You are here

JC3 Bulletin Archive

February 18, 2013
V-093: Symantec PGP Desktop Buffer Overflows Let Local Users Gain Elevated Privileges

Two vulnerabilities were reported in Symantec PGP Desktop.

February 15, 2013
V-092: Pidgin Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Pidgin, which can be exploited by malicious people to manipulate certain data, cause a DoS (Denial of Service), and compromise a user's system.

February 14, 2013
V-091: Adobe Acrobat/Reader Bug Lets Remote Users Execute Arbitrary Code

Adobe has identified critical vulnerabilities in Adobe Reader and Acrobat

February 13, 2013
V-090: Adobe Flash Player / AIR Multiple Vulnerabilities

Multiple vulnerabilities have been reported in Adobe Flash Player and AIR.

February 12, 2013
V-089: Apache CXF SOAP URIMappingInterceptor and Plaintext UsernameTokens Security Issues

Two security issues have been reported in Apache CXF

February 11, 2013
V-088: Microsoft Security Bulletin Advance Notification for February 2013

Microsoft Security Bulletin Advance Notification for February 2013. Microsoft has posted 5 Critical Bulletins and 7 Important Bulletins. Bulletins with the Maximum Severity Rating and Vulnerability Impact of "Critical" may allow remote execution of code. Microsoft will host a webcast to address customer questions on the security bulletins on February 13, 2013, at 11:00 AM Pacific Time (US & Canada).

February 8, 2013
V-087: Adobe Flash Player Two Vulnerabilities

Two vulnerabilities are reported as 0-day which can be exploited by malicious people to compromise a user's system.

February 7, 2013
V-086: IntegraXor ActiveX Control Buffer Overflow Vulnerability

The vulnerability is caused due to an error in the PE3DO32A.ocx ActiveX control and can be exploited to cause a buffer overflow.

February 6, 2013
V-085: Cisco Unity Express Input Validation Hole Permits Cross-Site Request Forgery Attacks

A vulnerability was reported in Cisco Unity Express.

February 5, 2013
V-084: RSA Archer eGRC Permits Cross-Site Scripting, Cross-Domain Access, Clickjacking, and File Upload Attacks

Several vulnerabilities were reported in RSA Archer eGRC.