Les avis CERT-Renater


Année 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012


Voici la liste des derniers avis du CERT-Renater :
 
 
 
18 May 2012VULN218SPIP : SPIP 2.1.14, 2.0.19 et 1.9.2.p changent maintenant !Systems running SPIP versions prior to 2.1.14,
18 May 2012VULN217Google Chrome : Google Chrome 19 fixes multiple security vulnerabilitiesSystems running Google Chrome versions 19.
18 May 2012VULN216sudo : IP addresses in sudoers with netmask may match additional hostsSystems running sudo versions 1.6.9p3 up to and
18 May 2012VULN215OpenOffice.org : Apache OpenOffice 3.4 fixes integer overflow and memory overwrite vulnerabilitiesSystems running OpenOffice.org versions 3.3,
18 May 2012VULN214LibreOffice : CVE-2012-1149 Integer overflows in graphic object loadingSystems running LibreOffice versions prior
15 May 2012VULN212Sympa: Security breaches in archives managementSystems running Sympa
11 May 2012STAT19
04 May 2012VULN211Adobe : Security update available for Adobe Flash PlayerSystems running Adobe Flash Player versions prior
04 May 2012STAT18
04 May 2012VULN210PHP : PHP 5.3.12, PHP 5.4.2 fixes security vulnerabilitiesSystems running PHP versions prior to 5.3.12,
03 May 2012VULN209FreeBSD : OpenSSL multiple vulnerabilitiesFreeBSD running OpenSSL.
03 May 2012VULN208VMware : VMware Workstation, Player, ESXi and ESX patches address critical security issuesSystems running VMware Workstation versions prior to 8.0.2,
03 May 2012VULN207Drupal: Drupal core multiple vulnerabilitiesSystems running Drupal core versions 7.x
03 May 2012VULN206US-CERT : PHP-CGI query string parameter vulnerabilitySystems running PHP. .
02 May 2012VULN205Oracle: Oracle Security Alert for CVE-2012-1675Systems running Oracle database versions 11g, 10g. .
02 May 2012VULN204Google Chrome : Chrome Stable Channel update 18.0.1025.168 fixes security vulnerabilitiesSystems running Chrome Stable Channel versions
02 May 2012VULN203Samba : Incorrect permission checks when granting/removing privileges can compromise file server securitySystems running Samba versions 3.x prior to 3.6.5,
02 May 2012VULN202VMware : VMware ESX updates to ESX Service ConsoleSystems running VMware ESX versions 4.
02 May 2012VULN201Citrix : Vulnerability in Citrix Provisioning Services Could Result in Arbitrary Code ExecutionSystems running
27 Apr 2012STAT17
25 Apr 2012VULN200Mozilla : Security vulnerabilities fixed in Firefox, Thunderbird, SeaMonkeySystems running Firefox versions prior to 12.0,
25 Apr 2012VULN199WebCalendar : WebCalendar 1.2.5 fixes various security vulnerabilitiesSystems running WebCalendar versions prior to 1.2.5.
25 Apr 2012VULN198vBulletin : vBulletin Security Patch for vBulletin 4.1.12 for Suite & Forum - 04/23/2012Systems running vBulletin for Suite & Forum
24 Apr 2012VULN197Asterisk : Several vulnerabilities fixed in new versions of AsteriskSystems running Asterisk Open Source versions
23 Apr 2012VULN196Shibboleth : Shibboleth Service Provider Security Advisory [19 April 2012]Systems running Shibboleth Service Provider.
23 Apr 2012VULN195WordPress : WordPress 3.3.2 (and 3.4 Beta 3), security update for all previous versionsSystems running WordPress versions prior to 3.3.2,
23 Apr 2012VULN194SPIP : Mise =?UTF-8?B?w6Agam91ciBk?= =?UTF-8?B?ZSBwcmludGVtcHMgISBOb3V2ZWxsZXMgdmVyc2lvbnMgU1BJUCAxLjkuMm8sIDI=?=Systems running TYPO3 Core versions prior to 4.4.15,
23 Apr 2012VULN193TYPO3 : Cross-Site Scripting Vulnerability in TYPO3 CoreSystems running TYPO3 Core versions prior to 4.4.15,
20 Apr 2012STAT16
20 Apr 2012VULN192Bugzilla : 4.2, 4.0.5, and 3.6.8 Security AdvisorySystems running Bugzilla versions prior to 3.6.9, 4.0.6, 4.2.1.
