Edgeos - New VulnerabilitiesEdgeos - Private-Labeled Vulnerability Assessment ServicesFedora Core 7 2008-3460: kronolith- (Found June 29, 2008 ) Critical Risk -- The remote host is missing the patch for the advisory FEDORA-2008-3460 (kronolith).Kronolith is the Horde calendar application. It provides repeatingevents, all-day events, custom fields, keywords, and managing multipleusers through Horde Authentication. The calendar API that Kronolithuses is abstracted MCAL and SQL drivers are currently provided.The Horde Project writes web applications in PHP and releases them underOpen Source licenses. For more information (including help.http://www.edgeos.com/threats/33143 Cumulative Security Update of ActiveX Kill Bits (950760)- (Found June 29, 2008 ) Critical Risk -- The remote host contains the sapi.dll ActiveX control.The version of this control installed on the remote host reportedlycontains multiple memory corruption flaws. If an attacker can trick auser on the affected host into visiting a specially-crafted web page,he may be able to leverage this issue to execute arbitrary code on thehost subject to the user's privileges. http:www.microsoft.comtechnetsecuritybulletinms08-032.mspxhttp://www.edgeos.com/threats/33134 Vulnerabilities in DirectX Could Allow Remote Code Execution (951698)- (Found June 29, 2008 ) Critical Risk -- The remote host contains a version of DirectX which is vulnerableto a remote code execution flaw.To exploit this flaw, an attacker would need to send a speciallymalformed MPEG or SAMI file to a user on the remote host and have himopen it.http:www.microsoft.comtechnetsecuritybulletinms08-033.mspxhttp://www.edgeos.com/threats/33135 Vulnerability in WINS Could Allow Elevation of Privilege (948745)- (Found June 29, 2008 ) Critical Risk -- The remote Windows Internet Naming Service (WINS) is vulnerable to a memory overwrite vulnerability which could allow a local attacker to elevatehis privileges on the remote host.http:www.microsoft.comtechnetsecuritybulletinms08-034.mspxhttp://www.edgeos.com/threats/33136 Vulnerabilities in Pragmatic General Multicast (PGM) Could Allow Denial of Service (950762)- (Found June 29, 2008 ) Critical Risk -- The remote version of Windows is affected by a vulnerability in thePragmatic General Multicast protocol installed with the MSMQ service.An attacker may exploit this flaw to crash the remote host remotely.http:www.microsoft.comtechnetsecuritybulletinms08-036.mspxhttp://www.edgeos.com/threats/33137 WS-Management Server Detection- (Found June 29, 2008 ) Low Risk -- The remote web server supports the Web Services for Management(WS-Management) specification, a general web services protocol basedon SOAP for managing systems, applications, and other such entities.http://www.edgeos.com/threats/33139 CA Secure Content Manager HTTP Gateway Service Detection- (Found June 29, 2008 ) Low Risk -- The remote service is the HTTP Gateway Service component of ComputerAssociates' Secure Content Manager, which is used to filter webtraffic.http://www.edgeos.com/threats/33140 GroupWise Messenger Client < 2.0.3 HP1 Multiple Buffer Overflow Vulnerabilities- (Found June 29, 2008 ) Critical Risk -- The remote host is running GroupWise Messenger Client from Novell.The installed version is affected by multiple buffer overflow vulnerabilities. By sending specially crafted spoofed server responses to valid client requests, it may be possible to execute arbitrary code within the context of the application or cause a denial of service condition.http://www.edgeos.com/threats/33141 CentOS : RHSA-2008-0529- (Found June 29, 2008 ) Critical Risk -- The remote CentOS system is missing a security update which has been documented in Red Hat advisory RHSA-2008-0529. yum updatehttp://www.edgeos.com/threats/33142 Fedora Core 9 2008-4986: snort- (Found June 29, 2008 ) Critical Risk -- The remote host is missing the patch for the advisory FEDORA-2008-4986 (snort).Snort is a libpcap-based packet snifferlogger whichcan be used as a lightweight network intrusion detection system.It features rules based logging and can perform protocol analysis,content searchingmatching and can be used to detect a variety ofattacks and probes, such as buffer overflows, stealth port scans,CGI attacks, SMB probes, OS fingerprinting attempts, and much more.Snort has a real-time...http://www.edgeos.com/threats/33112 |