SANS @RISK
(1) HIGH: QuickTime Player Streaming Debug Error Logging Buffer Overflow
Category: Widely Deployed Software
Affected:
- QuickTime 7.6.6 (1671) for Windows
(2) HIGH: Mozilla Firefox Plugin Parameter Reference Remote Code Execution Vulnerability
Category: Widely Deployed Software
Affected:
- Mozilla Firefox prior to Firefox 3.6.8
(3) HIGH: Google Chrome Multiple Vulnerabilities
Category: Widely Deployed Software
Affected:
- Google Chrome prior to 5.0.375.125
10.31.15 HP OpenView Network Node Manager Unspecified Code Execution Issue
CVEs: CVE: CVE-2010-2703, CVE-2010-2704
Platform: Cross Platform
10.31.16 mlmmj (Mailing List Managing Made Joyful) Directory Traversal
CVEs: CVE: CVE-2009-4896
Platform: Cross Platform
10.31.17 Mozilla Firefox and SeaMonkey Plugin Parameters Buffer Overflow
CVEs: CVE: CVE-2010-1214
Platform: Cross Platform
10.31.18 RSA Federated Identity Manager URI Redirection Issue
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.19 MapServer Buffer Overflow and Unspecified Security Vulnerabilities
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.20 Mozilla Foundation Security Advisory (MFSA 2010 34 - MFSA 2010 48)
CVEs: CVE: CVE-2010-0654, CVE-2010-1205, CVE-2010-1207,CVE-2010-1210, CVE-2010-1211, CVE-2010-1212, CVE-2010-1213,CVE-2010-1215, CVE-2010-2751, CVE-2010-2752, CVE-2010-2753,CVE-2010-2754
Platform: Cross Platform
10.31.21 Qt "QTextEngine::LayoutData::reallocate()" Memory Corruption Issue
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.22 Pidgin "X-Status" Message Denial of Service Issue
CVEs: CVE: CVE-2010-2528
Platform: Cross Platform
10.31.23 Apple Safari Personal Address Book AutoFill Information Disclosure Weakness
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.24 EllisLab CodeIgniter "Upload.php" Arbitrary File Upload Issue
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.25 Git "gitdir" Remote Buffer Overflow
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.26 BRLTTY Runtime Library Search Path Local Privilege Escalation Issue
CVEs: CVE: CVE-2008-3279
Platform: Cross Platform
10.31.27 Corel WordPerfect Office X5 ".wpd" File Processing Remote Buffer Overflow Issue
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.28 NuralStorm Webmail Multiple Security Issues
CVEs: CVE: Not Available
Platform: Cross Platform
10.31.29 HP Insight Orchestration Unspecified Security Bypass Issue
CVEs: CVE: CVE-2010-1965
Platform: Cross Platform
10.31.30 t-prot "--max-lines" Option Denial of Service
CVEs: CVE: CVE-2009-4404
Platform: Cross Platform
10.31.31 XWork "ParameterInterceptor" Class OGNL Security Bypass
CVEs: CVE: CVE-2010-1870
Platform: Cross Platform