20 Apr 2012VULN191 (OpenSSL : ASN1 BIO vulnerability (CVE-2012-2110))Systems running OpenSSL versions prior to 1.0.1a,
20 Apr 2012VULN190Ruby : Ruby 1.9.3-p194 contains security fixSystems running Ruby versions prior to 1.9.3-p194.
18 Apr 2012VULN189Oracle : April 2012 Critical Patch Update ReleasedSystems running Oracle Database Server,
18 Apr 2012VULN188Apache : Apache HTTP Server 2.4.2 fix insecure handling of LD_LIBRARY_PATHSystems running Apache HTTP Server version
18 Apr 2012VULN187IBM : Security Vulnerabilities included in IBM WebSphere Application Server 8.0.0.3Systems running IBM WebSphere Application Server
16 Apr 2012VULN186Debian : apache2 insecure default configurationDebian version Squeeze, Wheezy, Sid, experimental
16 Apr 2012VULN185Red Hat : Critical samba security updateRed Hat Enterprise Linux version 4 running samba.
16 Apr 2012VULN184nginx : new versions of nginx fixes buffer overflow vulnerabilitySystems running nginx versions prior to 1.0.15
16 Apr 2012VULN183MySQL : MySQL Community Server 5.5.23 fixes unspecified security bugSystems running MySQL versions 5.5 prior to
16 Apr 2012VULN182APPLE : Flashback malware removal toolMac OS X versions 10.7 or later without Java.
13 Apr 2012STAT15
13 Apr 2012VULN181APPLE : APPLE-SA-2012-04-12-1 Java for OS X 2012-003 and,Java for Mac OS X 10.6 Update 8Mac OS X versions 10.6.8, Server v10.6.8, 10.7.3,
13 Apr 2012VULN180VMware : VMware hosted products and ESXi/ESX patches address privilege escalationVMware ESXi versions 4.x, 3.5, 5.0,
12 Apr 2012VULN179VMware : VMware ESXi and ESX address several security issuesVMware ESXi versions 4.x, 3.5,
12 Apr 2012VULN178Cisco : Buffer Overflow Vulnerabilities in the Cisco WebEx PlayerSystems running Cisco WebEx Players.
11 Apr 2012VULN177Microsoft : Important Vulnerabilities in Forefront Unified Access Gateway (UAG) Could Allow Information DisclosureSystems running
11 Apr 2012VULN176Microsoft : Important Vulnerability in Microsoft Office Could Allow for Remote Code ExecutionSystems running Microsoft Office versions 2007,
11 Apr 2012VULN175Microsoft : Critical Vulnerability in Windows Common Controls Could Allow Remote Code ExecutionSystems running Microsoft Office versions 2003, 2007, 2010,
11 Apr 2012VULN174Microsoft : Critical Vulnerability in .NET Framework Could Allow Remote Code ExecutionSystems running Microsoft .NET Framework
11 Apr 2012VULN173Microsoft : Critical Vulnerability in Windows Could Allow Remote Code ExecutionMicrosoft Windows version XP, Server 2003, Vista,
11 Apr 2012VULN172Microsoft : Critical Cumulative Security Update for Internet ExplorerSystems running Internet Explorer versions 6, 7, 8, 9.
11 Apr 2012VULN171Samba : "root" credential remote code executionSystems running Samba versions 3 prior to 3.6.4,
11 Apr 2012VULN170Adobe : Security updates available for Adobe Reader and AcrobatSystems running Adobe Reader versions X prior
06 Apr 2012STAT14
30 Mar 2012STAT13
29 Mar 2012VULN169TYPO3 : Several Vulnerabilities in TYPO3 CoreSystems running TYPO3 Core versions 4.4.0 up to
29 Mar 2012VULN168Cisco : Cisco IOS Software Command Authorization BypassCisco IOS version after 12.2
29 Mar 2012VULN167DRUPAL : Organic Groups - Access BypassSystems running Contact Forms for DRUPAL
29 Mar 2012VULN166DRUPAL : Organic Groups - Access BypassSystems running Organic Groups for DRUPAL
29 Mar 2012VULN165HP : HP OV NNM Running Apache HTTP Server or Tomcat Remote VulnerabilitiesHP-UX, Linux, Solaris
29 Mar 2012VULN164Cisco : Cisco IOS Internet Key Exchange VulnerabilityCisco IOS running Internet Key Exchange feature.
29 Mar 2012VULN163Google Chrome : Multiple vulnerabilities fixed in Google Chrome Stable Channel 18.0.1025.142Systems running Google Chrome Stable Channel
29 Mar 2012VULN162phpMyAdmin : Path disclosure due to missing verification of file presenceSystems running phpMyAdmin Versions 3.4.x
29 Mar 2012VULN161Cisco : Cisco IOS Software Network Address Translation VulnerabilityCisco IOS running Network Address Translation feature.
