Monthly Archives: March 2016
10 tips to keep teens' Facebook profiles safe

“Connect with friends and the world around you on Facebook”
says the slogan of the social giant. Millions of Facebook users of different ages, nationalities, and genders share their daily life with family members and friends, and interact with brands. Among them there is a large group of teenagers who can be especially vulnerable target for cyber criminals. In this article I will help you make sure that Facebook is a safe place.
![]()
Smarter app management for phones at school
The colliding worlds of smartphones and education often seem unmanageable — at least from an app perspective. Smartphones open up a wide world of online interaction and games. Apps also give children an incredible opportunity to do other activities than listen to teachers or focus on homework.
The post Smarter app management for phones at school appeared first on Avira Blog.
They’ll hack your Android in T Minus 10 seconds

The word that scared all Google users last summer is back and worse than ever. Stagefright, nicknamed by its founder Metaphor, is even more dangerous in its new version.
Much like its name’s meaning, Stagefright, hides deep in the Android library, unnoticeable to Android users as they watch videos of cute puppies and crafty DIY hacks, all the while exposing themselves to its vulnerabilities.
How many devices are affected?
Now in its second swing, these Stagefright vulnerabilities have already affected hundreds of thousands of Android devices through holes in the multimedia library. More specifically, they have even affected those who use versions 5.0-5.1 (23.5% of affected Androids) and some using versions 2.2 and 4.0 (unsafe due to old terminals that had been exposed to previous viruses).
Google fights back
After the bugs’ discovery, Google implemented a series of bug-fixes and other security measures, even creating its own group of vulnerabilities to counter the attacks. Upgrades and patches were set up to make it more difficult for Stagefright to infiltrate an Android in a real attack.
Unfortunately, Metaphor has been able to dodge these protection mechanisms that were added to the more modern versions of the Android. With this new exploit, as their own creators have shown, Stagefright can easily control devices as diverse and modern as the Nexus 5, Samsung Galaxy S5 UN, UN LG G3 or HTC One UN.
So, how exactly does Stagefright break in?
Sneakily. The user does not need to be using their smartphone during an attack, really. In the case of Stagefright, the attacker can gain access through a particular website (e.g. through a malicious video link received by email or MMS). In a proof of concept, an email with a corrupted video link promoting videos of kittens leads to a page actually containing this material. The recipient has no way of knowing, that while the video is rendering, their Android is also being attacked. It can take as little as 10 to 15 seconds for the cyber-criminal to have control of their victim’s terminal.

Metaphor’s strategy is not exactly new. It largely relies on the attacks that were released last summer, when the holes were first discovered. However, today’s danger lies in Stagefright’s ability to bypass ASLR, which is the barrier Google raised in all versions of Android after 4.1. The problem is that this new threat binds itself not only to older devices but also to more modern ones. Those who have Android´s Lollipop 5.1 are not even safe, representing about 19% of all of Android smartphones.
No matter what, the best way to protect your Android and all other risks associated with Stagefright is to keep your operating system as up-to-date as possible and install a good antivirus. If your phone has been left out of the recent updates, take caution: you should not browse pages unless they are fully trusted. Even those who promise photos of adorable and fluffy kittens.
Facebook fights back against creepy impersonating profiles
It’s one of the creepiest things you can experience on Facebook. You stumble across the profile of “another” user who appears to have stolen the details of your life – lock, stock and barrel. And they are spreading slurs about your character, and befriending your contacts…
The post Facebook fights back against creepy impersonating profiles appeared first on We Live Security.
![]()
SB16-088: Vulnerability Summary for the Week of March 21, 2016
Original release date: March 28, 2016
The US-CERT Cyber Security Bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) in the past week. The NVD is sponsored by the Department of Homeland Security (DHS) National Cybersecurity and Communications Integration Center (NCCIC) / United States Computer Emergency Readiness Team (US-CERT). For modified or updated entries, please visit the NVD, which contains historical vulnerability information.
