This application requires Javascript for optimal performance.

Intrusion Prevention Release Detail

3.192 ( Released: May 22, 2012 22:57:00 )

New ( 3 )
  • BEA.WebLogic.Redirect.Request.Plug-in.Buffer.Overflow (high)
  • MS.Windows.SMB1.Request.DoS (medium)
  • MS.Windows.SMB1.Request.Parsing.DoS (medium)
Enhanced ( 1 )
  • MS.IE.SelectAll.Remote.Code.Execution (critical)
Attribute Changed ( 43 )
  • Adobe.Flash.Player.SWF.DeclareFunction2.Remote.Code.Execution (Status updated to 'enable')
  • Apple.MacOS.X.mDNSResponder.Location.Overflow (Status updated to 'enable')
  • Apple.QuickTime.MPEG1.Genl.Atom.Code.Execution (Status updated to 'enable')
  • Apple.QuickTime.RLE.Bit.Depth.Code.Execution (Status updated to 'enable')
  • AskJeeves.Toolbar.Settings.Plugin.ActiveX.Control.Heap.Overflow (Status updated to 'enable')
  • AwingSoft.Web3D.Player.WindsPly.Ocx.SceneURL.Access (Status updated to 'enable')
  • BlackBerry.Application.Web.Loader.Load.ActiveX.Access (Status updated to 'enable')
  • CA.ETrust.PestPatrol.Ppctl.Dll.ActiveX.Access (Status updated to 'enable')
  • CGI.WebBBS.Remote.Command.Execution (Status updated to 'enable')
  • Cisco.IOS.NHRP.Buffer.Overflow (Status updated to 'enable')
  • Creative.Software.Autoupdate.ActiveX.Access (Status updated to 'enable')
  • D-Link.Mpeg4.VAPGDecoder.Url.ActiveX.Control.Access (Status updated to 'enable')
  • EasyHDR.FITS.Buffer.Overflow (Status updated to 'enable')
  • EasyMail.Objects.EMSMTP.DLL.ActiveX.Control.Access (Status updated to 'enable')
  • Electronic.Arts.SnoopyCtrl.NPSnpy.Dll.ActiveX.Access (Status updated to 'enable')
  • EMC.Captiva.PixTools.Distributed.Imaging.File.Creation (Status updated to 'enable')
  • Gateway.CWebLaunchCtl.DoWebLaunch.ActiveX.Control.Access (Status updated to 'enable')
  • HP.Info.Center.ActiveX.Remote.Command.Execution (Status updated to 'enable')
  • HP.LoadRunner.XUpload.MakeHttpRequest.ActiveX.Control.Access (Status updated to 'enable')
  • HP.Software.Update.Tool.ActiveX.Control.File.Overwrite (Status updated to 'enable')
  • HTTPDX.h_handlepeer.Function.Buffer.Overflow (Status updated to 'enable')
  • Husdawg.LLC.System.Requirements.Lab.Init.ActiveX.Control.Access (Status updated to 'enable')
  • Macrovision.FlexNet.DownloadManager.Arbitrary.File.Download (Status updated to 'enable')
  • McAfee.EPolicy.Orchestrator.SiteManager.ActiveX.Buffer.Overflow (Status updated to 'enable')
  • Minishare.HTTP.Server.Buffer.Overflow (Status updated to 'enable')
  • Mozilla.Firefox.ogg.Remote.Memory.Corruption (Status updated to 'enable')
  • MS.DotNet.Type.Checking.Bypass.Code.Execution (Status updated to 'enable')
  • MS.hxvz.dll.ActiveX.Control.Memory.Corruption (Status updated to 'enable')
  • MS.IE.Deleted.DOM.Object.Access.Memory.Corruption (Status updated to 'enable')
  • MS.IE.FirefoxURL.Protocol.Handler.Command.Injection (Status updated to 'enable')
  • MS.IE.Foxtlib.ActiveX.Object.Buffer.Overflow (Status updated to 'enable')
  • MS.Office.Web.Components.ActiveX.Control.Memory.Corruption (Status updated to 'enable')
  • MS.Office.Web.Components.Invalid.Reference (Status updated to 'enable')
  • MS.Remote.Desktop.Connection.ActiveX.Overflow (Status updated to 'enable')
  • MySpace.Uploader.Action.ActiveX.Control.Access (Status updated to 'enable')
  • MySQL.Password.Handler.Buffer.Overflow (Status updated to 'enable')
  • Oracle.TNS.command.Buffer.Overflow (Status updated to 'enable')
  • Orbit.Downloader.Buffer.Overflow (Status updated to 'enable')
  • Sony.ImageStation.SetLogging.ActiveX.Control.Buffer.Overflow (Status updated to 'enable')
  • SSReader.Pdg2.ActiveX.Control.Register.Method.Buffer.Overflow (Status updated to 'enable')
  • Symantec.Altiris.AeXNSConsoleUtilities.Dll.RunCmd.Method.Access (Status updated to 'enable')
  • Symantec.Altiris.Deployment.ActiveX.Downloadandinstall.Access (Status updated to 'enable')
  • Yahoo.Assistant.ActiveX.Control.Access (Status updated to 'enable')

3.191 ( Released: May 22, 2012 01:35:00 )

