Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

2009 Archive

Severity Date Check Point
Reference
Industry
Reference
Description
SBP-2009-28   Security Best Practice: Protect Yourself from PDF Containing Obfuscated Name Objects and Obfuscated JavaScript Filter Name Exploits
CPAI-2009-333 CVE-2009-4176 Update Protection against HP OpenView Network Node Manager ovsessionmgr.exe Buffer Overflow Vulnerability

Updated
CPAI-2009-332 CVE-2009-4178 Update Protection against HP OpenView Network Node Manager OvWebHelp.exe Buffer Overflow Vulnerability
CPAI-2009-314

CVE-2009-4179

Update Protection against HP OpenView Network Node Manager ovalarm.exe Accept-Language Buffer Overflow Vulnerability

Updated
CPAI-2009-312 CVE-2009-3843
CVE-2009-3548
CVE-2009-4189
Update Protection against HP Operations Manager Server Unauthorized File Upload Vulnerability

Updated
CPAI-2009-471 CVE-2009-0201 Update Protection against OpenOffice Word Document Table Parsing Heap Overflow

Updated
CPAI-2009-470 CVE-2009-3563 Update Protection against Multiple Vendors NTP Mode 7 Denial of Service

Updated
CPAI-2009-469 CVE-2009-1016 Update Protection against Oracle BEA WebLogic Server Plug-ins Certificate Buffer Overflow

Updated
CPAI-2009-468 CVE-2009-0270 Update Protection against Fujitsu SystemcastWizard Lite PXEService UDP Handling Buffer Overflow

Updated
CPAI-2009-467 CVE-2009-0065 Update Protection against Linux Kernel SCTP FWD-TSN Handling Buffer Overflow

Updated
CPAI-2009-466 CVE-2007-2281 Update Protection against HP OpenView Storage Data Protector Cell Manager Heap Buffer Overflow

Updated
CPAI-2009-465 TBD Update Protection against IntelliCom NetBiter Config Utility Hostname Stack Buffer Overflow

Updated
CPAI-2009-464 CVE-2009-4324 Update Protection against Adobe Reader and Acrobat media.newPlayer Code Execution

Updated
CPAI-2009-463 CVE-2009-4177 Update Protection against HP OpenView Network Node Manager CGI Host Header Buffer Overflow

Updated
CPAI-2009-462 CVE-2009-4181 Update Protection against HP OpenView Network Node Manager OVwSelection Buffer Overflow

Updated
CPAI-2009-461 CVE-2009-3849 Update Protection against HP OpenView Network Node Manager snmp.exe Oid Variable Buffer Overflow

Updated
CPAI-2009-460 CVE-2009-3844 Update Protection against HP OpenView Data Protector Application Recovery Manager Buffer Overflow

Updated
CPAI-2009-459 CVE-2009-3848 Update Protection against HP OpenView Network Node Manager nnmRptConfig.exe Template Buffer Overflow

Updated
CPAI-2009-458 CVE-2009-1568 Update Protection against Novell iPrint Client ienipp.ocx target-frame Stack Buffer Overflow

Updated
CPAI-2009-457 CVE-2009-1569 Update Protection against Novell iPrint Client ienipp.ocx volatile-date-time Parsing Buffer Overflow

Updated
CPAI-2009-456 TBD Update Protection against VideoLAN VLC Media Player SMB URI Invalid Free

Updated
CPAI-2009-455 CVE-2009-4195 Update Protection against Adobe Illustrator EPS File DSC Comment Buffer Overflow

Updated
CPAI-2009-454 TBD Update Protection against Sun MySQL Database PROCEDURE ANALYSE Denial of Service

Updated
CPAI-2009-453 TBD Update Protection against Sun MySQL Database SELECT Subquery Denial of Service

Updated
CPAI-2009-452 CVE-2009-3853 Update Protection against IBM Tivoli Storage Manager Client CAD Service Buffer Overflow

Updated
CPAI-2009-451 CVE-2009-3840 Update Protection against HP OpenView Network Node Manager Denial of Service

Updated
CPAI-2009-450 TBD Update Protection against Oracle Document Capture EasyMail SMTP AddAttachment Buffer Overflow

Updated
CPAI-2009-449 TBD Update Protection against Oracle Document Capture EasyMail IMAP4 LicenseKey Buffer Overflow

Updated
CPAI-2009-448 CVE-2009-2514 Update Protection against Microsoft Windows Win32k EOT Parsing Integer Overflow (MS09-065)

Updated
CPAI-2009-447 TBD Update Protection against Google Chrome Multiple File Type Security Bypass

Updated
CPAI-2009-446 CVE-2009-2685 Update Protection against HP Power Manager Remote Code Execution

Updated
CPAI-2009-445 CVE-2009-3867 Update Protection against Sun Java HsbParser.getSoundBank Stack Buffer Overflow

Updated
CPAI-2009-444 CVE-2009-3869 Update Protection against Sun Java Runtime AWT setDifflCM Stack Buffer Overflow

Updated
CPAI-2009-443 TBD Update Protection against Sun Java Runtime Environment JPEGImageReader Heap Overflow

Updated
CPAI-2009-442 TBD Update Protection against Rhino Software Serv-U Web Client HTTP Request Remote Buffer Overflow

Updated
CPAI-2009-441 CVE-2009-3382 Update Protection against Mozilla Firefox Browser Engine Memory Corruption

Updated
CPAI-2009-440 TBD Update Protection against Novell eDirectory dhost Buffer Overflow

Updated
CPAI-2009-439 CVE-2009-3744 Update Protection against EMC RepliStor rep_srv and ctrlservice Denial of Service

Updated
CPAI-2009-438 CVE-2009-1991 Update Protection against Oracle Database Server CREATE_TABLES SQL Injection

Updated
CPAI-2009-437 CVE-2009-2983 Update Protection against Adobe Acrobat and Adobe Reader Plugin Object Reloading Memory Corruption