The vulnerabilities are based on the CVE vulnerability naming standard and are organized according to severity, determined by the Common Vulnerability Scoring System (CVSS) standard. The division of high, medium, and low severities correspond to the following scores:
-
High – Vulnerabilities will be labeled High severity if they have a CVSS base score of 7.0 – 10.0
-
Medium – Vulnerabilities will be labeled Medium severity if they have a CVSS base score of 4.0 – 6.9
-
Low – Vulnerabilities will be labeled Low severity if they have a CVSS base score of 0.0 – 3.9
Entries may include additional information provided by organizations and efforts sponsored by US-CERT. This information may include identifying information, values, definitions, and related links. Patch information is provided when available. Please note that some of the information in the bulletins is compiled from external, open source reports and is not a direct result of US-CERT analysis.
High Vulnerabilities
| Primary Vendor — Product |
Description | Published | CVSS Score | Source & Patch Info |
|---|---|---|---|---|
| apple — mac_os_x | AppleRAID in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1733 CONFIRM APPLE |
| apple — iphone_os | AppleUSBNetworking in Apple iOS before 9.3 and OS X before 10.11.4 allows physically proximate attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted USB device. | 2016-03-23 | 7.2 | CVE-2016-1734 CONFIRM CONFIRM APPLE APPLE |
| apple — mac_os_x | Bluetooth in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1736. | 2016-03-23 | 9.3 | CVE-2016-1735 CONFIRM APPLE |
| apple — mac_os_x | Bluetooth in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1735. | 2016-03-23 | 9.3 | CVE-2016-1736 CONFIRM APPLE |
| apple — mac_os_x | dyld in Apple OS X before 10.11.4 allows attackers to bypass a code-signing protection mechanism via a modified app. | 2016-03-23 | 7.2 | CVE-2016-1738 CONFIRM APPLE |
| apple — apple_tv | FontParser in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted PDF document. | 2016-03-23 | 9.3 | CVE-2016-1740 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — mac_os_x | The NVIDIA driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. | 2016-03-23 | 10.0 | CVE-2016-1741 CONFIRM APPLE |
| apple — mac_os_x | The Intel driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1744. | 2016-03-23 | 9.3 | CVE-2016-1743 CONFIRM APPLE |
| apple — mac_os_x | The Intel driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1743. | 2016-03-23 | 9.3 | CVE-2016-1744 CONFIRM APPLE |
| apple — mac_os_x | IOGraphics in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1747. | 2016-03-23 | 9.3 | CVE-2016-1746 CONFIRM APPLE |
| apple — mac_os_x | IOGraphics in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1746. | 2016-03-23 | 9.3 | CVE-2016-1747 CONFIRM APPLE |
| apple — mac_os_x | IOUSBFamily in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1749 CONFIRM APPLE |
| apple — apple_tv | Use-after-free vulnerability in the kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to execute arbitrary code in a privileged context via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1750 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — apple_tv | The kernel in Apple iOS before 9.3, tvOS before 9.2, and watchOS before 2.2 does not properly restrict the execute permission, which allows attackers to bypass a code-signing protection mechanism via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1751 CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE |
| apple — apple_tv | The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to cause a denial of service via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1752 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — apple_tv | Multiple integer overflows in the kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allow attackers to execute arbitrary code in a privileged context via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1753 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — apple_tv | The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1755. | 2016-03-23 | 9.3 | CVE-2016-1754 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — apple_tv | The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1754. | 2016-03-23 | 9.3 | CVE-2016-1755 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — iphone_os | The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1756 CONFIRM CONFIRM APPLE APPLE |