Enhanced ( 2 )
  • HP.Data.Protector.DtbClsLogin.Utf8cpy.Code.Execution (high)
  • HP.OpenView.NNM.Ovas.Buffer.Overflow (critical)
Renamed ( 3 )
  • ABB.Multiple.Products.RobNetScanHost.exe.Stack.Buffer.Overflow (Previous name: "ABB.Multiple.Products.RobNetScanHost.Stack.Buffer.Overflow")
  • OSSIM.Uniqueid.Parameter.Remote.Command.Execution (Previous name: "OSSIM.uniqueid.Parameter.Remote.Command.Execution")
  • Symantec.Norton.UPX.File.Heap.Overflow (Previous name: "Symantec.Norton.UPX.File.Heap.Overflow.Canvas")
Deprecated ( 1 )
  • MS.Windows.SMB1.Request.Parsing.DoS (medium)

3.190 ( Released: May 16, 2012 23:03:00 )

New ( 2 )
  • PHP5.Register.Variable.Ex.Function.Code.Execution (critical)
  • TCP.Bad.Flags
Enhanced ( 9 )
  • HTTP.Malicious.Request.Double.Slash (low)
  • IA.Webmail.Server.Stack.Overflow (critical)
  • MS.IE.Object.Handler.Memory.Corruption (critical)
  • MS.IIS.Escape.Command (high)
  • MS.Windows.MSCOMCTL.ActiveX.Control.Remote.Code.Execution (critical)
  • MS.Windows.SMB.Handlers.Remote.Buffer.Overflow (high)
  • Netop.Remote.Control.dws.File.Handling.Buffer.Overflow (medium)
  • Novell.ZENworks.PreBoot.Service.Request.Buffer.Overflow (critical)
  • SMTP.Command.Remote.Code.Execution (high)
Renamed ( 4 )
  • auth_overflow (Previous name: "MSSQL.Authentication.Overflow")
  • FTP.Protocol.Bounce.Attack (Previous name: "FTP.Bounce.Attack")
  • icmp_bad_checksum (Previous name: "ICMP.Bad.Checksum")
  • MS.SQL.Server.Empty.Password (Previous name: "MSSQL.Empty.Password")
Deprecated ( 1 )
  • RADIUS.Invalid.Message.Length
Attribute Changed ( 42 )
  • auth_overflow (Severity updated to 'low')
  • DNS.Invalid.Label.Length (Severity updated to 'info')
  • DNS.Unexpected.Qclass (Severity updated to 'info')
  • EMC.Data.Protection.Advisor.DoS (Default_action updated to 'drop')
  • FTP.Invalid.Cmd.Seq (Severity updated to 'info')
  • FTP.Protocol.Bounce.Attack (Severity updated to 'low')
  • FTP.Syntax.Error (Severity updated to 'info')
  • Hex.Workshop.HEX.File.Handling.Buffer.Overflow (Default_action updated to 'drop')
  • HP.Intelligent.Management.Center.dbman.Remote.Buffer.Overflow (Default_action updated to 'drop')
  • ICMP.Invalid.Packet.Size (Severity updated to 'info')
  • icmp_bad_checksum (Severity updated to 'info')
  • IMAP.TAG.Overflow (Status updated to 'disable')
  • IPv4.Bad.Option.Length (Severity updated to 'medium')
  • IPv4.Invalid.Datagram.Size (Severity updated to 'info')
  • IPv4.Not.A.Datagram (Severity updated to 'info')
  • Kmplayer.Srt.Buffer.Overflow (Default_action updated to 'drop')
  • LDAP.BaseDN.Overflow (Severity updated to 'medium')
  • LDAP.Delete.Empty.BaseDN (Severity updated to 'info')
  • LDAP.Empty.Attribute (Severity updated to 'info')
  • Libmodplug.S3m.Buffer.Overflow (Default_action updated to 'drop')
  • Live.Speed.Mpr.Processing.Buffer.Overflow (Default_action updated to 'drop')
  • MailEnable.SMTP.SPF.DoS (Default_action updated to 'drop')
  • Megacubo.URI.Handler.Remote.Command.Execution (Default_action updated to 'drop')
  • Mozilla.Firefox.rdf.File.Handling.Memory.Corruption (Default_action updated to 'drop')
  • MS.Anti.XSS.Library.Bypass.Information.Disclosure (Default_action updated to 'drop')
  • MS.IE.FTP.Client.Folder.Traversal (Default_action updated to 'drop')
  • MS.Office.Art.Missing.Group.Container (Default_action updated to 'drop')
  • MS.Office.Excel.Index.Parsing.Remote.Code.Execution (Default_action updated to 'drop')
  • MS.SQL.Server.Empty.Password (Severity updated to 'low')
  • MSSQL.Login.Brute.Force (Severity updated to 'low')
  • MultiMedia.Soft.Multiple.Components.PLS.File.Buffer.Overflow (Default_action updated to 'drop')
  • NBSS.Invalid.PDU.Size (Severity updated to 'info')
  • POP3.Invalid.Message.Number (Severity updated to 'info')
  • POP3.Invalid.State (Severity updated to 'info')
  • RPC.Fragment.Traffic (Severity updated to 'info')
  • SMTP.CMD.Overflow (Status updated to 'disable')
  • TCP.Bad.Option.Length (Severity updated to 'low')
  • TCP.Invalid.Packet.Size (Severity updated to 'info')
  • TCP.Multiple.Acked (Severity updated to 'info')
  • TCP.Nmap.Fingerprint (Severity updated to 'low')
  • TCP.TTL.Evasion (Status updated to 'disable')
  • TFN.2k.Icmp (Severity updated to 'medium')