Home » Vulnerabilities » May 04 2011 Security Bulletin
 

Login Form




May 04 2011 Security Bulletin
Written by Oana Cornea   
Wednesday, 04 May 2011 10:18

libTIFF ThunderCode Decoder Heap Buffer Overflow Vulnerability
libTIFF is prone to a heap-based buffer-overflow vulnerability because the library fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer. An attacker can exploit this issue to execute arbitrary code within the context of an application using the affected library. Failed exploit attempts will result in a denial-of-service condition.

 

VMware ESX Server / ESXi Unspecified Socket Exhaustion DoS
Location: Remote / Network Access; Attack Type: Denial of Service; Impact: Loss of Availability. Currently, there are no known workarounds or upgrades to correct this issue. However, VMWare has released a patch to address this vulnerability.