Updated
CPAI-2009-436 CVE-2009-3027 Update Protection against Symantec Multiple Products VRTSweb Code Execution

Updated
CPAI-2009-435 CVE-2009-2518 Update Protection against Microsoft Office BMP Header biClrUsed Integer Overflow (MS09-062)

Updated
CPAI-2009-434 CVE-2009-3126 Update Protection against Microsoft Windows GDI+ PNG Processing Integer Overflow (MS09-062)

Updated
CPAI-2009-433 TBD Update Protection against VMware Authorization Service User Credential Parsing Denial of Service

Updated
CPAI-2009-432 TBD Update Protection against IBM Informix Client SDK NFX File Processing Stack Buffer Overflow

Updated
CPAI-2009-431 TBD Update Protection against Google Apps googleapps.url.mailto URI Argument Injection

Updated
CPAI-2009-430 TBD Update Protection against EMC Captiva PixTools Distributed Imaging ActiveX Control File Creation

Updated
CPAI-2009-429 TBD Update Protection against Novell NetWare NFS Portmapper RPC Module Stack Overflow

Updated
CPAI-2009-428 TBD Update Protection against IBM Installation Manager iim URI Handling Code Execution

Updated
CPAI-2009-427 TBD Update Protection against EMC Captiva QuickScan Pro KeyHelp ActiveX Control Buffer Overflow

Updated
CPAI-2009-426 TBD Update Protection against FFmpeg OGV File Format Memory Corruption

Updated
CPAI-2009-425 CVE-2009-2629 Update Protection against nginx URI Parsing Buffer Underflow

Updated
CPAI-2009-424 CVE-2009-2501 Update Protection against Microsoft Windows GDIplus PNG Chunk Processing Integer Overflow (MS09-062)

Updated
CPAI-2009-423 CVE-2009-2817 Update Protection against Apple iTunes PLS File Parsing Buffer Overflow

Updated
CPAI-2009-422 CVE-2009-2957 Update Protection against Dnsmasq TFTP Service Remote Heap Buffer Overflow

Updated
CPAI-2009-421 TBD Update Protection against VideoLAN VLC Media Player MP4_BoxDumpStructure Buffer Overflow

Updated
CPAI-2009-420 TBD Update Protection against FFmpeg vmd_read_header Integer Overflow

Updated
CPAI-2009-419 CVE-2009-3111 Update Protection against FreeRADIUS RADIUS Server rad_decode Remote Denial of Service

Updated
CPAI-2009-418 CVE-2009-2799 Update Protection against Apple QuickTime H.264 Movie File Buffer Overflow

Updated
CPAI-2009-417 CVE-2009-2798 Update Protection against Apple QuickTime FlashPix File Buffer Overflow

Updated
CPAI-2009-416 CVE-2009-2346 Update Protection against Digium Asterisk IAX2 Call Number Denial Of Service

Updated
CPAI-2009-415 CVE-2009-0200 Update Protection against OpenOffice Word Document Table Parsing Integer Underflow

Updated
CPAI-2009-414 CVE-2009-2855 Update Protection against Squid strListGetItem Denial of Service

Updated
CPAI-2009-413 CVE-2009-2726 Update Protection against Digium Asterisk SIP sscanf Multiple Denial of Service

Updated
CPAI-2009-412 CVE-2009-1869 Update Protection against Adobe Flash Player ActionScript intrf_count Integer Overflow

Updated
CPAI-2009-411 CVE-2009-2620 Update Protection against Firebird SQL op_connect_request Denial of Service

Updated
CPAI-2009-410 CVE-2009-0901 Update Protection against Microsoft ATL Uninitialized Object Code Execution (MS09-037)

Updated
CPAI-2009-409 CVE-2009-2462 Update Protection against Mozilla Firefox ConstructFrame With Floating First-letter Memory Corruption

Updated
CPAI-2009-408 CVE-2009-2469 Update Protection against Mozilla Firefox SVG Element Processing Memory Corruption

Updated
CPAI-2009-407 CVE-2009-2533 Update Protection against RealNetworks Helix Server RTSP SET_PARAMETERS Request Denial of Service

Updated
CPAI-2009-406 CVE-2009-0692 Update Protection against ISC DHCP dhclient script_write_params Stack Buffer Overflow

Updated
CPAI-2009-405 CVE-2009-0232 Update Protection against Microsoft Windows Embedded OpenType Font Integer Overflow (MS09-029)

Updated
CPAI-2009-404 CVE-2009-0231 Update Protection against Microsoft Windows Embedded OpenType Font Heap Buffer Overflow (MS09-029)

Updated
CPAI-2009-403 CVE-2009-2477 Update Protection against Mozilla Firefox JIT escape Function Memory Corruption

Updated
CPAI-2009-402 CVE-2009-2446 Update Protection against Sun MySQL mysql_log Format String

Updated
CPAI-2009-401 CVE-2008-3982 Update Protection against Oracle Database Server Workspace Manager Multiple SQL Injection

Updated
CPAI-2009-400 CVE-2009-1420 Update Protection against HP OpenView Network Node Manager rping Stack Buffer Overflow

Updated
CPAI-2009-399 CVE-2009-2484 Update Protection against VideoLAN VLC Media Player SMB Module Win32AddConnection Buffer Overflow

Updated
CPAI-2009-398 CVE-2009-1628 Update Protection against Unisys Business Information Server Stack Buffer Overflow

Updated
CPAI-2009-397 CVE-2009-2121 Update Protection against Google Chrome HTTP Response Handling Memory Corruption

Updated
CPAI-2009-396 CVE-2009-1392 Update Protection against Mozilla Firefox Browser Engine Memory Corruption

Updated
CPAI-2009-395 CVE-2009-1533 Update Protection against Microsoft Works Oversized Font Buffer Overflow (MS09-024)

Updated
CPAI-2009-394 CVE-2009-0950 Update Protection against Apple iTunes Protocol Handler Stack Buffer Overflow