| apple — iphone_os | Race condition in the kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1757 CONFIRM CONFIRM APPLE APPLE |
| apple — mac_os_x | The kernel in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. | 2016-03-23 | 9.3 | CVE-2016-1759 CONFIRM APPLE |
| apple — iphone_os | libxml2 in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted XML document. | 2016-03-23 | 10.0 | CVE-2016-1761 CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE |
| apple — safari | libxml2 in Apple iOS before 9.3, OS X before 10.11.4, Safari before 9.1, tvOS before 9.2, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted XML document. | 2016-03-23 | 10.0 | CVE-2016-1762 CONFIRM CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE APPLE |
| apple — safari | The Downloads feature in Apple Safari before 9.1 mishandles file expansion, which allows remote attackers to cause a denial of service via a crafted web site. | 2016-03-23 | 7.1 | CVE-2016-1771 CONFIRM APPLE |
| apple — apple_tv | TrueTypeScaler in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file. | 2016-03-23 | 9.3 | CVE-2016-1775 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — safari | WebKit in Apple iOS before 9.3 and Safari before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. | 2016-03-23 | 9.3 | CVE-2016-1778 CONFIRM CONFIRM APPLE APPLE |
| apple — safari | WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. | 2016-03-23 | 9.3 | CVE-2016-1783 CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE |
| cisco — ios | The Wide Area Application Services (WAAS) Express implementation in Cisco IOS 15.1 through 15.5 allows remote attackers to cause a denial of service (device reload) via a crafted TCP segment, aka Bug ID CSCuq59708. | 2016-03-24 | 7.8 | CVE-2016-1347 CISCO |
| hp — operations_orchestration | HPE Operations Orchestration 10.x before 10.51 and Operations Orchestration content before 1.7.0 allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library. | 2016-03-22 | 10.0 | CVE-2016-1997 HP |
| hp — service_manager | HPE Service Manager (SM) 9.3x before 9.35 P4 and 9.4x before 9.41.P2 allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library. | 2016-03-22 | 10.0 | CVE-2016-1998 HP |
| hp — support_assistant | HP Support Assistant before 8.1.52.1 allows remote attackers to bypass authentication via unspecified vectors. | 2016-03-19 | 10.0 | CVE-2016-2245 HP |
| ibm — tivoli_netview_access_services | ** DISPUTED ** IBM Tivoli NetView Access Services (NVAS) allows remote authenticated users to gain privileges by entering the ADM command and modifying a “page ID” field to the EMSPG2 transaction code. NOTE: the vendor’s perspective is that configuration and use of available security controls in the NVAS product mitigates the reported vulnerability. | 2016-03-18 | 9.0 | CVE-2014-9768 MISC MISC |
| symantec — endpoint_protection_manager | Cross-site request forgery (CSRF) vulnerability in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6-MP4 allows remote authenticated users to hijack the authentication of administrators for requests that execute arbitrary code by adding lines to a logging script. | 2016-03-18 | 8.5 | CVE-2015-8152 CONFIRM BID |
| symantec — endpoint_protection_manager | SQL injection vulnerability in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6-MP4 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. | 2016-03-18 | 8.3 | CVE-2015-8153 CONFIRM BID |
| symantec — endpoint_protection_manager | The SysPlant.sys driver in the Application and Device Control (ADC) component in the client in Symantec Endpoint Protection (SEP) 12.1 before RU6-MP4 allows remote attackers to execute arbitrary code via a crafted HTML document, related to “RWX Permissions.” | 2016-03-18 | 9.3 | CVE-2015-8154 CONFIRM BID |
Medium Vulnerabilities
| Primary Vendor — Product |
Description | Published | CVSS Score | Source & Patch Info |
|---|---|---|---|---|
| abb — panel_builder_800 | Untrusted search path vulnerability in ABB Panel Builder 800 5.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory. | 2016-03-18 | 6.0 | CVE-2016-2281 MISC |
| apple — safari | Apple Safari before 9.1 allows remote attackers to spoof the user interface via a web page that places text in a crafted context, leading to unintended use of that text within a Safari dialog. | 2016-03-23 | 4.3 | CVE-2009-2197 CONFIRM APPLE |
| apple — mac_os_x | Carbon in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted .dfont file. | 2016-03-23 | 6.8 | CVE-2016-1737 CONFIRM APPLE |