29 Mar 2012VULN160Adobe : Security update available for Adobe Flash PlayerSystems running
29 Mar 2012VULN159Cisco : Multiple Vulnerabilities in Cisco IOS Software Traffic Optimization FeaturesCisco IOS running WAAS Express.
29 Mar 2012VULN158TYPO3 : Several vulnerabilities in third party extensionsSystems running TYPO3 third party extensions.
29 Mar 2012VULN157Wireshark : Denial Of Service vulnerabilities fixed in WiresharkSystems running Joomla! versions 1.5.x
28 Mar 2012VULN156Wireshark : Denial Of Service vulnerabilities fixed in Wireshark)]Systems running Wireshark versions 1.4.x, 1.6.x
26 Mar 2012VULN155US-CERT : Quagga contains multiple vulnerabilitiesSystems running Quagga versions prior to 0.99.20.1.
26 Mar 2012VULN154Google Chrome : Google Chrome 17.0.963.83 fixes security vulnerabilitiesSystems running Google Chrome versions
26 Mar 2012VULN153Apache : Apache Traffic Server releases for security incident CVE-2012-0256Systems running Apache Traffic Server
26 Mar 2012VULN152MySQL : MySQL 5.1.62 fixes security issuedSystems running MySQL Community Server
23 Mar 2012VULN151US-CERT : AtMail webmail interface contains multiple vulnerabilitiesSystems running AtMail webmail interface
23 Mar 2012VULN150Openoffice.org : OpenOffice.org data leakage vulnerabilitySystems running OpenOffice.org versions up to
23 Mar 2012VULN149Apache : Apache Wicket vulnerabilities fixedSystems running Apache Wicket versions 1.4.x, 1.5.x
23 Mar 2012VULN148ZDI : RealNetworks RealPlayer Remote Code Execution vulnerabilitiesSystems running RealNetworks RealPlayer.
23 Mar 2012STAT12
23 Mar 2012VULN147LibreOffice : XML Entity Expansion flaw by processing RDF fileSystems running LibreOffice versions
23 Mar 2012VULN146MediaWiki : Five security vulnerabilities fixed in MediaWikiSystems running MediaWiki versions
21 Mar 2012VULN145Moodle : Multiple vulnerabilities fixed in MoodleSystems running Moodle versions 2.x, 1.x.
21 Mar 2012VULN144Joomla! : Core - Password ChangeSystems running Joomla! versions 2.5.x prior
20 Mar 2012VULN143VMware : VMware vCenter Server, Orchestrator, Update Manager, vShield, vSphere Client, ESXi and ESX address several securitySystems running VMware vCenter Server,
20 Mar 2012VULN142VMware : VMware View privilege escalation and cross-site scriptingSystems running VMware View versions prior to 4.6.1.
20 Mar 2012VULN141IBM : Several vulnerabilities fixed in IBM DB2Systems running IBM DB2 versions 9.1, 9.5, 9.7, 9.8.
20 Mar 2012VULN140Red Hat : Important: JBoss Operations Network 2.4.2 security update)]Red Hat running
20 Mar 2012VULN139Novell : eDirectory 8.8 SP6 Patch 5 fixes several security vulnerabilitiesSystems running Novell eDirectory versions 8.8
20 Mar 2012VULN138EMC : RSA enVision Multiple VulnerabilitiesSystems running RSA enVision versions 4.x.
20 Mar 2012VULN137VideoLAN : Stack and Heap overflows fixed in VLCSystems running VLC media player versions
16 Mar 2012STAT11
16 Mar 2012VULN136Xerox FreeFlow Print Server : Oracle January 2012 OS and Security Patch Cluster (includes Java 6 Update 29 Software)rFreeFlow Print Server
16 Mar 2012VULN135_=28Xerox=3A?= =?windows-1252?Q?_Multiples_vuln=E9rabilit=E9s_dans_les_=E9qui?=NA
16 Mar 2012VULN134Redmine : Redmine 1.3.2 fixes several security vulnerabilitiesSystems running Redmine versions prior to 1.3.2.
