Orange Business Services
Vigil@nce Vigil@nce Vigil@nce
we track for your security since 1999
 home presentation vulnerabilities documentation contact  
subscriber area subscriber area
free access free access
Vigil@nce team describes computer vulnerabilities impacting your systems, and offers solutions to correct them.
recent vulnerabilities recent vulnerabilities
tracked products tracked products
RSS feed RSS feed
vulnerability

vulnerability CVE-2009-3087 CVE-2009-3094 CVE-2009-3095

Several products: several vulnerabilities

Synthesis of the vulnerability

Several vulnerabilities were announced in numerous products.
Severity: 1/4.
Creation date: 04/09/2009.
Revisions dates: 11/09/2009, 26/10/2009.

Description of the vulnerability

Several vulnerabilities were announced in numerous products. Their technical details are unknown. Individual bulletins will be created when details will be published.

Apache mod_proxy_ftp is impacted by two vulnerabilities: VIGILANCE-VUL-8994 and VIGILANCE-VUL-9038. [severity:1/4; BID-36254, CVE-2009-3094, CVE-2009-3095, >]

EMC Legato NetWorker is impacted by three vulnerabilities. [severity:1/4; >]

F-PROT Antivirus is impacted by two vulnerabilities. [severity:1/4; >]

FreeBSD is impacted by two vulnerabilities. [severity:1/4; >]

FreeRADIUS is impacted by the VIGILANCE-VUL-9016 vulnerability. [severity:1/4; BID-36263, CVE-2009-3111, REJ-2009-4481, >]

HP Operations is impacted by two vulnerabilities. [severity:1/4; BID-36253, BID-36258, CVE-2009-3098, CVE-2009-3099, >]

HP OpenView Network Node Manager is impacted by four vulnerabilities. [severity:1/4; BID-36248, >]

Lotus Domino is impacted by six vulnerabilities. [severity:1/4; BID-36257, CVE-2009-3087, >]

Kaspersky Online Antivirus Scanner is impacted by two vulnerabilities. One vulnerability is related to kos-bin-winnt.jar containing the kosglue-7.0.26.0.dll DLL which can contain a Trojan Horse. [severity:1/4; BID-36243, >]

MySQL is impacted by two vulnerabilities. The first one is VIGILANCE-VUL-9380. [severity:1/4; BID-36242, BID-37640, CVE-2009-4484, >]

OpenOffice is impacted by three vulnerabilities. [severity:1/4; BID-36285, CVE-2009-3569, CVE-2009-3570, CVE-2009-3571, >]

OpenSSL is impacted by one vulnerability. [severity:1/4; >]

Oracle WebLogic is impacted by three vulnerabilities. [severity:1/4; >]

Oracle Application Server is impacted by five vulnerabilities. [severity:1/4; >]

PowerArchiver is impacted by one vulnerability. [severity:1/4; >]

SAP Crystal Reports is impacted by three vulnerabilities. [severity:1/4; BID-36267, CVE-2009-3344, CVE-2009-3345, CVE-2009-3346, >]

SAP NetWeaver is impacted by six vulnerabilities. [severity:1/4; BID-36252, >]

Samba is impacted by six vulnerabilities. [severity:1/4; BID-36250, >]

Sun Java System Directory Server is impacted by two vulnerabilities. [severity:1/4; BID-36286, >]

Sun Java System Web Proxy Server is impacted by one vulnerability. [severity:1/4; >]

Solaris is impacted by one vulnerability. [severity:1/4; >]

Sun Java System WebServer is impacted by one vulnerability. [severity:1/4; BID-36813, CVE-2009-3878, >]

Solaris is impacted by two vulnerabilities. [severity:1/4; BID-36818, BID-36819, >]

Complete Vigil@nce bulletin

Access to the complete Vigil@nce bulletin

Characteristics

Title: Several products: several vulnerabilities.
Keywords: -PROT Antivirus Application Crystal DLL Directory Domino Horse Java Legato Manager NetWeaver NetWorker Network Node Online OpenView Operations Proxy REJ-2009-4481 Reports Scanner Server Several System Trojan Web WebLogic WebServer kosglue-7 mod_proxy_ftp owerArchiver penOffice penSSL products reeBSD reeRADIUS several vulnerabilities ySQL.
Identifiers: BID-36242, BID-36243, BID-36248, BID-36250, BID-36252, BID-36253, BID-36254, BID-36257, BID-36258, BID-36263, BID-36267, BID-36285, BID-36286, BID-36813, BID-36818, BID-36819, BID-37640, CVE-2009-3087, CVE-2009-3094, CVE-2009-3095, CVE-2009-3098, CVE-2009-3099, CVE-2009-3111, CVE-2009-3344, CVE-2009-3345, CVE-2009-3346, CVE-2009-3569, CVE-2009-3570, CVE-2009-3571, CVE-2009-3878, CVE-2009-4484, REJ-2009-4481, VIGILANCE-VUL-9000.