Updated
CPAI-2009-393 CVE-2009-0954 Update Protection against Apple QuickTime Movie File Clipping Region Handling Heap Buffer Overflow

Updated
CPAI-2009-392 CVE-2009-0955 Update Protection against Apple QuickTime Image Description Atom Sign Extension Memory Corruption

Updated
CPAI-2009-391 CVE-2009-1636 Update Protection against Novell GroupWise Internet Agent AUTH LOGIN Command Buffer Overflow

Updated
CPAI-2009-390 CVE-2009-0978 Update Protection against Oracle Database Server LT.ROLLBACKWORKSPACE SQL Injection

Updated
CPAI-2009-389 CVE-2009-1493 Update Protection against Adobe Reader JavaScript spell.customDictionaryOpen Method Memory Corruption

Updated
CPAI-2009-388 TBD Update Protection against Adobe Reader JavaScript getAnnots Method Memory Corruption

Updated
CPAI-2009-387 CVE-2008-2438 Update Protection against HP OpenView Network Node Manager ovalarmsrv Integer Overflow

Updated
CPAI-2009-386 CVE-2009-1313 Update Protection against Mozilla Firefox ClearTextRun Function Memory Corruption

Updated
CPAI-2009-385 CVE-2009-0991 Update Protection against Oracle Database DBMS TNS Listener Denial of Service

Updated
CPAI-2009-384 CVE-2009-3068 Update Protection against Adobe RoboHelp Server Arbitrary File Upload and Execute

Updated
CPAI-2009-383 CVE-2009-0819 Update Protection against MySQL XML Functions Scalar XPath Denial of Service

Updated
CPAI-2009-382 CVE-2009-0186 Update Protection against Nullsoft Winamp CAF File Processing Integer Overflow

Updated
CPAI-2009-381 CVE-2009-0192 Update Protection against Novell eDirectory Management Console Accept-Language Buffer Overflow

Updated
CPAI-2009-380 CVE-2009-0187 Update Protection against Orbit Downloader Long URL Stack Buffer Overflow

Updated
CPAI-2009-379 CVE-2009-0520 Update Protection against Adobe Flash Player Invalid Object Reference Code Execution

Updated
CPAI-2009-378 CVE-2009-0611 Update Protection against Novell QuickFinder Server Multiple Cross Site Scripting

Updated
CPAI-2009-377 CVE-2009-0305 Update Protection against BlackBerry Application Web Loader ActiveX Control Buffer Overflow

Updated
CPAI-2009-376 CVE-2008-4562 Update Protection against HP OpenView Network Node Manager ovlaunch HTTP Request Buffer Overflow

Updated
CPAI-2009-375 CVE-2009-0375 Update Protection against RealNetworks RealPlayer IVR Overly Long Filename Code Execution

Updated
CPAI-2009-374 CVE-2009-0388 Update Protection against UltraVNC VNCViewer Authenticate Buffer Overflow

Updated
CPAI-2009-373 TBD Update Protection against Oracle Application Server Portal Cross Site Scripting

Updated
CPAI-2009-372 CVE-2009-0410 Update Protection against Novell Groupwise Internet Agent RCPT Command Buffer Overflow

Updated
CPAI-2009-371 CVE-2009-0184 Update Protection against Free Download Manager Torrent File Parsing Multiple Buffer Overflows

Updated
CPAI-2009-370 CVE-2009-0183 Update Protection against Free Download Manager Remote Control Server Header Buffer Overflow

Updated
CPAI-2009-369 CVE-2009-0385 Update Protection against FFmpeg 4xm Processing Memory Corruption

Updated
CPAI-2009-368 CVE-2009-0351 Update Protection against Win FTP Server WFTPSRV.exe LIST FTP Command Buffer Overflow

Updated
CPAI-2009-367 CVE-2009-0298 Update Protection against MW6 Technologies Barcode.dll ActiveX Control Buffer Overflow

Updated
CPAI-2009-366 CVE-2008-5260 Update Protection against AXIS Communications Camera Control image_pan_tilt Buffer Overflow

Updated
CPAI-2009-365 CVE-2009-0398 Update Protection against GStreamer QuickTime File Parsing Multiple Heap Overflows

Updated
CPAI-2009-364 CVE-2009-0007 Update Protection against Apple QuickTime STSD JPEG Atom Heap Corruption

Updated
CPAI-2009-363 CVE-2009-0002 Update Protection against Apple QuickTime VR Track Header Atom Heap Corruption

Updated
CPAI-2009-362 CVE-2009-0241 Update Protection against Ganglia Meta Daemon process_path Stack Buffer Overflow

Updated
CPAI-2009-361 CVE-2008-4388 Update Protection against Symantec AppStream Client LaunchObj ActiveX Control

Updated
CPAI-2009-360 CVE-2008-0067
CVE-2007-6204
Update Protection against HP OpenView Network Node Manager CGI programs HTTP Request Buffer Overflow

Updated
CPAI-2009-359 TBD Update Protection against Office OCX Multiple ActiveX Controls OpenWebFile Arbitrary Program Execution

Updated
CPAI-2009-358 CVE-2008-4014 Update Protection against Oracle Application Server BPEL Module Cross Site Scripting

Updated
CPAI-2009-357 CVE-2008-3979 Update Protection against Oracle Database Trigger MDSYS.SDO_TOPO_DROP_FTBL SQL Injection

Updated
CPAI-2009-356 CVE-2009-0263 Update Protection against Nullsoft Winamp AIFF Parsing Heap Buffer Overflow

Updated
CPAI-2009-355 CVE-2008-4827 Update Protection against SAP GUI TabOne ActiveX Control Caption List Buffer Overflow

Updated
CPAI-2009-354 CVE-2009-2533 Update Protection against RealNetworks Helix Server RTSP SET_PARAMETER Heap Buffer Overflow

Updated
CPAI-2009-353 CVE-2008-5911 Update Protection against RealNetworks Helix Server RTSP SETUP Stack Buffer Overflow

