Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2013 PS1, 2013 Cumulative Update 10, 2013 Cumulative Update 11, and 2016 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka “Exchange Spoofing Vulnerability.”
Monthly Archives: January 2016
CVE-2016-0034
Microsoft Silverlight 5 before 5.1.41212.0 mishandles negative offsets during decoding, which allows remote attackers to execute arbitrary code or cause a denial of service (object-header corruption) via a crafted web site, aka “Silverlight Runtime Remote Code Execution Vulnerability.”
CVE-2016-0035
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2011, Excel 2016 for Mac, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka “Microsoft Office Memory Corruption Vulnerability.”
Bugtraq: SEC Consult whitepaper: Bypassing McAfee Application Whitelisting for Critical Infrastructure Systems
SEC Consult whitepaper: Bypassing McAfee Application Whitelisting for Critical Infrastructure Systems
RHEA-2016:0030-1: rhev-guest-tools-iso 3.5.7 bug fix and enhancement update
Red Hat Enterprise Linux: Updated Windows Guest Tools packages that fix several bugs and add various
enhancements are now available.
RHEA-2016:0028-1: wget enhancement update
Red Hat Enterprise Linux: Updated wget packages that add one enhancement are now available for Red Hat
Enterprise Linux 6.
RHEA-2016:0027-1: new packages: kmod-igb
Red Hat Enterprise Linux: New kmod-igb packages are now available for Red Hat Enterprise Linux 7.
RHEA-2016:0026-1: new packages: kmod-ahci
Red Hat Enterprise Linux: New kmod-ahci packages are now available for Red Hat Enterprise Linux 7.
RHBA-2016:0034-1: vdsm 3.5.7 – bug fix and enhancement update
Red Hat Enterprise Linux: Updated vdsm packages that fix several bugs and add various enhancements are now
available.
RHBA-2016:0033-1: ovirt-optimizer bug fix update
Red Hat Enterprise Linux: Updated ovirt-optimizer packages that fix a bug are now available.