16 Mar 2012VULN133Nginx : Information disclosure vulnerability fixed in NginxSystems running Nginx versions prior to 1.1.17,
16 Mar 2012VULN132Red Hat : Moderate glibc security and bug fix updateSystems running glibc.
16 Mar 2012VULN131Asterisk : Stack Buffer Overflow vulnerabilities fixed in AsteriskSystems running Asterisk Open Source versions
16 Mar 2012VULN130DRUPAL : CKEditor and FCKeditor - multiple XSS, arbitrary code executionSystems running FCKeditor for DRUPAL versions 6.x-2.x,
16 Mar 2012VULN129 (DRUPAL : Views Language Switcher Cross Site Scripting (XSS))
16 Mar 2012VULN128Cisco : Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances and Cisco Catalyst 6500Cisco ASA Software versions 7, 8,
16 Mar 2012VULN127Cisco : Cisco Firewall Services Module Crafted Protocol Independent Multicast Message Denial of Service VulnerabilityCisco FWSM software, CISCO ASA software.
16 Mar 2012VULN126Cisco : Cisco ASA 5500 Series Adaptive Security Appliance Clientless VPN ActiveX Control Remote Code Execution Vulnerability)]Systems running Cisco ASA 5500 Series Adaptive
14 Mar 2012VULN125Mozilla : Vulnerabilities fixed in Firefox, Thunderbird, SeaMonkeySystems running
14 Mar 2012VULN124EMC : EMC Documentum eRoom multiple vulnerabilitiesSystems running running EMC Documentum eRoom
14 Mar 2012VULN123Adobe : Hotfix available for ColdFusionSystems running running
14 Mar 2012VULN122Microsoft : Moderate Vulnerability in DirectWrite Could Allow Denial of ServiceWindows version 7, Vista, Server 2008,
14 Mar 2012VULN121Microsoft : Important Vulnerability in Expression Design Could Allow Remote Code ExecutionWindows running
14 Mar 2012VULN120Microsoft : Important Vulnerability in Visual Studio Could Allow Elevation of PrivilegeWindows running
14 Mar 2012VULN119Microsoft : Critical Vulnerabilities in Remote Desktop Could Allow Remote Code ExecutionWindows versions 7, XP, Server 2003, Vista,
14 Mar 2012VULN118Microsoft : Important Vulnerability in Windows Kernel-Mode Drivers Could Allow Elevation of PrivilegeWindows versions 7, XP, Server 2003, Vista,
14 Mar 2012VULN117Microsoft : Important Vulnerability in DNS Server Could Allow Denial of ServiceWindows versions Server 2003, Server 2008.
12 Mar 2012VULN115 (OpenSSL : CMS and S/MIME Bleichenbacher attack (CVE-2012-0884))
12 Mar 2012VULN114IP.Board : IP.Board 3.2.x patch fixes XSS vulnerabilitySystems running IP.Board versions 3.2.x.
12 Mar 2012VULN113Squirrelmail : Cross-site scripting vulnerability in the Autocomplete pluginSystems running squirrelmail versions prior to 3.0.
12 Mar 2012VULN112Google Chrome : Google Chrome 17.0.963.79 fixes Critical vulnerabilitySystems running Google Chrome versions prior
12 Mar 2012VULN111US-CERT : AjaXplorer contains multiple vulnerabilitiesSystems running AjaXplorer versions prior to 4.0.4.
09 Mar 2012STAT10
09 Mar 2012VULN110Dotnetnuke : Filemanager function fails to check for valid file extensionsSystems running Dotnetnuke versions 6.x.x
09 Mar 2012VULN109VMware : VMware VirtualCenter Update and ESX 3.5 patch update JRESystems running VMware VirtualCenter version 2.5,
09 Mar 2012VULN108VMware : VMware vCenter Chargeback Manager Information Leak and Denial of ServiceSystems running VMware vCenter Chargeback Manager
09 Mar 2012VULN107Google Chrome : Chrome Stable Channel update fixes Critical vulnerabilitySystems running Google Chrome version prior