Updated
CPAI-2009-352 CVE-2009-0977 Update Protection against Oracle Database DBMS_AQADM_SYS.GRANT_TYPE_ACCESS Procedure SQL Injection

Updated
CPAI-2009-351 CVE-2009-0981 Update Protection against Oracle Database Application Express Component APEX Password Hash Disclosure

Updated
CPAI-2009-350 CVE-2009-0993 Update Protection against Oracle Application Server 10g OPMN Service Format String

Updated
CPAI-2009-349 CVE-2009-1350 Update Protection against Novell Client NetIdentity Agent Remote Pointer Dereference Code Execution

Updated
CPAI-2009-348 CVE-2009-0173 Update Protection against IBM DB2 Database Server Invalid Data Stream Denial of Service

Updated
CPAI-2009-347 CVE-2009-2742 Update Protection against IBM WebSphere Application Server Cross Site Scripting

Updated
CPAI-2009-346 CVE-2009-1098
CVE-2009-1097
Update Protection against Sun Java Runtime Environment GIF Parsing Memory Corruption

Updated
CPAI-2009-345 CVE-2009-1097 Update Protection against Sun Java Web Start Splashscreen PNG Processing Buffer Overflow

Updated
CPAI-2009-344 CVE-2009-1099 Update Protection against Sun Java Runtime Environment Type1 Font Parsing Integer Overflow

Updated
CPAI-2009-343 CVE-2009-1169 Update Protection against Mozilla Firefox XSL Transformation Memory Corruption

Updated
CPAI-2009-342 CVE-2009-0215 Update Protection against IBM Access Support ActiveX GetXMLValue Method Buffer Overflow

Updated
CPAI-2009-341 CVE-2009-1217 Update Protection against Microsoft Windows GDIplus GpFont.SetData Integer Overflow

Updated
CPAI-2009-340 CVE-2009-1072 Update Protection against Linux Kernel nfsd CAP_MKNOD Security Bypass

Updated
CPAI-2009-339 CVE-2009-1044 Update Protection against Mozilla Firefox XUL Tree Element Code Execution

Updated
CPAI-2009-338 CVE-2008-4564 Update Protection against IBM Lotus Notes WPD Attachment Handling Buffer Overflow

Updated
CPAI-2009-337 CVE-2009-0927 Update Protection against Adobe Acrobat JavaScript getIcon Method Buffer Overflow

Updated
CPAI-2009-336 CVE-2009-0879 Update Protection against IBM Director CIM Server Consumer Name Handling Denial of Service

Updated
CPAI-2009-335 CVE-2009-0773 Update Protection against Mozilla Firefox JavaScript Array.splice Memory Corruption

Updated
CPAI-2009-334 CVE-2009-0771 Update Protection against Mozilla Firefox SVG Data Processing Memory Corruption
CPAI-2009-331   Update Protection against Microsoft IIS Filename Extension Parsing Security Bypass Vulnerability
CPAI-2009-313 CVE-2009-3846 Update Protection against HP OpenView Network Node Manager ovlogin.exe Buffer Overflow
CPAI-2009-311

CVE-2009-4177

Preemptive Protection against HP OpenView Network Node Manager webappmon.exe CGI Host Header Buffer Overflow
CPAI-2009-310 CVE-2009-4180 Preemptive Protection against HP OpenView Network Node Manager snmpviewer.exe Host Header Buffer Overflow
CPAI-2009-309 CVE-2009-3744 Update Protection against EMC RepliStor rep_srv and ctrlservice Denial of Service
CPAI-2009-299 CVE-2009-3604 Update Protection against Xpdf Splash DrawImage Integer Overflow Vulnerability
CPAI-2009-297 CVE-2009-1991 Update Protection against Oracle Database Server CREATE_TABLES SQL Injection Vulnerability
CPAI-2009-255 CVE-2009-3791 Update Protection against Adobe Flash Media Server Resource Exhaustion Denial of Service Vulnerability (APSB09-18)
SBP-2009-27   Security Best Practice: Blocking BitTorrent
SBP-2009-26   Security Best Practice: Blocking Gnutella
SBP-2009-25   Security Best Practice: Blocking eMule
SBP-2009-24   Security Best Practice: Blocking Kazaa
CPAI-2009-330 CVE-2009-3792 Preemptive Protection against Adobe Flash Media Server Directory Traversal Vulnerability (APSB09-18)
CPAI-2009-295 CVE-2009-4324 Protection against Adobe Reader and Acrobat Doc.media.newPlayer Memory Corruption Vulnerability (APSA09-07)
CPAI-2009-293 CVE-2002-1337 Update Protection against Sendmail Header Processing Buffer Overflow Vulnerability
CPAI-2009-291 CVE-2004-0493 Update Protection against Apache 2.0.x Input Header Folding Denial of Service Vulnerability
CPAI-2009-289 CVE-2003-0903 Update Protection against Microsoft Data Access Components Broadcast Reply Buffer Overflow Vulnerability (MS04-003)
CPAI-2009-287 CVE-2001-0500 Update Protection against Microsoft IIS ISAPI Extension Indexing Service Buffer Overflow Vulnerability (MS01-033)
CPAI-2009-285 CVE-2006-2376 Update Protection against Microsoft WMF File Polypolygon Function Buffer Overflow Vulnerability (MS06-26)
CPAI-2009-283 CVE-2008-4255 Update Protection against Microsoft VB Common Controls Animation Object Buffer Overflow Vulnerability (MS08-070)
CPAI-2009-281 CVE-2006-3281 Update Protection against Microsoft Windows Folder GUID Code Execution Vulnerability (MS06-045)
CPAI-2009-279 CVE-2008-1544 Update Protection against Microsoft Internet Explorer Request Header Information Disclosure Vulnerability (MS08-031)
CPAI-2009-277 CVE-2007-0217 Update Protection against Microsoft Internet Explorer FTP Response Parsing Memory Corruption Vulnerability (MS07-016)
CPAI-2009-275 CVE-2004-0839 Update Protection against Microsoft Internet Explorer Drag and Drop Elevation of Privilege Vulnerability (MS04-038)
CPAI-2009-273 CVE-2003-0109 Update Protection against Microsoft IIS WebDAV Remote Buffer Overflow Vulnerability (MS03-007)

