TippingPoint Digital Vaccine Laboratories

Published Advisories

The following is a list of all publicly disclosed vulnerabilities discovered by TippingPoint DVLabs researchers. While the affected vendor is working on a patch for these vulnerabilities, TippingPoint customers are protected from exploitation by IPS filters delivered ahead of public disclosure. TippingPoint customers are additionally protected against 0day vulnerabilities discovered by ZDI researchers. A list of published advisories discovered through the Zero Day Initiative extended research network is available from:

2008

CA ETrust Secure Content Manager Gateway FTP Listing Display Stack Overflow Vulnerability
Severity: High
TPTI-08-05
Published On: 2008-06-04
Microsoft Office Jet Database Engine Column Parsing Stack Overflow Vulnerability
Severity: High
TPTI-08-04
Published On: 2008-05-13
Microsoft Excel Rich Text Memory Corruption Vulnerability
Severity: High
TPTI-08-03
Published On: 2008-03-11
Cisco Call Manager CTLProvider Heap Overflow Vulnerability
Severity: High
TPTI-08-02
Published On: 2008-01-16
Apple Quicktime Image File IDSC Atom Memory Corruption Vulnerability
Severity: High
TPTI-08-01
Published On: 2008-01-15

2007

Adobe Flash Player JPG Processing Heap Overflow Vulnerability
Severity: High
TPTI-07-21
Published On: 2007-12-19
Apple Quicktime Movie Stack Overflow Vulnerability
Severity: High
TPTI-07-20
Published On: 2007-11-14
CA Multiple Product DBASVR RPC Server Pointer Arithmetic Vulnerablities
Severity: High
TPTI-07-19
Published On: 2007-10-16
EMC RepliStor Server Heap Overflow Vulnerability
Severity: High
TPTI-07-18
Published On: 2007-10-10
CA BrightStor Hierarchical Storage Manager SQL Injection Vulnerabilities
Severity: High
TPTI-07-17
Published On: 2007-10-02
CA BrightStor Hierarchical Storage Manager Buffer Overflow Vulnerabilities
Severity: High
TPTI-07-16
Published On: 2007-10-02
Automated Solutions Modbus TCP Slave ActiveX Control Heap Corruption Vulnerability
Severity: High
TPTI-07-15
Published On: 2007-09-17
HP OpenView Multiple Product Shared Trace Service Stack Overflow Vulnerabilities
Severity: High
TPTI-07-14
Published On: 2007-08-14
Borland Interbase ibserver.exe Create-Request Buffer Overflow Vulnerability
Severity: High
TPTI-07-13
Published On: 2007-07-24
Multiple Vendor Progress Server Heap Overflow Vulnerability
Severity: High
TPTI-07-12
Published On: 2007-07-12
Multiple Vendor SQL fbserver 'connect' Buffer Overflow Vulnerability
Severity: High
TPTI-07-11
Published On: 2007-06-11
Centennial Software XFERWAN Stack Overflow Vulnerability
Severity: High
TPTI-07-10
Published On: 2007-06-04
Macrovision FLEXnet boisweb.dll ActiveX Control Buffer Overflow Vulnerability
Severity: High
TPTI-07-09
Published On: 2007-06-04
Symantec Veritas Storage Foundation Scheduler Service Authentication Bypass Vulnerability
Severity: High
TPTI-07-08
Published On: 2007-06-04
Apple QuickTime STSD Parsing Heap Overflow Vulnerability
Severity: High
TPTI-07-07
Published On: 2007-05-10
Trillian Pro Rendezvous XMPP HTML Decoding Heap Corruption Vulnerability
Severity: High
TPTI-07-06
Published On: 2007-05-02
IBM Tivoli Provisioning Manager for OS Deployment Multiple Stack Overflow Vulnerabilities
Severity: High
TPTI-07-05
Published On: 2007-05-02
LANDesk Management Suite Alert Service Stack Overflow Vulnerability
Severity: High
TPTI-07-04
Published On: 2007-04-13
America Online SuperBuddy ActiveX Control Code Execution Vulnerability
Severity: High
TPTI-07-03
Published On: 2007-03-30
Trend Micro ServerProtect eng50.dll Stack Overflow Vulnerabilities
Severity: High
TPTI-07-02
Published On: 2007-02-20
Trend Micro ServerProtect StCommon.dll Stack Overflow Vulnerabilities
Severity: High
TPTI-07-01
Published On: 2007-02-20

2006

Citrix Presentation Server Client ActiveX Heap Overflow Vulnerability
Severity: High
TPTI-06-15
Published On: 2006-12-06
IBM Tivoli Storage Manager Mutiple Buffer Overflow Vulnerabilities
Severity: High
TPTI-06-14
Published On: 2006-12-04
HP OpenView Client Configuration Manager Device Code Execution Vulnerability
Severity: High
TPTI-06-13
Published On: 2006-11-08
CA BrightStor Discovery Service Mailslot Buffer Overflow Vulnerability
Severity: High
TPTI-06-12
Published On: 2006-10-05
CA Multiple Product DBASVR RPC Server Multiple Buffer Overflow Vulnerabilities
Severity: High
TPTI-06-11
Published On: 2006-10-05
Microsoft HLINK.DLL Hyperlink Object Library Buffer Overflow Vulnerability
Severity: High
TPTI-06-10
Published On: 2006-08-08
Microsoft DirectAnimation COM Object Memory Corruption Vulnerability
Severity: High
TPTI-06-09
Published On: 2006-08-08
Microsoft Internet Help COM Object Memory Corruption Vulnerability
Severity: High
TPTI-06-08
Published On: 2006-08-08
eIQnetworks Enterprise Security Analyzer Monitoring Agent Buffer Overflow Vulnerabilities
Severity: High
TPTI-06-07
Published On: 2006-08-08
CA eTrust AntiVirus WebScan Manifest Processing Buffer Overflow Vulnerability
Severity: High
TPTI-06-06
Published On: 2006-08-07
CA eTrust AntiVirus WebScan Automatic Update Code Execution Vulnerability
Severity: High
TPTI-06-05
Published On: 2006-08-07
eIQnetworks ESA Topology Server Buffer Overflow Vulnerability
Severity: High
TPTI-06-04
Published On: 2006-07-25
eIQnetworks ESA Syslog Server Buffer Overflow Vulnerabilities
Severity: High
TPTI-06-03
Published On: 2006-07-25
Microsoft SRV.SYS Mailslot Ring0 Memory Corruption Vulnerability
Severity: High
TPTI-06-02
Published On: 2006-07-11
Symantec VERITAS NetBackup vnetd Buffer Overflow Vulnerability
Severity: High
TPTI-06-01
Published On: 2006-03-27