09 Mar 2012VULN106APPLE : APPLE-SA-2012-03-07-1 iTunes 10.6Windows version 7, Vista, XP SP2 or later
09 Mar 2012VULN105APPLE : APPLE-SA-2012-03-07-2 iOS 5.1 Software UpdateAPPLE iOS.
08 Mar 2012VULN104DRUPAL : XSS vulnerabilities fixed in third parties modulesSystems running Webform for DRUPAL,
08 Mar 2012VULN103IBM : Security Vulnerabilities and HIPER APARs fixed in DB2 for Linux, UNIX, and Windows Version 9.5 Fix Pack 9AIX, HP-UX, Linux, Solaris, Windows running
08 Mar 2012VULN102Joomla! : Joomla! Core SQL Injection and XSS vulnerabilities fixedSystems running Joomla! version 2.5.1, 2.5.0, 1.7.x.
08 Mar 2012VULN101US-CERT : libpng chunk decompression integer overflow vulnerabilitySystems running libpng versions versions 1.0.57,
08 Mar 2012VULN100RIM : Vulnerability in WebKit browser engine impacts BlackBerry 6, 7, 7.1, and BlackBerry PlayBook tablet softwareBlackBerry OS versions 6, 7, 7.1,
08 Mar 2012VULN099Splunk : Splunk 4.3.1 addresses XSS vulnerability - March 5th, 2012Systems running Splunk version prior to 4.3.1.
08 Mar 2012VULN098EMC : RSA =?ISO-8859-1?Q?SecurID=AE?= =?ISO-8859-1?Q?_Software_Token_Converter_buffer_overflow_vul?=Systems running RSA SecurID Software Token Converter.
08 Mar 2012VULN097Adobe : Security update available for Adobe Flash PlayerSystems running
02 Mar 2012STAT09
02 Mar 2012VULN096Shibboleth : Identity Provider LDAPS Connections Do Not Perform Hostname VerificationSystems running Shibolet Identity Provider version
28 Feb 2012VULN095Bugzilla : 4.2rc2 and 4.0.4 Security AdvisorySystems running Bugzilla versions
28 Feb 2012VULN094PostgreSQL : Security Update 2012-02-27 releasedSystems running PostgreSQL.
28 Feb 2012VULN093KB Parallels : Critical Remote vulnerability in PleskLinux/Unix, Windows running Plesk versions
27 Feb 2012VULN092Cisco : Cisco Small Business SRP 500 Series Multiple VulnerabilitiesCisco SRP 520 Series firmware version prior to 1.1.26.
27 Feb 2012VULN091Samba : Remote code execution vulnerability in smbdSystems running Samba versions up to and
27 Feb 2012VULN090IBM : Vulnerability in ICMP packet handlingIBM AIX versions 5.3, 6.1, 7.1.
24 Feb 2012STAT08
21 Feb 2012VULN089Mozilla : libpng integer overflowSystems running
21 Feb 2012VULN088Ruby : Vulnerabilities fixed in RubySystems running Ruby versions 1.8.x, 1.9.x.
21 Feb 2012VULN087phpMyAdmin : PMASA-2012-1 XSS in replication setupSystems running phpmyadmin versions 3.4.x prior to
17 Feb 2012STAT07
16 Feb 2012VULN086Citrix : Multiple Vulnerabilities in Citrix XenServer Web Self ServiceSystems running Citrix XenServer Web Self Service
16 Feb 2012VULN085Google Chrome : Google Chrome 17.0.963.56 fixes multiple vulnerabilitiesSystems running Google Chrome versions prior
16 Feb 2012VULN084Oracle : Security Alert for CVE-2011-5035 ReleasedSystems running Oracle WebLogic Server,
16 Feb 2012VULN083Adobe : Security update available for RoboHelp for WordWindows running Adobe RoboHelp for Word version 9, =
16 Feb 2012VULN082Adobe : Security update available for Adobe Flash PlayerSystems running Adobe Flash Player versions prior t=
16 Feb 2012VULN081Oracle : February 2012 Critical Patch Update for Java SE ReleasedSystems running Java SE, JavaFX.
16 Feb 2012VULN080IBM : Upgradation of JRE packaged by IBM Rational License Key Server and IBMSystems running IBM Rational License Key Server,
16 Feb 2012VULN079Cisco : Cisco NX-OS Malformed IP Packet Denial of Service VulnerabilityCisco NX-OS Software.
15 Feb 2012VULN078Microsoft : Critical Vulnerabilities in .NET Framework and Microsoft Silverlight Could Allow Remote Code ExecutionSystems running .NET Framework versions 2, 3, 4,
15 Feb 2012VULN077Microsoft : Important Vulnerabilities in Microsoft Visio Viewer 2010 Could Allow Remote Code ExecutionSystems running Microsoft Visio Viewer version 2010=
15 Feb 2012VULN076Microsoft : Important Vulnerability in the Indeo Codec Could Allow Remote Code ExecutionWindows XP running Indeo Codec.
