Quantcast
Channel: Mobility
Viewing all articles
Browse latest Browse all 424

TippingPoint Threat Intelligence and Zero-Day Coverage – Week of December 19, 2016

$
0
0

This week, TippingPoint announced the release of several software releases to customers including Security Management System (SMS) v4.5.0; Intrusion Prevention System (IPS) v3.9.0; and TippingPoint Operating System (TOS) v4.2.0 for the Threat Protection System (TPS) family.

For the complete list of enhancements and changes, customers can refer to the product release notes located on the TippingPoint Threat Management Center (TMC) website at https://tmc.tippingpoint.com.

Adobe Security Bulletins

This week’s Digital Vaccine (DV) package includes coverage for the Adobe Security Bulletins released on or before December 13, 2016. The following table maps Digital Vaccine filters to the Adobe Security Bulletins. Filters designated with an asterisk (*) shipped prior to this week’s package, providing zero-day protection for our customers:

Bulletin # CVE # Digital Vaccine Filter # Status
APSB16-39 CVE-2016-7867 26190
APSB16-39 CVE-2016-7868 26192
APSB16-39 CVE-2016-7869 26193
APSB16-39 CVE-2016-7870 26195
APSB16-39 CVE-2016-7871 *25465
APSB16-39 CVE-2016-7872 *25449
APSB16-39 CVE-2016-7873 26202
APSB16-39 CVE-2016-7874 26203
APSB16-39 CVE-2016-7875 26205
APSB16-39 CVE-2016-7877 26196
APSB16-39 CVE-2016-7878 *25808
APSB16-39 CVE-2016-7879 *25810
APSB16-39 CVE-2016-7890 Insufficient information
APSB16-39 CVE-2016-7892 26264

Zero-Day Filters

There are 10 new zero-day filters covering four vendors in this week’s Digital Vaccine (DV) package. A number of existing filters in this week’s DV package were modified to update the filter description, update specific filter deployment recommendation, increase filter accuracy and/or optimize performance. You can browse the list of published advisories and upcoming advisories on the Zero Day Initiative website.

Adobe (5)

  • 26190: HTTP: Adobe Flash RegExp *MARK Memory Corruption Vulnerability (ZDI-16-622)
  • 26192: HTTP: Adobe Flash RegExp *THEN Memory Corruption Vulnerability (ZDI-16-625)
  • 26193: HTTP: Adobe Flash RegExp *PRUNE Memory Corruption Vulnerability (ZDI-16-624)
  • 26195: HTTP: Adobe Flash RegExp *SKIP Memory Corruption Vulnerability (ZDI-16-623)
  • 26205: HTTP: Adobe Flash BitmapData.applyFilter Integer Overflow Vulnerability (ZDI-16-621) 

Advantech (3)

  • 26191: ZDI-CAN-4068: Zero Day Initiative Vulnerability (Advantech WebAccess)
  • 26194: ZDI-CAN-4069, ZDI-CAN-4070, ZDI-CAN-4071, ZDI-CAN-4076: Zero Day Initiative Vulnerability (Advantech WebAccess)
  • 26206: ZDI-CAN-4072: Zero Day Initiative Vulnerability (Advantech WebAccess) 

Foxit (1)

  • 26187: ZDI-CAN-4249: Zero Day Initiative Vulnerability (Foxit Reader)

Hewlett Packard Enterprise (1)

  • 26188: ZDI-CAN-3933: Zero Day Initiative Vulnerability (HPE LoadRunner)

Updated Existing Zero-Day Filters

This section highlights specific filter(s) of interest in this week’s Digital Vaccine package that have been updated as a result of a vendor either issuing a patch for a vulnerability found via the Zero Day Initiative or a vulnerability that has been published by the Zero Day Initiative in accordance with its Disclosure Policy.

Four of the filters we have for this month’s Adobe bulletins have been updated to reflect the fact that the vulnerabilities have been patched:

  • 25449: HTTP: Adobe Flash swapDepths Use-After-Free Vulnerability (ZDI-16-626)
  • 25465: HTTP: Adobe Flash Worker Memory Corruption Vulnerability (ZDI-16-627)
  • 25808: HTTP: Adobe Flash MediaPlayerItemLoader Use-After-Free Vulnerability (ZDI-16-620)
  • 25810: HTTP: Adobe Flash NetConnection Use-After-Free Vulnerability (ZDI-16-619) 

Missed Last Week’s News?

Catch up on last week’s news in my weekly recap.


Viewing all articles
Browse latest Browse all 424

Trending Articles