Updated
CPAI-2009-308 N/A Preemptive Protection against RhinoSoft Serv-U FTP Server 'rnto' Command Directory Traversal Vulnerability
CPAI-2009-307 CVE-2009-3853 Update Protection against IBM Tivoli Storage Manager Client CAD Service Buffer Overflow
CPAI-2009-271 CVE-2009-3951 Update Protection against Adobe Flash Player File Existence Information Disclosure Vulnerability (APSB09-19)

Updated
CPAI-2009-269 CVE-2009-3794 Update Protection against Adobe Flash Player JPEG Dimensions Data Parsing Heap Overflow Vulnerability (APSB09-19)
CPAI-2009-267 CVE-2009-3674 Update Protection against Microsoft Internet Explorer 8 Circular References Memory Corruption Vulnerability (MS09-072)
CPAI-2009-263 CVE-2009-3673 Update Protection against Microsoft Internet Explorer Page Refresh Uninitialized Memory Corruption Vulnerability (MS09-072)

Updated
CPAI-2009-261 CVE-2009-0102 Update Protection against Microsoft Office Project Memory Validation Remote Code Execution Vulnerability (MS09-074)

Updated
CPAI-2009-259 CVE-2009-2506 Update Protection against Microsoft WordPad and Office Text Converter Memory Corruption Vulnerability (MS09-073)
CPAI-2009-257 CVE-2009-3671 Update Protection against Microsoft Internet Explorer 8 Overlap Components Memory Corruption Vulnerability (MS09-072)

Updated
CPAI-2009-253 CVE-2009-3677 Update Protection against Microsoft Internet Authentication Service MS-CHAP Security Bypass (MS09-071)

Updated
CPAI-2009-251 CVE-2009-2509 Update Protection against Microsoft Active Directory Federation Services Code Execution Vulnerability (MS09-070)
CPAI-2009-306 N/A Update Protection against Oracle Document Capture EasyMail SMTP AddAttachment Buffer Overflow
CPAI-2009-305 N/A Update Protection against Oracle Document Capture EasyMail IMAP4 LicenseKey Buffer Overflow

Updated
CPAI-2009-304   Update Protection against EMC Captiva PixTools Distributed Imaging ActiveX Control File Creation Vulnerability

Updated
CPAI-2009-303 CVE-2009-3031
CVE-2009-3033
Update Protection against Symantec Multiple Products AeXNSConsoleUtilities Buffer Overflow Vulnerability

Updated
SBP-2009-23 CVE-2009-3555 Security Best Practice: Protect Yourself from SSL and TLS Protocols Renegotiation Vulnerability (MS10-049)
CPAI-2009-298 CVE-2009-3133 Update Protection against Microsoft Office Excel Document Parsing Memory Corruption Vulnerability (MS09-067)

Updated
CPAI-2009-249 CVE-2009-3672 Update Protection against Microsoft Internet Explorer HTML Object Memory Corruption Vulnerability (MS09-072)
CPAI-2009-302 CVE-2009-3840 Update Protection against HP OpenView Network Node Manager Denial of Service

Updated
CPAI-2009-301   Update Protection against Novell eDirectory dhost HTTPSTK Buffer Overflow Vulnerability

Updated
CPAI-2009-247 CVE-2009-3672 Preemptive Protection against Microsoft Internet Explorer HTML Object Memory Corruption Vulnerability
CPAI-2009-300 CVE-2009-2685 Update Protection against HP Power Manager Remote Code Execution

Updated
CPAI-2009-296 CVE-2009-3676 Update Protection against Microsoft SMB Endless Loop Denial of Service Vulnerability (MS10-020)

Updated
SBP-2009-22 CVE-2009-3131
CVE-2010-1251
CVE-2010-1252
Workaround for Microsoft Excel Document Malformed Formula Memory Corruption Vulnerability (MS09-067)
SBP-2009-21 CVE-2009-2514 Workaround for Microsoft Windows Kernel-Mode Drivers Win32k EOT Parsing Remote Code Execution Vulnerability (MS09-065)

Updated
CPAI-2009-294 CVE-2009-3132 Update Protection against Microsoft Office Excel Index Parsing Pointer Corruption Vulnerability (MS09-067)

Updated
CPAI-2009-292 CVE-2009-3127 Update Protection against Microsoft Office Excel SXDB Record Cache Memory Corruption Vulnerability (MS09-067)

Updated
CPAI-2009-290 CVE-2009-3128 Update Protection against Microsoft Office Excel SxView Record Memory Corruption Vulnerability (MS09-067)

Updated
CPAI-2009-288

CVE-2009-1928

Update Protection against Microsoft Active Directory LSASS Recursive Stack Overflow Vulnerability (MS09-066)

Updated
CPAI-2009-286 CVE-2009-2523 Update Protection against Microsoft License Logging Server RPC Call Heap Overflow Vulnerability (MS09-064)
CPAI-2009-284 CVE-2009-3134 Update Protection against Microsoft Office Excel Field Sanitization Remote Code Execution Vulnerability (MS09-067)

Updated
CPAI-2009-282 CVE-2009-3130 Update Protection against Microsoft Excel Document Malformed BIFF Record Heap Overflow Vulnerability (MS09-067)

Updated
CPAI-2009-280 CVE-2009-2512 Update Protection against Microsoft Web Services on Devices API Memory Corruption Vulnerability (MS09-063)

Updated
CPAI-2009-278 CVE-2009-3129 Update Protection against Microsoft Office Excel Featheader Record Memory Corruption Vulnerability (MS09-067)