15 Feb 2012VULN075Microsoft : Critical Vulnerability in C Run-Time Library Could Allow Remote Code ExecutionWindows Vista, Windows Server 2008, Windows 7
15 Feb 2012VULN074Microsoft : Important Vulnerability in Color Control Panel Could Allow Remote Code ExecutionWindows Server 2008.
15 Feb 2012VULN073Microsoft : Important Vulnerabilities in Microsoft SharePoint Could Allow Elevation of PrivilegeSystems running
15 Feb 2012VULN072Microsoft : Critical Cumulative Security Update for Internet ExplorerSystems running Internet Explorer versions 6, 7, 8,=
15 Feb 2012VULN071Microsoft : Important Vulnerabilities in Ancillary Function Driver Could Allow Elevation of PrivilegeWindows XP, Windows Server 2003, Windows Vista,
15 Feb 2012VULN070Microsoft : Critical Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Remote Code ExecutionWindows XP, Windows Server 2003, Windows Vista,
15 Feb 2012VULN069Adobe : Security update available for Adobe Shockwave PlayerSystems running Adobe Shockwave Player versions
13 Feb 2012VULN068NetBSD : NetBSD 5.1.2 critical/security updateNetBSD versions 5 prior to 5.1.2.
13 Feb 2012VULN067ICS-CERT : Invensys Wonderware HMI Reports XSS and Write Access ViolationSystems running Invensys Wonderware HMI reports.
13 Feb 2012VULN066ISC : Ghost Domain Names: Revoked Yet Still ResolvableSystems running ISC BIND versions 9.
10 Feb 2012VULN065DRUPAL : Vulnerabilities fixed in Finder and Revisioning extensionsSystems running Finder for DRUPAL,
13 Feb 2012VULN064Mozilla : Use after free Vulnerability fixed in Firefox, Thunderbird, SeaMonkeySystems running Firefox versions prior to 10.0.1,
10 Feb 2012VULN063Horde : New versions of Horde products fix vulnerabilities)]Systems running
10 Feb 2012STAT06
03 Feb 2012STAT05.1
03 Feb 2012VULN062HP : HP Operations Manager, Operations Agent, Performance Agent, Service Health Reporter, Service Health Optimizer,Systems running HP Operations Manager,
03 Feb 2012VULN061TYPO3 : TYPO3-EXT-SA-2012-001 Several vulnerabilities in third party extensionsSystems running TYPO3 third party extensions.
03 Feb 2012VULN060Bugzilla : 4.2rc1, 4.0.3, 3.6.7, and 3.4.13 Security AdvisorySystems running Bugzilla versions 2, 3, 4.
03 Feb 2012VULN059PHP : PHP 5.3.10 fixes critical remote code execution vulnerabilitySystems running PHP versions prior to 5.3.10.
03 Feb 2012VULN058DRUPAL : SA-CORE-2012-001 - Drupal core multiple vulnerabilitiesSystems running Drupal versions 6, 7.
03 Feb 2012VULN057EMC : ESA-2012-007 Security fixes for RSA enVisionSystems running RSA enVision versions 4.x.
03 Feb 2012VULN056EMC : EMC Documentum Content Server privilege elevation vulnerabilitySystems running EMC Documentum Content Server=20
03 Feb 2012VULN055APPLE : APPLE-SA-2012-02-01-1 OS X Lion v10.7.3 and Security Update 2012-001Mac OS X, Mac OS X Server.
01 Feb 2012VULN054Mozilla : Vulnerabilities fixed in Firefox, Thunderbird, SeaMonkeySystems running Firefox, Thunderbird, SeaMonkey.
01 Feb 2012VULN053Apache : pache HTTP Server 2.2.22 security and bugfix releaseSystems running Apache versions 2 prior to 2.2.22.
