IBM Internet Security Systems Internet Threat Information
The latest Internet Threats, brought to you by XForce - the IBM Internet Security Systems' world-renowned security research and development team.
-
Microsoft Windows Media Could Allow Remote Code Execution
A remote code execution vulnerability exists in the Windows multimedia library (winmm.dll) in the code responsible for handling of MIDI files.
-
Microsoft Vulnerability in ASP.NET Could Allow Denial of Service
Microsoft's ASP.NET is vulnerable to a denial of service, caused by insufficient randomization of hash data structures by the CaseInsensitiveHashProvider.getHashCode() function.
-
Multiple products telnetd buffer overflow
Multiple products are vulnerable to a buffer overflow, caused by improper bounds checking by the encrypt_keyid() function of telnetd.
-
Adobe Acrobat and Reader U3D code execution
Adobe Acrobat and Reader could allow a remote attacker to execute arbitrary code on the system, caused by a vulnerability when handling U3D data.
-
Vulnerability in TrueType Font Parsing Could Allow Elevation of Privilege
There is a vulnerability in a Microsoft Windows component, the Win32k TrueType font parsing engine that could allow elevation of privilege. This vulnerability is related to the Duqu malware.