| apple — apple_tv | IOHIDFamily in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to obtain sensitive kernel memory-layout information via a crafted app. | 2016-03-23 | 4.3 | CVE-2016-1748 CONFIRM CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE APPLE |
| apple — iphone_os | The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to obtain sensitive memory-layout information or cause a denial of service (out-of-bounds read) via a crafted app. | 2016-03-23 | 4.3 | CVE-2016-1758 CONFIRM CONFIRM APPLE APPLE |
| apple — mac_os_x | The Content Security Policy (CSP) implementation in Messages in Apple OS X before 10.11.4 allows remote attackers to obtain sensitive information via a javascript: URL. | 2016-03-23 | 4.3 | CVE-2016-1764 CONFIRM APPLE |
| apple — xcode | otool in Apple Xcode before 7.3 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors. | 2016-03-23 | 4.6 | CVE-2016-1765 CONFIRM APPLE |
| apple — iphone_os | The Profiles component in Apple iOS before 9.3 does not properly validate certificates, which allows attackers to spoof an MDM profile trust relationship via unspecified vectors. | 2016-03-23 | 5.0 | CVE-2016-1766 CONFIRM APPLE |
| apple — mac_os_x | QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix image, a different vulnerability than CVE-2016-1768. | 2016-03-23 | 6.8 | CVE-2016-1767 CONFIRM APPLE |
| apple — mac_os_x | QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix image, a different vulnerability than CVE-2016-1767. | 2016-03-23 | 6.8 | CVE-2016-1768 CONFIRM APPLE |
| apple — mac_os_x | QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Photoshop file. | 2016-03-23 | 6.8 | CVE-2016-1769 CONFIRM APPLE |
| apple — mac_os_x | The Reminders component in Apple OS X before 10.11.4 allows attackers to bypass an intended user-confirmation requirement and trigger a dialing action via a tel: URL. | 2016-03-23 | 4.3 | CVE-2016-1770 CONFIRM APPLE |
| apple — safari | The Top Sites feature in Apple Safari before 9.1 mishandles cookie storage, which makes it easier for remote web servers to track users via unspecified vectors. | 2016-03-23 | 4.3 | CVE-2016-1772 CONFIRM APPLE |
| apple — mac_os_x_server | The Time Machine server in Server App in Apple OS X Server before 5.1 does not notify the user about ignored permissions during a backup, which makes it easier for remote attackers to obtain sensitive information in opportunistic circumstances by reading backup data that lacks intended restrictions. | 2016-03-23 | 5.0 | CVE-2016-1774 CONFIRM APPLE |
| apple — mac_os_x_server | Web Server in Apple OS X Server before 5.1 does not properly restrict access to .DS_Store and .htaccess files, which allows remote attackers to obtain sensitive configuration information via an HTTP request. | 2016-03-23 | 5.0 | CVE-2016-1776 CONFIRM APPLE |
| apple — mac_os_x_server | Web Server in Apple OS X Server before 5.1 supports the RC4 algorithm, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors. | 2016-03-23 | 5.0 | CVE-2016-1777 CONFIRM APPLE |
| apple — safari | WebKit in Apple iOS before 9.3 and Safari before 9.1 allows remote attackers to bypass the Same Origin Policy and obtain physical-location data via a crafted geolocation request. | 2016-03-23 | 4.3 | CVE-2016-1779 CONFIRM CONFIRM APPLE APPLE |
| apple — iphone_os | WebKit in Apple iOS before 9.3 does not prevent hidden web views from reading orientation and motion data, which allows remote attackers to obtain sensitive information about a device’s physical environment via a crafted web site. | 2016-03-23 | 4.3 | CVE-2016-1780 CONFIRM APPLE |
| apple — safari | WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles attachment URLs, which makes it easier for remote web servers to track users via unspecified vectors. | 2016-03-23 | 4.3 | CVE-2016-1781 CONFIRM CONFIRM APPLE APPLE |
| apple — safari | WebKit in Apple iOS before 9.3 and Safari before 9.1 does not properly restrict redirects that specify a TCP port number, which allows remote attackers to bypass intended port restrictions via a crafted web site. | 2016-03-23 | 4.3 | CVE-2016-1782 CONFIRM CONFIRM APPLE APPLE |
| apple — safari | The History implementation in WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to cause a denial of service (resource consumption and application crash) via a crafted web site. | 2016-03-23 | 4.3 | CVE-2016-1784 CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE |
| apple — safari | The Page Loading implementation in WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles character encoding during access to cached data, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site. | 2016-03-23 | 4.3 | CVE-2016-1785 CONFIRM CONFIRM APPLE APPLE |
| apple — safari | The Page Loading implementation in WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles HTTP responses with a 3xx (aka redirection) status code, which allows remote attackers to spoof the displayed URL, bypass the Same Origin Policy, and obtain sensitive cached information via a crafted web site. | 2016-03-23 | 5.8 | CVE-2016-1786 CONFIRM CONFIRM APPLE APPLE |
| apple — mac_os_x_server | Wiki Server in Apple OS X Server before 5.1 allows remote attackers to obtain sensitive information from Wiki pages via unspecified vectors. | 2016-03-23 | 5.0 | CVE-2016-1787 CONFIRM APPLE |
| ca — single_sign-on | The Domino web agent in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, R12.5 before CR5, R12.51 before CR4, and R12.52 before SP1 CR3 allows remote attackers to cause a denial of service (daemon crash) or obtain sensitive information via a crafted request. | 2016-03-23 | 6.4 | CVE-2015-6853 CONFIRM |
| ca — single_sign-on | The non-Domino web agents in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, and R12.5 before CR5 allow remote attackers to cause a denial of service (daemon crash) or obtain sensitive information via a crafted request. | 2016-03-23 | 6.4 | CVE-2015-6854 CONFIRM |
| cisco — ios_xr | The SCP and SFTP modules in Cisco IOS XR 5.0.0 through 5.2.5 on Network Convergence System 6000 devices use weak permissions for system files, which allows remote authenticated users to cause a denial of service (overwrite) via unspecified vectors, aka Bug ID CSCuw75848. | 2016-03-24 | 6.8 | CVE-2016-1366 CISCO |
| dropbear_ssh_project — dropbear_ssh | CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data. | 2016-03-22 | 5.5 | CVE-2016-3116 CONFIRM |
| edx — open_edx | lms/templates/footer-edx-new.html in Open edX edx-platform before 2015-01-29 does not properly restrict links on the password-reset page, which allows user-assisted remote attackers to discover password-reset tokens by reading a referer log after a victim navigates from this page to a social-sharing site. | 2016-03-19 | 4.3 | CVE-2015-2286 CONFIRM CONFIRM |
| ibm — business_process_manager | Business Space in IBM WebSphere Process Server 6.1.2.0 through 7.0.0.5 and Business Process Manager Advanced 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0.x through 8.5.0.2, 8.5.5.x through 8.5.5.0, and 8.5.6.x through 8.5.6.2 allows remote authenticated users to bypass intended access restrictions and create an arbitrary page or space via unspecified vectors. | 2016-03-21 | 4.0 | CVE-2015-7454 CONFIRM AIXAPAR |
| ibm — websphere_application_server | Cross-site scripting (XSS) vulnerability in the OpenID Connect (OIDC) client web application in IBM WebSphere Application Server (WAS) Liberty Profile 8.5.5 before 8.5.5.9 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | 2016-03-19 | 4.3 | CVE-2016-0283 CONFIRM AIXAPAR |
| netiq — self_service_password_reset | Cross-site scripting (XSS) vulnerability in NetIQ Self Service Password Reset (SSPR) 2.x and 3.x before 3.3.1 HF2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | 2016-03-23 | 4.3 | CVE-2016-1599 CONFIRM CONFIRM |
| novell — filr | Cross-site scripting (XSS) vulnerability in Novell Filr 1.2 before Hot Patch 4 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | 2016-03-18 | 4.3 | CVE-2015-5968 CONFIRM |
| openbsd — openssh | Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions. | 2016-03-22 | 5.5 | CVE-2016-3115 CONFIRM CONFIRM CONFIRM |
| ruby-lang — ruby | The Fiddle::Handle implementation in ext/fiddle/handle.c in Ruby before 2.0.0-p648, 2.1 before 2.1.8, and 2.2 before 2.2.4, as distributed in Apple OS X before 10.11.4 and other products, mishandles tainting, which allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted string, related to the DL module and the libffi library. NOTE: this vulnerability exists because of a CVE-2009-5147 regression. | 2016-03-23 | 4.6 | CVE-2015-7551 CONFIRM CONFIRM CONFIRM CONFIRM APPLE CONFIRM CONFIRM |
| xzeres — 442sr_os | Cross-site scripting (XSS) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2016-03-19 | 4.3 | CVE-2016-2287 MISC |
Low Vulnerabilities
| Primary Vendor — Product |
Description | Published | CVSS Score | Source & Patch Info |
|---|---|---|---|---|
