<?xml version="1.0" encoding="UTF-8"?>
<rss version="0.91">
        <channel>
          <title>Check Point SmartDefense Service Advisories</title>
          <link>http://www.checkpoint.com/defense/advisories/public/index.html</link>
          <description>The SmartDefense Service provides real-time updates and new attack protection capabilities for Application Intelligence, Web Intelligence, and Network defenses for various products.</description>
          <language>en-us</language>
          <copyright>http://www.checkpoint.com/copyright.html</copyright>
          <pubDate>Mon, 22 Jun 2009 00:05:19 PDT</pubDate>
          <lastBuildDate>August 13, 2008 07:07:59 PDT</lastBuildDate>
          <webMaster>webmaster@checkpoint.com</webMaster>
		  
          <image>
            <title>Check Point Software Technologies Ltd.</title>
            <url>https://sc1.checkpoint.com/www/images/layout/duke/logo-checkpoint.gif</url>
            <link>http://www.checkpoint.com/defense/advisories/public/index.html</link>
          </image>

		  
          <item>
            <title>Update Protection against CA ARCserve Backup Message Engine Denial of Service</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-24-Jun.html</link>
            <severity>3</severity>
            <description><![CDATA[A denial of service vulnerability exists in CA ARCserve Backup Message Engine. The vulnerability is due to insufficient data validation. A remote unauthenticated attacker may exploit this vulnerability by sending a crafted message to the target server, potentially leaing to denial of service condition to the Message Engine.]]></description>
            <pubDate>Thu, 02 Jul 2009 02:24:09 PDT</pubDate>
          </item>

		  
          <item>
            <title>Preemptive Protection against Novell GroupWise Internet Agent Email Address Processing Buffer Overflow</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-30-Jun.html</link>
            <severity>3</severity>
            <description><![CDATA[A buffer overflow vulnerability has been reported in Novell GroupWise, a client-server collaborative software and email system provided by Novell. The vulnerability is due to an error while processing specially crafted SMTP requests. Remote attackers can exploit this vulnerability to execute arbitrary code on the target server.]]></description>
            <pubDate>Wed, 01 Jul 2009 01:27:19 PDT</pubDate>
          </item>

		  
          <item>
            <title>Update Protection against IBM AIX ToolTalk RPC Server Remote Buffer Overflow Vulnerability</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-24-Juna.html</link>
            <severity>3</severity>
            <description><![CDATA[A buffer overflow vulnerability has been discovered in IBM AIX ToolTalk RPC Server. ToolTalk is an inter-application communications system developed by Sun Microsystems in order to allow applications to communicate with each other at runtime. The ToolTalk service is designed to facilitate the development of inter-operating applications that serve individuals and work groups. A remote attacker may exploit this issue to compromise an affected system.]]></description>
            <pubDate>Mon, 29 Jun 2009 12:28:15 PDT</pubDate>
          </item>

		  
          <item>
            <title>Update Protection against Adobe Shockwave Player Pointer Memory Overwrite Vulnerability (APSB09-08)</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-23-Jun.html</link>
            <severity>4</severity>
            <description><![CDATA[A memory overwrite vulnerability has been identified in Adobe Shockwave Player. Adobe Shockwave is a multimedia player that allows Adobe Director applications to be published on the Internet and viewed in a web browser by anyone who has the Shockwave plug-in installed. A remote attacker may exploit this issue to take complete control of an affected system.]]></description>
            <pubDate>Tue, 23 Jun 2009 08:08:03 PDT</pubDate>
          </item>

		  
          <item>
            <title>Security Best Practice: Blocking Ares Galaxy</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/sbp-15-Jan.html</link>
            <severity>2</severity>
            <description><![CDATA[Ares Galaxy is an open source peer to peer file sharing application that uses its own decentralized supernode network. The latest versions also support the BitTorrent protocol.<br />&nbsp;<br />The use of Ares Galaxy may circumvent the organizational security policy.]]></description>
            <pubDate>Tue, 16 Jun 2009 05:22:50 PDT</pubDate>
          </item>

