Skip Navigation

  • Home
  • Contact us
  • FAQ
  • Glossary
  • Public key
  • Sitemap
  • Cymraeg
  • What's new
CPNI - Centre for the Protection of National Infastructure

Advanced search

  • About CPNI
  • The threats
  • Security planning
  • Methods of attack
  • Protecting your assets
  • Products and services
    • CSIRTUK advisories
      • Advisories archive
    • General protective security publications
    • InfoSec briefings
    • InfoSec technical notes
    • InfoSec vulnerability disclosures
    • Good practice guidelines
    • Viewpoints
    • Information exchanges
    • Risk Management Delivery Group
  • Research
Home > Products and services > CSIRTUK advisories > Advisories archive > July 2009

July 2009

July 2009

- 3875 - Security updates available for Adobe Flash Player

Critical vulnerabilities have been identified in the current versions of Adobe Flash Player (v9.0.159.0 and v10.0.22.87) for Windows, Macintosh and Linux operating systems. These vulnerabilities could cause the application to crash and could potentially allow an attacker to take control of the affected system.

- 3872 - Cisco Security Advisory: IOS Border Gateway Vulnerability

Advisory concerning vulnerabilities on Cisco devices running IOS Software with support for four-octet AS number space.

- 3871 - Security update available for Shockwave Player

Adobe Shockwave Player 11.5.0.600 and earlier versions on Windows leverages a vulnerable version of the Microsoft Active Template Library (ATL) described in Microsoft Security Advisory (973882). This vulnerability could allow an attacker who successfully exploits the vulnerability to take control of the affected system. Adobe has provided a solution for the reported vulnerability. It is recommended that users update their installations using the instructions provided below.

- 3870 - Cisco Security Advisory: Active Template Library (ATL) Vulnerability

Advisory concerning certain Cisco products that use Microsoft Active Template Libraries (ATL) and headers that are vulnerable to remote code execution

- 3869 - Multiple Vulnerabilities in Cisco Wireless LAN Controllers

Multiple vulnerabilities exist in the Cisco Wireless LAN Controller (WLC) platforms. This security advisory outlines the details of the vulnerabilities.

- 3868 - ISC BIND 9 vulnerable to denial of service via dynamic update request

ISC BIND 9 contains a vulnerability that may allow a remote, unauthenticated attacker to create a denial-of-service condition.

- 3867 - Microsoft Windows, Internet Explorer, and Active Template Library (ATL) Vulnerabilities

Microsoft has released out-of-band updates to address critical vulnerabilities in Microsoft Internet Explorer running on most supported versions of Windows. The updates also help mitigate attacks against ActiveX controls developed with vulnerable versions of the Microsoft Active Template Library (ATL).

- 3863 - Adobe Flash Player vulnerability

Adobe Flash contains a vulnerability that may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system.

- 3860 - Update to Firefox 3.5

It has been identified that Firefox 3.5 is vulnerable to a code execution vulnerability. This advisory provides information concerning an update to the product.

- 3859 - Microsoft July 09 Updates for Multiple Vulnerabilities

Details of Microsoft security updates to adddress various vulnerabilities.

- 3857 - Vulnerability in Microsoft Video ActiveX Control Could Allow Remote Code Execution

Microsoft is investigating a privately reported vulnerability in Microsoft Video ActiveX Control. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. When using Internet Explorer, code execution is remote and may not require any user intervention.
  • Accessibility |
  • Terms and conditions |
  • Privacy statement |
  • Data protection act |
  • Freedom of information |