| apple — mac_os_x | AppleRAID in Apple OS X before 10.11.4 allows local users to obtain sensitive kernel memory-layout information or cause a denial of service (out-of-bounds read) via unspecified vectors. | 2016-03-23 | 3.6 | CVE-2016-1732 CONFIRM APPLE |
| apple — mac_os_x | IOFireWireFamily in Apple OS X before 10.11.4 allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors. | 2016-03-23 | 2.1 | CVE-2016-1745 CONFIRM APPLE |
| apple — iphone_os | Messages in Apple iOS before 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing a crafted sms: URL and reading a thread. | 2016-03-23 | 3.5 | CVE-2016-1763 CONFIRM APPLE |
| apple — mac_os_x | The code-signing subsystem in Apple OS X before 10.11.4 does not properly verify file ownership, which allows local users to determine the existence of arbitrary files via unspecified vectors. | 2016-03-23 | 2.1 | CVE-2016-1773 CONFIRM APPLE |
| apple — iphone_os | Messages in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 does not properly implement a cryptographic protection mechanism, which allows remote attackers to read message attachments via vectors related to duplicate messages. | 2016-03-23 | 2.6 | CVE-2016-1788 CONFIRM CONFIRM CONFIRM APPLE APPLE APPLE |
| siemens — apogee_insight | Siemens APOGEE Insight uses weak permissions for the application folder, which allows local users to obtain sensitive information or modify data via unspecified vectors. | 2016-03-18 | 3.6 | CVE-2016-3155 CONFIRM |
Severity Not Yet Assigned
| Primary Vendor — Product |
Description | Published | CVSS Score | Source & Patch Info |
|---|---|---|---|---|
| cisco — ios | Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821. | 2016-03-25 | not yet calculated | CVE-2016-1348 CISCO |
| cisco — ios | The Locator/ID Separation Protocol (LISP) implementation in Cisco IOS 15.1 and 15.2 and NX-OS 4.1 through 6.2 allows remote attackers to cause a denial of service (device reload) via a crafted header in a packet, aka Bug ID CSCuu64279. | 2016-03-25 | not yet calculated | CVE-2016-1351 CISCO |
| cisco — ios | The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in a Smart Install packet, aka Bug ID CSCuv45410. | 2016-03-25 | not yet calculated | CVE-2016-1349 CISCO |
| cisco — ios_xe | Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager allow remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCuj23293. | 2016-03-25 | not yet calculated | CVE-2016-1350 CISCO |
| cisco — ios_xe | The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 through 3.17 allows remote attackers to cause a denial of service (device reload) via fragmented packets, aka Bug ID CSCux38417. | 2016-03-25 | not yet calculaed | CVE-2016-1344 CISCO |
| granite_data_services — amf_framework | The AMF framework in Granite Data Services 3.1.1-SNAPSHOT allows remote authenticated users to read arbitrary files, send TCP requests to intranet servers, or cause a denial of service via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2016-03-25 | not yet calculated | CVE-2016-2340 CERT-VN |
| MIT — ldap_kdb_module | The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal. | 2016-03-25 | not yet calculated | CVE-2016-3119 CONFIRM |
| oracle — java_se | Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Hotspot sub-component. | 2016-03-24 | not yet calculated | CVE-2016-0636 CONFIRM |
| wordpress — favorite_posts_plugin | Cross-site scripting (XSS) vulnerability in the WP Favorite Posts plugin before 1.6.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2016-03-25 | not yet calculated | CVE-2016-1160 CONFIRM JVNDB JVN |
This product is provided subject to this Notification and this Privacy & Use policy.
Adobe Flash PCRE Regex Complication Logic Issue
There’s a logic error in the PCRE engine version used in Adobe Flash that allows the execution of arbitrary PCRE bytecode, with potential for memory corruption and remote code execution.
C2Box 4.0.0(r19171) Validation Bypass
C2Box versions 4.0.0(r19171) and below suffer from a validation bypass vulnerability.
6 Charged for Hacking Lottery Terminals to Produce More Winning Tickets
Police have arrested and charged six people with crimes linked to hacking Connecticut state lottery terminals in order to produce more winning tickets than usual.
Prosecutors say all the six suspects are either owners or employees of retail stores that produced a much higher number of winning tickets than the state average, according to the Hartford Courant.
Suspects Hacked Lottery
![]()
Linux x86 / x64 execve(/bin/bash) Shellcode
33 bytes small Linux x86 / x64 execve(/bin/bash) shellcode.
