Dfi Dpi 14 18
Total Page:16
File Type:pdf, Size:1020Kb
2008/12 003 Share technique experience with security professionals DFI DPI 14 18 23 DFI DPI 30 37 52 2008/12 003 4 100089 (010)6843 8880-8668 (010)6872 8708 www.nsfocus.com [email protected] CONTENTS 2-13 NSFOCUS 2008 11 2 (Alert2008-08) 5 (Alert2008-09) 12 14-29 14 18 DFI DPI 23 30-47 30 37 ring3 Windows 43 48-66 3GPP LTE 48 52 56 61 67-76 67 70 72 1 NSFOCUS 2008 11 NSFOCUS <[email protected]> http://www.nsfocus.net/index.php?act=sec_bug&do=top_ten 1. 2008-11-12 Microsoft Windows SMB (MS08-068) UNC NSFOCUS ID: 12608 http://www.nsfocus.net/vulndb/12608 2. 2008-11-12 Microsoft XML Core Services (MS08-069) Windows NSFOCUS ID: 12605 SMB http://www.nsfocus.net/vulndb/12605 Web Microsoft (SMB) 3. 2008-11-12 Linux Kernel NTLM Microsoft XML Core Services MSXML ndiswrapper JScript VBScript Visual Studio NSFOCUS ID: 12604 6.0 XML http://www.nsfocus.net/vulndb/12604 XML 1.0 Microsoft XML Core Services XML Linux Kernel Linux HTML 10 1000 IFRAME Linux Kernel ndiswrapper JavaScript 50 100 2 ESSID 5. 2008-11-13 Sun Solaris DHCP WebLogic Apache NSFOCUS ID: 12613 http://www.nsfocus.net/vulndb/12613 Solaris Sun 4. 2008-11-13 Trend Micro Apache ServerProtect UNIX Solaris DHCP in.dhcpd(1M) DHCP 7. 2008-11-05 Adobe Acrobat Rea- NSFOCUS ID: 12615 DHCP der 8.1.3 http://www.nsfocus.net/vulndb/12615 root NSFOCUS ID: 12572 http://www.nsfocus.net/vulndb/12572 Trend ServerProtect Solaris DHCP Adobe Acrobat Reader ServerProtect RPC PDF RPC 6. 2008-11-03 Oracle WebLogic Adobe Acrobat Reader Apache RPC Type 1 NSFOCUS ID: 12569 http://www.nsfocus.net/vulndb/12569 PDF JavaScript WebLogic Collab ServerProtect Server/Express/Integration 3 PDF 9. 2008-11-07 VLC 49 inv- alidCredentials NSFOCUS ID: 12587 http://www.nsfocus.net/vulndb/12587 PDF LDAP 8. 2008-11-17 Discuz! $_DCACHE VLC Media Player NSFOCUS ID: 12623 VLC cue http://www.nsfocus.net/vulndb/12623 VLC rt Discuz! Web cue rt Discuz! wap\index.php Chi- nese Convert post 10. 2008-11-17 Microsoft LDAP NULL $_DCACHE NSFOCUS ID: 12625 SQL http://www.nsfocus.net/vulndb/12625 Microsoft Windows cue rt Microsoft LDAP 4 (Alert2008-08) Nsfocus [email protected] http://www.nsfocus.com 10 2008-10-15 Excel 2000 Service Pack 3 10 11 Office CDO cdo: Content- Excel 2002 Service Pack 3 20 Disposition: Attachment Excel 2003 Service Pack 2 10 Web Excel 2003 Service Pack 3 Excel 2007 Excel 2007 Service Pack 1 Windows OneNote Microsoft Office Excel Viewer 2003 Microsoft Office Excel Viewer 2003 Ser- vice Pack 3 Windows Microsoft Office Excel Viewer 10 11 "Windows update" Word Excel PowerPoint 2007 MS08-056 MS08-066 Microsoft Office 20 Win- http://www. Word Excel PowerPoint 2007 dows Office Internet Ex- microsoft.com/downloads/details.aspx? Service Pack 1 Microsoft Office plorer Host Integration Server familyid=b1aee2d5-bfa0-40e3-91b6-98bf6 5524e8c Microsoft Office SharePoint Server 2007 1. MS08-056 - Microsoft Office (957699) 2. MS08-057 - Microsoft Excel Microsoft Office SharePoint Server 2007 (956416) Service Pack 1 Microsoft Office XP Service Pack 3 Microsoft Office SharePoint Server 2007 5 x64 Edition 2003 Internet Explorer Microsoft Office SharePoint Server 2007 VBE6.DLL ACL Internet Explorer x64 Edition Service Pack 1 Everyone Microsoft Office 2004 for Mac Microsoft Office 2008 