247
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3179
http://secunia.com/advisories/41244
http://secunia.com/advisories/41890
http://secunia.com/advisories/41923
http://www.vupen.com/english/advisories/2010/2726
CVE:CVE-2010-3179
危険性:High Risk
2010-10-20
Opera Software Opera
ソフト名:Opera Software Opera 10.63
回避策:未対応
脆弱性:DoS攻撃, ブラウザのクラッシュ
ソース:http://www.exploit-db.com/exploits/15273/
http://www.opera.com/
危険性:Low Risk
回避策:未対応
脆弱性:DoS攻撃, ブラウザのクラッシュ
ソース:http://www.exploit-db.com/exploits/15273/
http://www.opera.com/
危険性:Low Risk
2010-10-06
SmartCode Solutions ServerX VNC Server ActiveX control
ソフト名:SmartCode Solutions ServerX VNC Server ActiveX control 1.1.5.0
回避策:未対応
脆弱性:DoS攻撃, ブラウザのクラッシュ
ソース:http://www.exploit-db.com/exploits/14634/
http://www.s-code.com/
危険性:Low Risk
回避策:未対応
脆弱性:DoS攻撃, ブラウザのクラッシュ
ソース:http://www.exploit-db.com/exploits/14634/
http://www.s-code.com/
危険性:Low Risk
2010-09-24
Softek Software Ltd Barcode Reader Toolkit ActiveX control
ソフト名:Softek Software Ltd Barcode Reader Toolkit ActiveX control 7.1.4.14
回避策:未対応
脆弱性:バッファオーバーフロー, ブラウザのクラッシュ
ソース:http://www.exploit-db.com/exploits/15071/
http://www.bardecode.com/
危険性:High Risk
回避策:未対応
脆弱性:バッファオーバーフロー, ブラウザのクラッシュ
ソース:http://www.exploit-db.com/exploits/15071/
http://www.bardecode.com/
危険性:High Risk
2010-09-22
Microsoft Digital Rights Management (DRM) ActiveX control
ソフト名:Microsoft Digital Rights Management (DRM) ActiveX control
回避策:未対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.microsoft.com/windows/windowsmedia/forpros/drm/default.mspx
http://www.exploit-db.com/exploits/15061/
http://www.securityfocus.com/bid/43345
危険性:High Risk
回避策:未対応
脆弱性:バッファオーバーフロー, リモートコード実行, ブラウザのクラッシュ
ソース:http://www.microsoft.com/windows/windowsmedia/forpros/drm/default.mspx
http://www.exploit-db.com/exploits/15061/
http://www.securityfocus.com/bid/43345
危険性:High Risk
2010-09-17
Google Chrome
ソフト名:Google Chrome 4.0.249.78~6.0.472.55
回避策:アップデートにて対応
脆弱性:リモートコード実行, DoS攻撃, 特定されていない脆弱性, 解放後使用エラー, メモリ破壊, ブラウザのクラッシュ, ポップアップブロックのエラー
ソース:http://googlechromereleases.blogspot.com/2010/09/stable-beta-channel-updates_14.html
http://www.securityfocus.com/bid/43228
http://secunia.com/advisories/41390
http://www.vupen.com/english/advisories/2010/2409
危険性:High Risk
回避策:アップデートにて対応
脆弱性:リモートコード実行, DoS攻撃, 特定されていない脆弱性, 解放後使用エラー, メモリ破壊, ブラウザのクラッシュ, ポップアップブロックのエラー
ソース:http://googlechromereleases.blogspot.com/2010/09/stable-beta-channel-updates_14.html
http://www.securityfocus.com/bid/43228
http://secunia.com/advisories/41390
http://www.vupen.com/english/advisories/2010/2409
危険性:High Risk
2010-09-10
WestByte Software Internet Download Accelerator
ソフト名:WestByte Software Internet Download Accelerator 5.8.3.1221/Download Accelerator ActiveX control 2.4.1.110
回避策:未対応
脆弱性:バッファオーバーフロー, ブラウザのクラッシュ
ソース:http://westbyte.com/ida/
http://www.exploit-db.com/exploits/14938/
危険性:High Risk
回避策:未対応
脆弱性:バッファオーバーフロー, ブラウザのクラッシュ
ソース:http://westbyte.com/ida/
http://www.exploit-db.com/exploits/14938/
危険性:High Risk
登録:
投稿 (Atom)