Warning: fopen(/home/rachdian/public_html/2008/old/cache/rss20.xml) [function.fopen]: failed to open stream: No such file or directory in /home/rachdian/public_html/2008/old/includes/feedcreator.class.php on line 685

Error creating feed file, please check write permissions.
Saturday, September 04 2010
Home
Photos Gallery
Guest Book
Links
Hot Info
Index
Latest Info
Jobs Info
IT/IS - Security
Education
Photo Stories (Photoblog)
Travelling Stories
About Me & Site
For Geek Family Only
About Me...
Diary
Contact Me
The Page Rank
Home arrow Index arrow IT/IS Security & Vulnerability arrow Vulnerabilities affecting hosts using Microsoft Windows Active Directory and Microsoft Excel
Vulnerabilities affecting hosts using Microsoft Windows Active Directory and Microsoft Excel Print
User Rating: / 0
PoorBest 
Written by snort.org   
Friday, 13 July 2007
VRT Certified Rules Update 2007-07-12

The Sourcefire VRT is aware of vulnerabilities affecting hosts using Microsoft Windows Active Directory and Microsoft Excel.



Details:
Microsoft Security Bulletin MS07-039:
A heap overflow vulnerability exists in the way Microsoft Windows Active Directory handles LDAP messages. The vulnerability is due to a lack of convertible attributes validation in client LDAP request messages. Remote unauthenticated attackers can exploit this vulnerability to inject and execute arbitrary code on the affected target with System level privileges.

A rule to detect attacks targeting this vulnerability is included in this release and is identified as SID 12069.


Microsoft Security Bulletin MS07-036:
A memory corruption vulnerability exists in the way Microsoft Excel processes files. The vulnerability is a result of insufficient data validation while processing the Version field in a BOF record. A remote attacker can exploit this vulnerability by enticing the target user to open a crafted Excel file, potentially causing arbitrary code to be injected and executed in the security context of the current user.

A rule to detect attacks targeting this vulnerability is included in this release and is identified as SID 12070.


Advisory:
A detailed advisory as well as a complete list of modified and deleted rules is available at:

 http://www.snort.org/vrt/advisories/vrt-rules-2007-07-12.html

Download Rules:
These rules will be available to subscribers only until Saturday, August 11, 2007. Subscribers can download the rules at:

 http://www.snort.org/pub-bin/downloads.cgi

Comments

Write Comment
Name:Guest
Title:
BBCode:Web AddressEmail AddressBold TextItalic TextUnderlined TextQuoteCodeOpen ListList ItemClose List
Comment:



This image contains a scrambled text, it is using a combination of colors, font size, background, angle in order to disallow computer to automate reading. You will have to reproduce it to post on my homepage Enter what you see: *
tips: hit Reload page before writing a text if you have difficulty reading characters in image



© Copyright 2005, Adhi Rachdian.
URL: http://adhi.rachdian.com, http://rachdian.com, http://adhi.pacific.net.id, http://rachdian.pacific.net.id or http://blog.rachdian.com