for Mac Open XML File Format Converter for Mac Windows Internet Intranet "Windows update" ActiveX Excel VBA VBA Internet Explorer Internet Excel http://www.microsoft.com/china/technet/ Intranet security/bulletin/MS08-057.mspx Excel 3. MS08-058 - Internet Explorer Microsoft Excel (956390) http://www.microsoft.com/china/ Excel Microsoft Internet Explorer 5.01 Service technet/security/bulletin/MS08-058.mspx Pack 4 4. MS08-059-Host Integration Server Excel Microsoft Internet Explorer 6 Service RPC Pack 1 (956695) Microsoft Internet Explorer 6 Windows Internet Explorer 7 Microsoft Host Integration Server 2000 MOICE Service Pack 2 Microsoft Office Internet Explorer Microsoft Host Integration Server 2000 Office 6 Microsoft Host Integration Server 2004 Host Integration Server 2004 TCP 389 636 Host Integration Server 2004 Host Inte- Microsoft Host Integration Server 2004 gration Server 2006 SNA RPC Service Pack 1 Windows Microsoft Host Integration Server 2004 Windows update Windows Microsoft Host Integration Server 2004 "Windows update" Service Pack 1 http://www.microsoft.com/downloads/ Microsoft Host Integration Server 2006 details.aspx?familyid=8ed7bb9a-4b26- 32 http://www.microsoft.com/china/techn- 49d7-8c14-60226d2bc20d Microsoft Host Integration Server 2006 et/security/bulletin/MS08-059.mspx 6. MS08-061 - Windows x64 (954211) 5. MS08-060 - (957280) Host Integration Server SNA Microsoft Windows 2000 Service Pack 4 RPC Microsoft Windows 2000 Server Ser- Windows XP Service Pack 2 RPC vice Pack 4 Windows XP Service Pack 3 Windows XP Professional x64 Edition Windows XP Professional x64 Edition Microsoft Windows 2000 Server Service Pack 2 LDAP LDAPS Windows Server 2003 Service Pack 1 Host Integration Server 2004 Windows Server 2003 Service Pack 2 Host Integration Server 2006 HIS/ Windows Server 2003 x64 Edition Win- SNA dows Server 2003 x64 Edition Service Pack 2 7 Windows Server 2003 SP1 Windows Windows Server 2003 x64 Edition Win- Itanium Windows Server 2003 Windows update dows Server 2003 x64 Edition Service Pa- SP2 Itanium ck 2 Windows Vista Windows Vista Service Windows Server 2003 SP1 Pack 1 http://www.microsoft.com/china/ Itanium Windows Server 2003 Windows Vista x64 Edition Windows technet/security/bulletin/MS08-061.mspx SP2 Itanium Vista x64 Edition Service Pack 1 Windows Vista Windows Vista Service 7. MS08-062 - Windows Internet Windows Server 2008 32 Pack 1 Windows Server 2008 x64 (953155) Windows Vista x64 Edition Windows Vista x64 Edition Service Pack 1 Windows Server 2008 Itanium Microsoft Windows 2000 Service Pack 4 Windows Server 2008 32 Windows XP Service Pack 2 Windows Server 2008 x64 Windows XP Service Pack 3 Windows Windows XP Professional x64 Edition Windows Server 2008 Itanium Windows XP Professional x64 Edition Microsoft Windows 2000 Service Pack 4 Windows XP Service Pack 2 IIS Windows Windows XP Service Pack 3 Microsoft Internet IPP Windows XP Professional x64 Edition Windows XP Professional x64 Edition IIS Service Pack 2 Windows Server 2003 Service Pack 1 Windows Server 2003 Service Pack 2 IPP 8 IIS 2.1 Windows Vista x64 Edition Windows http://www.microsoft.com/china/technet/ Vista x64 Edition Service Pack 1 security/bulletin/MS08-063.mspx Windows Server 2008 32 9. MS08-064 - http://www.microsoft.com/china/technet/ Windows Server 2008 x64 (956841) security/bulletin/MS08-062.mspx 8. MS08-063 - SMB Windows Server 2008 Itanium Windows XP Service Pack 2 (957095) Windows XP Service Pack 3 Windows XP Professional x64 Edition Microsoft Windows 2000 Service Pack 4 Microsoft SMB Windows XP Professional x64 Edition Ser- Windows XP Service Pack 2 vice Pack 2 Windows XP Service Pack 3 Windows Server 2003 Service Pack 1 Windows XP Professional x64 Edition Windows Server 2003 Service Pack 2 Windows XP Professional x64 Edition Servi- Windows Server 2003 x64 Edition Win- ce Pack 2 dows Server 2003 x64 Edition Service Pack 2 Windows Server 2003 Service Pack 1 Windows Server 2003 SP1 Windows Server 2003 Service Pack 2 Itanium Windows Server 2003 Windows Server 2003 x64 Edition Win- SP2 Itanium dows Server 2003 x64 Edition Service Pack 2 Windows Vista Windows Vista Service Windows Server 2003 SP1 Pack 1 Itanium Windows Server 2003 Windows Windows Vista x64 Edition Windows SP2 Itanium Windows update Vista x64 Edition Service Pack 1 Windows Vista Windows Vista Service Windows Server 2008 32 Pack 1 Windows Server 2008 x64 9 10. MS08-065 - details.aspx?familyid=899e2728-2433- (951071) Windows Server 2008 Itanium 4ccb-a195-05b5d65e5469 11. MS08-066 - Microsoft Microsoft Windows 2000 Service Pack 4 (956803) VADs RPC Windows XP Service Pack 2 Windows XP Service Pack 3 RPC Windows XP Professional x64 Edition Windows XP Professional x64 Edition Ser- vice Pack 2 Windows Server 2003 Service Pack 1 1024 Windows Server 2003 Service Pack 2 Windows Server 2003 x64 Edition Win- RPC dows Server 2003 x64 Edition Service Pack 2 Windows Server 2003 SP1 Itanium Windows Server 2003 Windows SP2 Itanium Windows update Windows Windows update Windows afd.sys http://www.microsoft.com/china/technet/ security/bulletin/MS08-064.mspx http://www.microsoft.com/downloads/ 10 8. http://www.microsoft.com/china/technet/ nerabilities/display.php?id=746 security/bulletin/MS08-063.mspx 25. http://labs.idefense.com/intelligence/vul- 9. http://www.microsoft.com/china/technet/ nerabilities/display.php?id=745 security/bulletin/MS08-064.mspx 26. http://www.zerodayinitiative.com/adviso- 10. http://www.microsoft.com/china/technet/ ries/ZDI-08-069/ http://www.microsoft.com/china/technet/ security/bulletin/MS08-065.mspx security/bulletin/MS08-066.mspx 11. http://www.microsoft.com/china/technet/ security/bulletin/MS08-066.mspx 12. http://secunia.com/advisories/32242/ 1. http://www.microsoft.com/china/technet/ 13. http://secunia.com/advisories/32233/ security/bulletin/MS08-056.mspx 14. http://secunia.com/advisories/32211/ 2. http://www.microsoft.com/china/technet/ 15. http://secunia.com/advisories/32261/ security/bulletin/MS08-057.mspx 16. http://secunia.com/advisories/32247/ 3. http://www.microsoft.com/china/technet/ 17. http://secunia.com/advisories/32248/ security/bulletin/MS08-058.mspx 18. http://secunia.com/advisories/32249/ 4. http://www.microsoft.com/china/technet/ 19. http://secunia.com/advisories/32251/ security/bulletin/MS08-059.mspx 20. http://secunia.com/advisories/32260/ 5. http://www.microsoft.com/china/technet/ 21. http://secunia.com/advisories/32138/ security/bulletin/MS08-060.mspx 22. http://dvlabs.tippingpoint.com/advisory/ 6. http://www.microsoft.com/china/technet/ TPTI-08-07 security/bulletin/MS08-061.mspx 23.