VBI Vulnerabilities Portfolio March 31, 2014 <
[email protected]> http://www.vulnbroker.com/ CONFIDENTIAL VBI Vulnerabilities Portfolio Contents 1 Foreword 7 1.1 Document Formatting.................................... 7 1.2 Properties and Definitions.................................. 7 1.2.1 Vulnerability Properties............................ 7 1.2.2 Vulnerability Test Matrix........................... 9 1.2.3 Asset Deliverables............................... 9 1.2.4 Exploit Properties............................... 10 2 Adobe Systems Incorporated 13 2.1 Adobe Reader........................................ 13 VBI-14-004 Adobe Reader Client-side Remote Code Execution............. 13 2.2 Flash Player......................................... 15 VBI-12-033 Adobe Flash Player Client-side Remote Code Execution........... 15 2.3 Photoshop CS6....................................... 17 VBI-13-011 Adobe Photoshop CS6 Client-side Remote Code Execution......... 18 3 ASUS 20 3.1 BIOS Device Driver..................................... 20 VBI-13-015 ASUS BIOS Device Driver Local Privilege Escalation............ 21 4 AVAST Software a.s. 23 4.1 avast! Anti-Virus...................................... 23 VBI-13-005 avast! Local Information Disclosure..................... 23 March 31, 2014 CONFIDENTIAL Page 1 of 134 VBI Vulnerabilities Portfolio VBI-13-010 avast! Anti-Virus Local Privilege Escalation................. 25 5 Barracuda Networks, Inc. 27 5.1 Web Filter.......................................... 27 VBI-13-000 Barracuda Web Filter Remote Privileged