Snort mailing list archives

Sourcefire VRT Certified Snort Rules Update 2010-08-10


From: Research <research () sourcefire com>
Date: Tue, 10 Aug 2010 15:22:13 -0400 (EDT)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Sourcefire VRT Certified Snort Rules Update

Synopsis:
The Sourcefire VRT is aware of multiple vulnerabilities affecting
Microsoft products.

Details:
Microsoft Security Advisory MS10-046:
Microsoft Windows Shell contains a vulnerability that may allow a
remote attacker to execute code on an affected system.

Previously released rules to detect attacks targeting these
vulnerabilities have been updated with the appropriate reference and
are included in this release. These are identified with GID 1, SIDs
17042 and 17043.

Microsoft Security Advisory MS10-050:
Microsoft Windows Movie Maker contains a programming error that may
allow a remote attacker to execute code on an affected system.

A rule to detect attacks targeting this issue is included in this
release and is identified with GID 3, SID 17135.

Microsoft Security Advisory MS10-051:
The Microsoft MSXML2 ActiveX control contains a programming error that
may allow a remote attacker to execute code on an affected system.

A rule to detect attacks targeting this issue is included in this
release and is identified with GID 3, SID 17133.

Microsoft Security Advisory MS10-052:
Microsoft Windows Media Player contains a programming error that may
allow a remote attacker to execute code on an affected system.

A rule to detect attacks targeting this issue is included in this
release and is identified with GID 3, SID 17117.

Microsoft Security Advisory MS10-053:
Microsoft Internet Explorer contains a programming error that may allow
a remote attacker to execute code on an affected system.

A rule to detect attacks targeting this issue is included in this
release and is identified with GID 3, SID 17115.

Microsoft Security Advisory MS10-054:
The Microsoft implementation of SMB contains programming errors that
may allow a remote attacker to execute code on an affected system.

Rules to detect attacks targeting these errors are included in this
release and are identified with GID 3, SIDs 17125 through 17127.

Additionally, a previously released rule will also detect attacks
targeting these issues and is identified with GID 3, SID 16577.

Microsoft Security Advisory MS10-055:
Microsoft Windows Media Player contains a programming error that may
allow a remote attacker to execute code on an affected system.

A rule to detect attacks targeting this issue is included in this
release and is identified with GID 3, SID 17128.

Microsoft Security Advisory MS10-056:
Microsoft Office Word contains programming errors that may allow a
remote attacker to execute code on an affected system.

Rules to detect attacks targeting these errors are included in this
release and are identified with GID 3, SIDs 17119 through 17124.

Microsoft Security Advisory MS10-057:
Microsoft Office Excel contains programming errors that may allow a
remote attacker to execute code on an affected system.

A rule to detect attacks targeting these issues is included in this
release and is identified with GID 3, SID 17134.

Microsoft Security Advisory MS10-060:
Microsoft Silverlight contains a programming error that may allow a
remote attacker to execute code on an affected system.

Rules to detect attacks targeting these errors are included in this
release and are identified with GID 3, SIDs 17113 and 17114.

Microsoft Security Advisory MS10-061:
Microsoft .NET contains a programming error that may allow a remote
attacker to execute code on an affected system.

A rule to detect attacks targeting this issue is included in this
release and is identified with GID 3, SID 17115.

For a complete list of new and modified rules please see:

http://www.snort.org/vrt/docs/ruleset_changelogs/changes-2010-08-10.html
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.6 (GNU/Linux)

iD8DBQFMYablQcQOxItLLaMRAoHhAJ43ijOeViI/Jw+UsbgICoVtnuVXZQCgl6mb
erKqS3gF6UpxMNiiGTIzCxo=
=RWYd
-----END PGP SIGNATURE-----


------------------------------------------------------------------------------
This SF.net email is sponsored by 

Make an app they can't live without
Enter the BlackBerry Developer Challenge
http://p.sf.net/sfu/RIM-dev2dev 
_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists sourceforge net
https://lists.sourceforge.net/lists/listinfo/snort-sigs


Current thread: