| »Top Protections
Zero-Day Internet Explorer Table Handling Memory Corruption Vulnerability
( Microsoft Security Advisory 2458511, CVE-2010-3962 )
Summary: A memory corruption vulnerability has been reported in Microsoft Internet Explorer. A remote attacker could exploit this issue by convincing a user to open a maliciously crafted HTML file with Internet Explorer, which will cause the browser to crash and may allow execution of arbitrary commands. Protection: Check Point IPS Software Blade and NGX SmartDefense provide network protection in the latest IPS update by detecting and blocking attempts to exploit this issue.
Learn More
.
Check Point IPS Research Team Discovers Four Adobe Shockwave Player Vulnerabilities
( APSB10-25, CVE-2010-4086, CVE-2010-4087, CVE-2010-4088, CVE-2010-4089 )
Summary: Adobe has released a security advisory that details several critical vulnerabilities in Shockwave Player, four of which were discovered by the Check Point IPS Research Team. A remote attacker can exploit these issues via specially crafted DIR files and potentially take complete control of an affected system. Protection: Check Point R70/71 IPS Software Blade provides immediate protection of unpatched systems by detecting malformed Adobe DIR files and blocking their transfer over HTTP.
Learn More
.
Remote Code Exploit Leverages Legacy PowerPoint Files
( MS10-088, CVE-2010-2572 )
Summary: A remote code execution vulnerability has been identified in Microsoft PowerPoint. An attacker could exploit this issue by convincing a user to open a malformed PowerPoint file. Successful exploitation of this vulnerability may allow execution of arbitrary code on the targeted system. Protection: Check Point IPS Software Blade and NGX SmartDefense provide network protection in the latest IPS update by detecting and blocking the transferal of legacy PowerPoint files over HTTP.
Learn More
.
|
November 9, 2010
| In This Advisory |
| » Top Protections |
 |
Zero-Day Internet Explorer Table Handling Memory Corruption Vulnerability |
 |
Check Point IPS Research Team Discovers Four Adobe Shockwave Player Vulnerabilities |
 |
Remote Code Exploit Leverages Legacy PowerPoint Files |
| » Deployment Tip |
 |
Use Timeline View to Assess and Respond |
| » Highlighted Protections |
 |
Including Patch Tuesday |
|
Have questions about IPS?
Participate in the IPS User Forum. The IPS Forum is your space for asking questions regarding all IPS features, and to collaborate with other IPS users, worldwide, on IPS related issues. Check Point employees may monitor the forum and provide information on the issues posted. |
|
Know someone who should be getting the Advisories?
|
|