Information sources

Publications and announces
Source example: List of vulnerabilities in VulnDisco Pack Professional 8.11

Supplements

Vulnerability : Apache mod_proxy_ftp

Apache mod_proxy_ftp is impacted by two vulnerabilities: VIGILANCE-VUL-8994 and VIGILANCE-VUL-9038.
Severity: 1/4.
Identifiers: BID-36254, CVE-2009-3094, CVE-2009-3095.

Vulnerability : EMC Legato NetWorker

EMC Legato NetWorker is impacted by three vulnerabilities.
Severity: 1/4.

Vulnerability : F-PROT Antivirus

F-PROT Antivirus is impacted by two vulnerabilities.
Severity: 1/4.

Vulnerability : FreeBSD

FreeBSD is impacted by two vulnerabilities.
Severity: 1/4.

Vulnerability : FreeRADIUS

FreeRADIUS is impacted by the VIGILANCE-VUL-9016 vulnerability.
Severity: 1/4.
Identifiers: BID-36263, CVE-2009-3111, REJ-2009-4481.
Publications and announces

Vulnerability : HP Operations

HP Operations is impacted by two vulnerabilities.
Severity: 1/4.
Identifiers: BID-36253, BID-36258, CVE-2009-3098, CVE-2009-3099.

Vulnerability : HP OpenView Network Node Manager

HP OpenView Network Node Manager is impacted by four vulnerabilities.
Severity: 1/4.
Identifiers: BID-36248.

Vulnerability : Lotus Domino

Lotus Domino is impacted by six vulnerabilities.
Severity: 1/4.
Identifiers: BID-36257, CVE-2009-3087.

Vulnerability : Kaspersky Online Antivirus Scanner

Kaspersky Online Antivirus Scanner is impacted by two vulnerabilities. One vulnerability is related to kos-bin-winnt.jar containing the kosglue-7.0.26.0.dll DLL which can contain a Trojan Horse.
Severity: 1/4.
Identifiers: BID-36243.
Publications and announces
Source example: Kaspersky Online Antivirus scanner bug

Vulnerability : MySQL

MySQL is impacted by two vulnerabilities. The first one is VIGILANCE-VUL-9380.
Severity: 1/4.
Identifiers: BID-36242, BID-37640, CVE-2009-4484.

Vulnerability : OpenOffice

OpenOffice is impacted by three vulnerabilities.
Severity: 1/4.
Identifiers: BID-36285, CVE-2009-3569, CVE-2009-3570, CVE-2009-3571.

Vulnerability : OpenSSL

OpenSSL is impacted by one vulnerability.
Severity: 1/4.

Vulnerability : Oracle WebLogic

Oracle WebLogic is impacted by three vulnerabilities.
Severity: 1/4.

Vulnerability : Oracle Application Server

Oracle Application Server is impacted by five vulnerabilities.
Severity: 1/4.

Vulnerability : PowerArchiver

PowerArchiver is impacted by one vulnerability.
Severity: 1/4.

Vulnerability : SAP Crystal Reports

SAP Crystal Reports is impacted by three vulnerabilities.
Severity: 1/4.
Identifiers: BID-36267, CVE-2009-3344, CVE-2009-3345, CVE-2009-3346.

Vulnerability : SAP NetWeaver

SAP NetWeaver is impacted by six vulnerabilities.
Severity: 1/4.
Identifiers: BID-36252.

Vulnerability : Samba

Samba is impacted by six vulnerabilities.
Severity: 1/4.
Identifiers: BID-36250.

Vulnerability : Sun Java System Directory Server

Sun Java System Directory Server is impacted by two vulnerabilities.
Severity: 1/4.
Identifiers: BID-36286.

Vulnerability : Sun Java System Web Proxy Server

Sun Java System Web Proxy Server is impacted by one vulnerability.
Severity: 1/4.

Vulnerability : Solaris

Solaris is impacted by one vulnerability.
Severity: 1/4.

Vulnerability : Sun Java System WebServer

Sun Java System WebServer is impacted by one vulnerability.
Severity: 1/4.
Identifiers: BID-36813, CVE-2009-3878.
Publications and announces
Source example: VulnDisco Pack Professional 8.12

Vulnerability : Solaris

Solaris is impacted by two vulnerabilities.
Severity: 1/4.
Identifiers: BID-36818, BID-36819.
Publications and announces
Source example: VulnDisco Pack Professional 8.12

Computer vulnerabilities tracking service

The Vigil@nce computer vulnerability tracking service alerts your teams of vulnerabilities or threats impacting your information system.
The Vigil@nce vulnerability database contains several thousand vulnerabilities.
This bulletin is published by the Vigil@nce team, which tracks computer vulnerabilities impacting systems and applications.
Security vulnerability alerts



















France Télécom Copyright 1999-2010 Vigil@nce. Vigil@nce is a service from Orange Business Services. Site map. Legal notice. Version française