Updated
CPAI-2009-276 CVE-2009-3135 Update Protection against Microsoft Office Word Legacy File Remote Code Execution Vulnerability (MS09-068)
CPAI-2009-270 CVE-2009-0091 Update Protection against Microsoft .NET Framework Type Verification Error Vulnerability (MS09-061)
CPAI-2009-268 CVE-2009-0090 Update Protection against Microsoft .NET Framework Pointer Verification Error Vulnerability (MS09-061)
CPAI-2009-245 N/A Preemptive Protection against Rhino Software Serv-U Web Client HTTP Request Remote Buffer Overflow
CPAI-2009-243 N/A Update Protection against Novell NetWare NFS Portmapper RPC Module Stack Overflow
CPAI-2009-241 N/A Update Protection against Novell eDirectory dhost Buffer Overflow
SBP-2009-20   Security Best Practice: Blocking Foxy

Updated
CPAI-2009-274 CVE-2009-1979 Update Protection against Oracle Database Server Network Authentication AUTH_SESSKEY Buffer Overflow Vulnerability
CPAI-2009-272   Update Protection against Recent Malware Threats (2-Nov-09)
CPAI-2009-266 CVE-2009-2497 Update Protection against Microsoft .NET Framework Arbitrary Memory Modification Vulnerability (MS09-061)
CPAI-2009-264 CVE-2009-2504 Update Protection against Microsoft Windows GDI .NET API Remote Code Execution Vulnerability (MS09-062)
SBP-2009-19   Security Best Practice: Blocking IPv6 In IPv4 Tunneling
CPAI-2009-262   Update Protection against Recent Malware Threats (21-Oct-09)
CPAI-2009-206 CVE-2009-2503 Update Protection against Microsoft GDI+ TIFF Memory Corruption Vulnerability (MS09-062)

Updated
CPAI-2009-239   Update protection against HP LoadRunner XUpload.ocx ActiveX Control Arbitrary File Download
CPAI-2009-260 CVE-2009-2991 Preemptive Protection against Adobe Reader and Acrobat Mozilla plug-in Remote Code Execution Vulnerability (APSB09-15)
CPAI-2009-258 CVE-2009-2990 Update Protection against Adobe Reader U3D File Invalid Array Index Remote Code Execution Vulnerability (APSB09-15)
CPAI-2009-256 CVE-2009-2984 Update Protection against PNG Image Invalid sPLT Chunk Vulnerability
CPAI-2009-254 CVE-2009-2989 Update Protection against BMP Image Improper Dimensions Vulnerability
CPAI-2009-252 CVE-2009-2995 Update Protection against TIFF Image Improper Dimensions Vulnerability
CPAI-2009-250 CVE-2009-2994 Update Protection against Adobe Reader JPEG2000 Quantization Component Buffer Overflow Vulnerability (APSB09-15)
CPAI-2009-248 CVE-2009-2987
CVE-2009-2992
Update Protection against Adobe Reader AcroPDF ActiveX Control Remote Denial of Service Vulnerability (APSB09-15)
CPAI-2009-246 CVE-2009-2993 Update Protection against Adobe Reader DOC.Export Methods Arbitrary File Creation Vulnerability (APSB09-15)
CPAI-2009-244 CVE-2009-2996 Update Protection against Adobe Reader JavaScript Collab.addStateModel Function Memory Corruption Vulnerability (APSB09-15)
CPAI-2009-242 CVE-2009-2988 Update Protection against Adobe Reader JavaScript Collab.removeStateModel Function Denial of Service Vulnerability (APSB09-15)
CPAI-2009-240 CVE-2009-2980 Update Protection against Adobe Reader Decode Object Integer Overflow Vulnerability (APSB09-15)
CPAI-2009-238 CVE-2009-2985 Update Protection against Adobe Reader Compact Font Format Index Memory Corruption Vulnerability (APSB09-15)
CPAI-2009-236 CVE-2009-2979 Update Protection against Adobe Reader PDF Document Metadata XML Bomb Denial of Service Vulnerability (APSB09-15)
CPAI-2009-234 CVE-2009-2516 Update Protection against Microsoft Windows Kernel NULL Pointer Dereferencing Vulnerability (MS09-058)

Updated
CPAI-2009-232 CVE-2009-3126 Preemptive Protection against Microsoft GDI+ PNG Integer Overflow Vulnerability (MS09-062)

Updated
CPAI-2009-230 CVE-2009-0555
CVE-2009-2525
Update Protection against Microsoft Windows Media Runtime Voice Sampler Rate Code Execution Vulnerability (MS09-051)

Updated
CPAI-2009-228 CVE-2009-2527 Update Protection against Microsoft Media Player HeaderExtensionObject Heap Overflow Vulnerability (MS09-052)

Updated
CPAI-2009-226 CVE-2009-2510 Preemptive Protection against Microsoft CryptoAPI Null Truncation in X.509 Common Name Vulnerability (MS09-056)
CPAI-2009-224 CVE-2009-2531 Update Protection against Microsoft Internet Explorer Table Layout Handling Memory Corruption Vulnerability (MS09-054)
CPAI-2009-222 CVE-2009-2529 Update Protection against Microsoft Internet Explorer HTML Component Handling Remote Code Execution Vulnerability (MS09-054)

Updated
CPAI-2009-220 CVE-2009-1547 Update Protection against Microsoft Internet Explorer Data Stream Header Corruption Vulnerability (MS09-054)
CPAI-2009-218 CVE-2009-2528 Update Protection against Microsoft GDI+ Office Art Parsing Memory Corruption Vulnerability (MS09-062)

Updated
CPAI-2009-216 CVE-2009-2524 Update Protection against Microsoft LSASS Authentication Process Integer Overflow Vulnerability (MS09-059)
CPAI-2009-214 CVE-2009-2511 Update Protection against Microsoft CryptoAPI Object Identifiers Integer Overflow Vulnerability (MS09-056)