		  
          <item>
            <title>Integrity Clientless Security (ICS) Update 3.7.267.0</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-08-Jun.html</link>
            <severity>2</severity>
            <description><![CDATA[Check Point Integrity &trade; Clientless Security (ICS) protects your Web site by detecting and disabling spyware processes and allowing you to enforce security policies before a user logs onto your network. Using ICS you can prevent users with potentially harmful software from accessing your Web site, and also require that they conform to your antivirus and critical patch policies. <br /><br />Integrity Clientless Security requires no pre-installed software on endpoint computers, except a supported browser. The scan is performed by an ActiveX component deployed from your Web server to each endpoint computer that requests access.&nbsp;<br /><br />239 new malware signatures were added to ICS version 3.7.267.0. For a full list of the added malware, refer to the Details tab.]]></description>
            <pubDate>Wed, 17 Jun 2009 00:44:56 PDT</pubDate>
          </item>

		  
          <item>
            <title>Update Protection against Adobe Acrobat and Adobe Reader JBIG2 Pattern Dictionary Memory Corruption Vulnerabilities (APSB09-07)</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-16-Junb.html</link>
            <severity>3</severity>
            <description><![CDATA[Multiple&nbsp;memory corruption vulnerabilities have been&nbsp;discovered in Adobe Reader and Acrobat. A remote attacker can exploit these vulnerabilities to execute arbitrary code on an affected system via a specially crafted PDF file. Portable Document Format (PDF) is an open file format created by Adobe Systems. It is used for representing two-dimensional documents in a device and resolution independent fixed-layout document format. Successful exploitation of this issue will cause the application to become non-responsive, and may allow execution of arbitrary code on an affected system.]]></description>
            <pubDate>Tue, 16 Jun 2009 22:36:57 PDT</pubDate>
          </item>

		  
          <item>
            <title>Update Protection against Adobe Acrobat and Adobe Reader JBIG2 Halftone Region Grid Integer Overflow Vulnerabilities (APSB09-07)</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-16-Juna.html</link>
            <severity>3</severity>
            <description><![CDATA[Multiple&nbsp;memory corruption vulnerabilities have been&nbsp;discovered in Adobe Reader and Acrobat. A remote attacker can exploit these vulnerabilities to execute arbitrary code on an affected system via a specially crafted PDF file. Portable Document Format (PDF) is an open file format created by Adobe Systems. It is used for representing two-dimensional documents in a device and resolution independent fixed-layout document format. Successful exploitation of this issue will cause the application to become non-responsive, and may allow execution of arbitrary code on an affected system.]]></description>
            <pubDate>Thu, 18 Jun 2009 03:37:51 PDT</pubDate>
          </item>

		  
          <item>
            <title>Update Protection against Adobe Acrobat and Adobe Reader JBIG2 Halftone Region Integer Overflow Vulnerability (APSB09-07)</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-16-Jun.html</link>
            <severity>3</severity>
            <description><![CDATA[A memory corruption vulnerability has been&nbsp;discovered in Adobe Reader and Acrobat. A remote attacker can exploit this vulnerability to execute arbitrary code on an affected system via a specially crafted PDF file. Portable Document Format (PDF) is an open file format created by Adobe Systems. It is used for representing two-dimensional documents in a device and resolution independent fixed-layout document format. Successful exploitation of this issue will cause the application to become non-responsive, and may allow execution of arbitrary code on an affected system.]]></description>
            <pubDate>Thu, 18 Jun 2009 03:43:27 PDT</pubDate>
          </item>

		  
          <item>
            <title>Update Protection against Adobe Acrobat and Adobe Reader JBIG2 Text Region Integer Overflow Vulnerability (APSB09-07)</title>
            <link>http://www.checkpoint.com/defense/advisories/public/2009/cpai-15-Juna.html</link>
            <severity>3</severity>
            <description><![CDATA[A memory corruption vulnerability has been&nbsp;discovered in Adobe Reader and Acrobat. A remote attacker can exploit this vulnerability to execute arbitrary code on an affected system via a specially crafted PDF file. Portable Document Format (PDF) is an open file format created by Adobe Systems. It is used for representing two-dimensional documents in a device and resolution independent fixed-layout document format. Successful exploitation of this issue will cause the application to become non-responsive, and may allow execution of arbitrary code on an affected system.]]></description>
            <pubDate>Tue, 16 Jun 2009 22:41:32 PDT</pubDate>
          </item>


        </channel>
      </rss>