27 Jan 2012STAT05
27 Jan 2012VULN052Joomla : Joomla! 1.7.4, 2.5.0 fix several vulnerabilitiesSystems running Joomla! versions prior to 1.7.4,
27 Jan 2012VULN051Symantec : Security Advisories Relating to Symantec Products - Symantec pcAnywhere Remote Code Execution, Local AccessSystems running Symantec pcAnywhere.
27 Jan 2012VULN050Cisco : Cisco IronPort Appliances Telnet Remote Code Execution VulnerabilityAsyncOS.
24 Jan 2012VULN049Opera : Opera version 11.61 fixes security vulnerabilitiesSystems running Opera version prior to 11.61.
24 Jan 2012VULN048Red Hat : Important kernel security and bug fix updateSystems running Red Hat Enterprise Linux version 6.
24 Jan 2012VULN047Google Chrome : Stable channel update 16.0.912.77 fixes several security vulnerabilitiesSystems running Google Chrome version prior to=20
24 Jan 2012VULN046IBM : Potential Oracle Outside In Technology Vulnerabilities Exposed in DB2 9.7.0.4 Accessories SuiteSystems running IBM DB2 Accessories Suite version 9.=
20 Jan 2012STAT03
19 Jan 2012VULN045Symantec : Symantec Endpoint Protection Manager Cross-Site Request Forgery and Cross-Site ScriptingSystems running Symantec Endpoint Protection=20
19 Jan 2012VULN044Cisco : Cisco IP Video Phone E20 Default Root AccountSystems running Cisco TelePresence Software version =
19 Jan 2012VULN043Cisco : Cisco Digital Media Manager Privilege Escalation VulnerabilitySystems running Cisco Digital Media Manager.
18 Jan 2012VULN042Oracle : January 2012 Critical Patch Update ReleasedSystems running Oracle Database,
18 Jan 2012VULN041Debian : linux-2.6 security updateDebian version squeeze running linux-2.6.
18 Jan 2012VULN040Apache Tomcat : CVE-2011-3375 Tomcat Information disclosure and Denial of Service vulnerabilities fixedSystems running Apache Tomcat.
18 Jan 2012VULN039Moodle : Multiple vulnerabilities fixed in MoodleSystems running Moodle versions 2.2, 2.1 to 2.1.3+=
17 Jan 2012VULN038IBM : Possible security exposure for WebSphere Application Server on IBM iIBM i running WebSphere Application Server=20
17 Jan 2012VULN037IBM : IBM SPSS Data Collection ActiveX Control vulnerabilitiesSystems running IBM SPSS Data Collection versions=20
17 Jan 2012VULN036IBM : IBM SPSS SamplePower vsview6 ActiveX Control vulnerabilitiesWindows running IBM SPSS SamplePower Version 3.
13 Jan 2012STAT02
13 Jan 2012VULN035ISC : An Error in DDNS Processing of DHCPv6 Leases Can Cause a Crash in ISC dhcpdSystems running ISC DHCP versions 4.2.2, 4.2.3,
13 Jan 2012VULN034MediaWiki : MediaWiki security releases 1.18.1, 1.17.2Systems running MediaWiki versions prior to
12 Jan 2012VULN033DRUPAL : Date, Password Policy and Video Filter modules vulnerabilities fixedSystems running Date for Drupal, Password Policy
12 Jan 2012VULN032vBulletin : vBulletin Security Patch for vBulletin 4 Suite OnlySystems running vBulletin Suite versions 4.
12 Jan 2012VULN031Blue Coat : Multiple PostgreSQL and Tomcat vulnerabilities in IntelligenceCenterSystems running Blue Coat IntelligenceCenter
12 Jan 2012VULN030PHP : PHP 5.3.9 fixes security vulnerabilitiesSystems running PHP versions prior to 5.3.9.
12 Jan 2012VULN029IBM : Denial of service vulnerability in the web container of WebSphere Application Server Community EditionSystems running WebSphere Application Server
12 Jan 2012VULN028simpleSAMLphp : simpleSAMLphp-1.8.2 security update is availableSystems running simpleSAMLphp versions prior to 1.8=
12 Jan 2012VULN027DRUPAL : Hash DOS attack prevention with Suhosin needs a .htaccess editSystems running Drupal core versions 6.x, 7.x.