Updated
CPAI-2009-212 CVE-2009-2526 Update Protection against Microsoft SMB Infinite Loop Denial of Service Vulnerability (MS09-050)
CPAI-2009-210 CVE-2009-2501 Preemptive Protection against Microsoft GDI+ PNG Heap Overflow Vulnerability (MS09-062)
CPAI-2009-208 CVE-2009-2518 Preemptive Protection against Microsoft Office BMP Integer Overflow Vulnerability (MS09-062)

Updated
CPAI-2009-204 CVE-2009-2502 Update Protection against Microsoft GDI+ TIFF Buffer Overflow Vulnerability (MS09-062)

Updated
CPAI-2009-202 CVE-2009-2500 Update Protection against Microsoft GDI+ WMF Integer Overflow Vulnerability (MS09-062)
CPAI-2009-200 CVE-2009-2530 Update Protection against Microsoft Internet Explorer Uninitialized Object Memory Corruption Vulnerability (MS09-054)

Updated
CPAI-2009-199 CVE-2009-2507 Update Protection against Microsoft Indexing Service ActiveX Memory Corruption Vulnerability (MS09-057)

Updated
CPAI-2009-198 CVE-2009-2493 Update Protection against Multiple Microsoft ATL COM Initialization Remote Code Execution Vulnerabilities (MS09-055)
CPAI-2009-231   Update Protection against Symantec Altiris Deployment Solution ActiveX File Download Vulnerability
CPAI-2009-196   Update Protection against Recent Malware Threats (4-Oct-09)
CPAI-2009-237

CVE-2009-2957

Preemptive Protection against Dnsmasq TFTP Service Remote Heap Buffer Overflow
CPAI-2009-233 CVE-2009-3037 Update Protection against Symantec Mail Security KeyView Excel File SST Parsing Integer Overflow Vulnerability
CPAI-2009-197 CVE-2009-2195 Update Protection against Apple Safari Webkit Floating Point Remote Code Execution Vulnerability
CPAI-2009-235 CVE_2009-3111 Preemptive Protection against FreeRADIUS RADIUS Server rad_decode Remote Denial of Service
CPAI-2009-195

CVE-2009-1021

Update Protection against Oracle Database REPCAT_RPC.VALIDATE_REMOTE_RC SQL Injection
CPAI-2009-193 CVE-2009-1872 Update Protection against Adobe ColdFusion Server Multiple Cross-Site Scripting and Cross-Site Request Forgery Vulnerabilities (APSB09-12)
CPAI-2009-192 CVE-2009-1874 Update Protection against Adobe JRun 4 Management Console Cross-Site Scripting Vulnerability (APSB09-12)
CPAI-2009-191 CVE-2009-1875 Update Protection against Adobe ColdFusion Server URL Parameter Manipulation Cross-Site Scripting (APSB09-12)
CPAI-2009-189 CVE-2009-1876 Update Protection against Adobe ColdFusion Server Double-Encoded Null Character Information Disclosure Vulnerability (APSB09-12)
CPAI-2009-187 CVE-2009-1877 Update Protection against Adobe ColdFusion Server Load URL Cross-Site Scripting Vulnerability (APSB09-12)
CPAI-2009-185 CVE-2009-1879 Update Protection against Adobe Flex SDK Cross-Site Scripting Vulnerability (APSB09-13)

Updated
CPAI-2009-194 CVE-2009-3103
CVE-2009-2532
Update Protection against Microsoft Windows SMB Negotiate Request Remote Code Execution Vulnerability (MS09-050)

Updated
SBP-2009-18 CVE-2008-4609
CVE-2009-1925
CVE-2009-1926
Security Best Practice: TCP Window Size Enforcement

Updated
CPAI-2009-183 CVE-2009-2521 Update Protection against Microsoft Internet Information Services FTP Server Recursive Listing Denial of Service Vulnerability (MS09-053)
CPAI-2009-181 CVE-2009-1920 Update Protection against JScript Scripting Engine Web Pages Decoding Code Execution Vulnerability (MS09-045)
CPAI-2009-179 CVE-2008-0020
CVE-2009-2494
Update Protection against Microsoft Active Template Library (ATL) Multiple ActiveX Remote Code Execution Vulnerabilities (MS09-037)

Updated
CPAI-2009-175 CVE-2009-2499 Update Protection against Microsoft Windows MP3 File Media Playback Memory Corruption Vulnerability (MS09-047)

Updated
CPAI-2009-173 CVE-2009-2498 Update Protection against Microsoft Windows ASF File Media Header Parsing Remote Code Execution Vulnerability (MS09-047)

Updated
CPAI-2009-127 CVE-2009-2519 Update Protection against Microsoft DHTML Editing Component ActiveX Control Code Execution Vulnerability (MS09-046)

Updated
CPAI-2009-153 CVE-2009-3023 Preemptive Protection against Microsoft Internet Information Services FTP Server Remote Buffer Overflow Vulnerability (MS09-053)

Updated
SBP-2009-17   Security Best Practice: Protect Yourself from JavaScript Obfuscation Techniques
CPAI-2009-177   Update Protection against Recent Malware Threats (1-Sep-09)

Updated
CPAI-2009-229

CVE-2009-1978

Update Protection against Oracle Secure Backup Administration Server Command Injection Attack
CPAI-2009-171   Update Protection against Recent Malware Threats (27-Aug-09)

Updated
CPAI-2009-169 CVE-2009-1977 Update Protection against Oracle Secure Backup Administration Server Authentication Bypass Vulnerability
CPAI-2009-167 CVE-2009-2534 Update Protection against RealNetworks Helix Server RTSP SETUP Request Denial of Service Vulnerability
CPAI-2009-165 CVE-2009-2404 Update Protection against Mozilla Network Security Services Regexp Heap Overflow Vulnerability
CPAI-2009-161   Update Protection against Recent Malware Threats (19-Aug-09)

Updated
CPAI-2009-129 CVE-2009-2408
CVE-2009-4565
Update Protection against Mozilla Network Security Services and Firefox Common Name Security Bypass
CPAI-2009-163 CVE-2009-1873 Preemptive Protection against Adobe JRun 4.0 Directory Traversal File Read Vulnerability (APSB09-12)

Updated
CPAI-2009-227 CVE-2009-2621 Update Protection against Squid Proxy Invalid HTTP Response Status Code Denial of Service Vulnerability

Updated
SBP-2009-15 CVE-2009-1536 Security Best Practice: Protect Yourself from Invalid IIS ASP.Net URI Character Requests

Updated
CPAI-2009-159 CVE-2009-1930 Update Protection against Microsoft Windows Telnet Services Credential Reflection Code Execution Vulnerability (MS09-042)

Updated
CPAI-2009-157 CVE-2009-1133 Update Protection against Microsoft Remote Desktop Connection DWORD Heap Overflow Vulnerability (MS09-044)

Updated
CPAI-2009-155 CVE-2009-1544 Update Protection against Microsoft Windows Workstation Service NetrGetJoinInformation Routine Memory Corruption Vulnerability (MS09-041)
CPAI-2009-151 CVE-2009-1546 Update Protection against Microsoft Windows AVI File Data Validation Integer Overflow Vulnerability (MS09-038)

Updated
CPAI-2009-149 CVE-2009-1545 Update Protection against Microsoft Windows AVI Processing Malformed Header Remote Code Execution Vulnerability (MS09-038)

Updated
CPAI-2009-147 CVE-2009-1924 Update Protection against Microsoft WINS Buffer Allocation Integer Overflow Vulnerability (MS09-039)

Updated
CPAI-2009-145 CVE-2009-1923 Update Protection against Microsoft WINS Buffer Length Heap Overflow Vulnerability (MS09-039)

Updated
CPAI-2009-131 CVE-2009-1929 Update Protection against Microsoft Remote Desktop Client Connection ActiveX Heap Overflow Vulnerability (MS09-044)
CPAI-2009-221

CVE-2009-1164
CVE-2009-1166

Update Protection against Cisco IOS Administrative Interface HTTP Authentication

Updated
CPAI-2009-219

CVE-2009-0696
VU#725188

Update Protection against ISC BIND 9 Denial of Service Vulnerability
CPAI-2009-143 CVE-2009-1919 Update Protection against Internet Explorer Uninitialized Memory Corruption (MS09-034)
CPAI-2009-141 CVE-2009-1918 Update Protection against Internet Explorer HTML Objects Memory Corruption (MS09-034)
CPAI-2009-139 CVE-2009-1917

 

Update Protection against Internet Explorer Memory Corruption Vulnerability (MS09-034)
CPAI-2009-225 N/A Update Protection against Joomla! Jobline Component 'search' Parameter SQL Injection Vulnerability

Updated
CPAI-2009-223 CVE-2009-1968 Update Protection against Oracle Database Secure Enterprise Search Cross Site Scripting Vulnerability
CPAI-2009-217 CVE-2008-2991 Update Protection against Adobe RoboHelp Server SQL Injection Vulnerability
CPAI-2009-215 N/A Update Protection against Joomla! HTTP Header Script Injection
CPAI-2009-213 N/A Update Protection against Citrix XenCenterWeb Cross Site Scripting Vulnerabilities

Updated
CPAI-2009-211 CVE-2009-1975 Update Protection against Oracle BEA Weblogic Server console-help.portal Cross-Site Scripting Vulnerability
CPAI-2009-209

CVE-2009-1350

Update Protection against Novell Client NetIdentity Agent Remote Code Execution
SBP-2009-13 CVE-2008-1436
CVE-2009-0078
CVE-2009-0079
CVE-2009-0080
Security Best Practice: Blocking ASPX Spy
SBP-2009-07   Security Best Practice: Protect Yourself from HTTP Server Parameter Pollution
CPAI-2009-137   Update Protection against Recent Malware Threats (21-Jul-09)
CPAI-2009-135   Update Protection against Recent Malware Threats (21-Jul-09)
CPAI-2009-207 CVE-2009-0692 Preemptive Protection against DHCP Stack Overflow in 'dhclient' script_write_params()
CPAI-2009-205 N/A Update Protection against Sun MySQL mysql_log Format String Vulnerability

Updated
SBP-2009-09   Detecting Slowloris: A Denial of Service (DoS) over HTTP

Updated
SBP-2009-05 CVE-2009-0231
CVE-2009-0232
Workaround for Microsoft Windows Embedded OpenType (EOT) Font Engine Remote Code Execution Vulnerabilities (MS09-029)

Updated
CPAI-2009-133 CVE-2009-1135 Update Protection against Microsoft ISA Server 2006 Radius OTP Bypass Vulnerability (MS09-031)

Updated
CPAI-2009-125 CVE-2009-1539 Update Protection against Microsoft DirectShow Size Validation Remote Code Execution Vulnerability (MS09-028)

Updated
CPAI-2009-123 CVE-2009-1538 Update Protection against Microsoft DirectShow Pointer Validation Remote Code Execution Vulnerability (MS09-028)
CPAI-2009-119 CVE-2009-0566 Update Protection against Microsoft Publisher Pointer Dereference Remote Code Execution Vulnerability (MS09-030)

Updated
CPAI-2009-121 CVE-2009-0562
CVE-2009-1136
CVE-2009-1534
CVE-2009-2493
CVE-2009-2496
Update Protection against Microsoft Office Web Components Multiple ActiveX Controls Remote Code Execution Vulnerability (MS09-043)

Updated
CPAI-2009-203 CVE-2009-1394 Update Protection against Motorola Timbuktu Pro PlughNTCommand Stack Based Buffer Overflow Vulnerability

Updated
CPAI-2009-190 CVE-2008-0015 Update Protection against Microsoft Video ActiveX Control Stack Buffer Overflow Vulnerability
SBP-2009-11 CVE-2009-1836 Protection against Mozilla Firefox SSL Tampering via non-200 Responses to Proxy CONNECT Requests
CPAI-2009-117   Update Protection against Recent Malware Threats (5-Jul-09)