12 Jan 2012VULN026HP : HP Easy Printer Care Software Running on Windows, Remote Execution of Arbitrary CodeWindows versions XP, Vista running HP Easy Printer =
11 Jan 2012VULN025Microsoft : Important Vulnerability in AntiXSS Library Could Allow Information DisclosureWindows running AntiXSS Library versions 3, 4.
11 Jan 2012VULN024Microsoft : Important Vulnerability in SSL/TLS Could Allow Information DisclosureWindows XP, Windows Server 2003, Windows Vista,
11 Jan 2012VULN023Microsoft : Critical Vulnerabilities in Windows Media Could Allow Remote Code ExecutionWindows XP, Windows Server 2003, Windows Vista,
11 Jan 2012VULN022Microsoft : Important Vulnerability in Microsoft Windows Could Allow Remote Code ExecutionWindows XP, Windows Server 2003, Windows Vista,
11 Jan 2012VULN021Microsoft : Important Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of PrivilegeWindows XP, Windows Server 2003, Windows Vista,
11 Jan 2012VULN020Microsoft : Important Vulnerability in Windows Object Packager Could Allow Remote Code ExecutionWindows XP, Windows Server 2003 running Windows
11 Jan 2012VULN019Microsoft : Vulnerability in Windows Kernel Could Allow Security Feature BypassWindows XP, Windows Server 2003, Windows Vista,
11 Jan 2012VULN018Adobe : Security updates available for Adobe Reader and AcrobatSystems running Adobe Reader, Adobe Acrobat.
10 Jan 2012VULN017Red Hat : Critical java-1.4.2-ibm security updateRed Hat Enterprise Linux version 4 Extras, 5=20
10 Jan 2012VULN016Debian : squid3 security updateDebian versions squeeze, wheezy, sid running squid3=
10 Jan 2012VULN015ICS-CERT : INVENSYS WONDERWARE INBATCH ACTIVEX VULNERABILITIESSystems running Invensys Wonderware InBatch=20
10 Jan 2012VULN014HP : Certain HP LaserJet Printers, Remote Unauthorized Access to FilesHP LaserJet P3015 firmware versions prior to 07.080=
09 Jan 2012VULN013FFmpeg : FFmpeg 0.9.1 fixes multiple security vulnerabilitiesSystems running FFmpeg versions prior to 0.9.1.
09 Jan 2012VULN012GNUTLS : DTLS timing attackSystems running GNUTLS versions prior to 3.0.11.
09 Jan 2012VULN011Debian : super security updateDebian versions lenny, squeeze, sid running Super.
09 Jan 2012VULN010ICS-CERT : SIEMENS FACTORYLINK MULTIPLE ACTIVEX VULNERABILITIESSystems running Siemens Tecnomatix FactoryLink=20
09 Jan 2012VULN009ICS-CERT : SIEMENS AUTOMATION LICENSE MANAGER MULTIPLE VULNERABILITIESSystems running Siemens Automation License Manager =
06 Jan 2012STAT01
06 Jan 2012VULN008DRUPAL : Registration Codes, Lingotek, Fill PDF vulnerabilitiesSystems running Registration Codes for DRUPAL=20
06 Jan 2012VULN007Google Chrome : Google Chrome Stable Channel 16.0.912.75 fixes 3 vulnerabilitiesSystems running Google Chrome Stable Channel=20
05 Jan 2012VULN006OpenSSL : Six security flaws fixed in OpenSSL 1.0.0f and 0.9.8sSystems running OpenSSL versions prior to 1.0.0f,=20
04 Jan 2012VULN005IBM : Multiple vulnerabilities in AIX BINDAIX versions 5.3, 6.1, 7.1 running BIND version 9.
04 Jan 2012VULN004IBM : Rational Rhapsody for Windows Blueberry FlashBack ActiveX Control vulnerabilitiesWindows running IBM Rational Rhapsody for Windows.
04 Jan 2012VULN003WordPress : WordPress 3.3.1 Security and Maintenance ReleaseSystems running WordPress versions 3.3.
04 Jan 2012VULN002Apache Geronimo : Geronimo 2.1.8 fixes several security vulnerabilitiesSystems running Apache Geronimo versions prior to=20
04 Jan 2012VULN001Apache Struts : Multiple critical vulnerabilities in Struts2Systems running Apache Struts2 versions prior to=20



Dernière mise à jour le 18/05/2012 - Pascal Mouret - Direction Opérationnelle du Système d'Informations de l'Université d'Aix-Marseille