The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a vigilance database and tools to fix them.

Computer vulnerabilities of BlueCoat Content Analysis System

OpenSSL: out-of-bounds memory reading via X.509 IPAddressFamily
An attacker can force a read at an invalid address via X.509 IPAddressFamily of OpenSSL, in order to trigger a denial of service, or to obtain sensitive information...
2011879, 2013026, 2014367, bulletinapr2018, CERTFR-2019-AVI-242, cpuapr2018, cpuapr2019, cpujan2018, cpujan2019, cpujul2018, cpujul2019, cpuoct2018, CVE-2017-3735, DSA-4017-1, DSA-4018-1, FEDORA-2017-4cf72e2c11, FEDORA-2017-512a6c5aae, FEDORA-2017-55a3247cfd, FEDORA-2017-7f30914972, FEDORA-2017-dbec196dd8, FreeBSD-SA-17:11.openssl, HT208331, HT208394, ibm10715641, ibm10738249, JSA10851, JSA10990, K21462542, openSUSE-SU-2017:3192-1, openSUSE-SU-2018:0029-1, openSUSE-SU-2018:0315-1, RHSA-2018:3221-01, SA157, SB10211, SUSE-SU-2017:2968-1, SUSE-SU-2017:2981-1, SUSE-SU-2018:0112-1, SUSE-SU-2019:14246-1, TNS-2017-15, USN-3475-1, VIGILANCE-VUL-23636
Apache httpd: information disclosure via mod_auth_digest
An attacker can bypass access restrictions to data via mod_auth_digest of Apache httpd, in order to obtain sensitive information...
APPLE-SA-2017-09-25-1, bulletinjul2017, cpuoct2017, CVE-2017-9788, DLA-1028-1, DSA-3913-1, HT208144, HT208221, JSA10838, openSUSE-SU-2017:2016-1, RHSA-2017:2478-01, RHSA-2017:2479-01, RHSA-2017:2483-01, RHSA-2017:3113-01, RHSA-2017:3114-01, RHSA-2017:3193-01, RHSA-2017:3194-01, RHSA-2017:3195-01, RHSA-2017:3239-01, RHSA-2017:3240-01, SYMSA1457, USN-3370-1, USN-3370-2, VIGILANCE-VUL-23249
nginx: information disclosure via Ranges
An attacker can bypass access restrictions to data via Ranges of nginx, in order to obtain sensitive information...
CERTFR-2017-AVI-211, CVE-2017-7529, DLA-1024-1, DSA-3908-1, FEDORA-2017-aecd25b8a9, FEDORA-2017-c27a947af1, openSUSE-SU-2017:2003-1, openSUSE-SU-2018:0813-1, openSUSE-SU-2018:0823-1, RHSA-2017:2538-01, SYMSA1760, Synology-SA-17:27, USN-3352-1, VIGILANCE-VUL-23215
Apache Tomcat: error page tampering
An attacker can trigger an HTTP error in Apache Tomcat, in order to corrupt the error page documents...
bulletinjul2017, cpuapr2018, cpuapr2019, cpujul2019, CVE-2017-5664, DLA-996-1, DSA-3891-1, DSA-3892-1, FEDORA-2017-63789c8c29, FEDORA-2017-e4638a345c, HPESBUX03828, JSA10838, KM03302206, openSUSE-SU-2017:3069-1, RHSA-2017:1801-01, RHSA-2017:1802-01, RHSA-2017:1809-01, RHSA-2017:2493-01, RHSA-2017:2494-01, RHSA-2017:2633-01, RHSA-2017:2635-01, RHSA-2017:2636-01, RHSA-2017:2637-01, RHSA-2017:2638-01, RHSA-2017:3080-01, RHSA-2017:3081-01, SA156, SUSE-SU-2017:3039-1, SUSE-SU-2017:3059-1, SUSE-SU-2017:3279-1, SUSE-SU-2018:1847-1, USN-3519-1, VIGILANCE-VUL-22907
Mozilla NSS: NULL pointer dereference via a SSL v2 packet
An attacker can force Mozilla NSS dereference a NULL pointer while processing an SSL v2 packet, in order to trigger a denial of service...
cpuoct2017, CVE-2017-7502, DLA-971-1, DSA-3872-1, RHSA-2017:1364-01, RHSA-2017:1365-03, SYMSA1409, USN-3336-1, USN-3372-1, VIGILANCE-VUL-22862
Linux kernel: denial of service via NFS RPC Reply
An attacker can generate a fatal error via NFS RPC Reply on the Linux kernel, in order to trigger a denial of service...
CERTFR-2017-AVI-162, CERTFR-2017-AVI-169, CERTFR-2018-AVI-228, CERTFR-2018-AVI-408, CVE-2017-7645, DLA-993-1, DLA-993-2, DSA-3886-1, DSA-3886-2, FEDORA-2017-0aa0f69e0c, FEDORA-2017-7462231059, openSUSE-SU-2017:1513-1, RHSA-2017:1615-01, RHSA-2017:1616-01, RHSA-2018:1319-01, SA148, SUSE-SU-2017:1360-1, USN-3312-1, USN-3312-2, USN-3314-1, USN-3361-1, USN-3754-1, VIGILANCE-VUL-22580
Mozilla NSS: two vulnerabilities
An attacker can use several vulnerabilities of Mozilla NSS...
bulletinapr2017, bulletinjan2019, CERTFR-2017-AVI-126, CERTFR-2017-AVI-134, cpujan2018, cpuoct2017, CVE-2017-5461, CVE-2017-5462, DLA-906-1, DLA-946-1, DSA-3831-1, DSA-3872-1, FEDORA-2017-31c64a0bbf, FEDORA-2017-82265ed89e, FEDORA-2017-87e23bcc34, FEDORA-2017-9042085060, MFSA-2017-10, MFSA-2017-11, MFSA-2017-12, MFSA-2017-13, openSUSE-SU-2017:1099-1, openSUSE-SU-2017:1196-1, openSUSE-SU-2017:1268-1, RHSA-2017:1100-01, RHSA-2017:1101-01, RHSA-2017:1102-01, RHSA-2017:1103-01, SA150, SSA:2017-112-01, SSA:2017-114-01, SUSE-SU-2017:1175-1, SUSE-SU-2017:1248-1, SUSE-SU-2017:1669-1, SUSE-SU-2017:2235-1, USN-3260-1, USN-3260-2, USN-3270-1, USN-3278-1, USN-3372-1, VIGILANCE-VUL-22505
Apache Tomcat: information disclosure via response exchanges
An attacker can send a burst of HTTP 1.1 request to Apache Tomcat, in order to get sensitive information...
bulletinapr2017, cpujul2017, cpujul2019, CVE-2017-5647, DLA-924-1, DLA-924-2, DSA-3842-1, DSA-3843-1, FEDORA-2017-5261ba4605, FEDORA-2017-d5aa7c77d6, NTAP-20180605-0001, NTAP-20180607-0001, NTAP-20180607-0002, NTAP-20180614-0001, openSUSE-SU-2017:1292-1, RHSA-2017:1801-01, RHSA-2017:1802-01, RHSA-2017:2493-01, RHSA-2017:2494-01, RHSA-2017:3080-01, RHSA-2017:3081-01, SA156, SB10199, SUSE-SU-2017:1229-1, SUSE-SU-2017:1382-1, SUSE-SU-2017:1632-1, SUSE-SU-2017:1660-1, USN-3519-1, VIGILANCE-VUL-22391
Blue Coat Content Analysis System: shell command execution via the administration Web interface
An authenticated attacker can use the administration Web console of Blue Coat Content Analysis System, in order to run arbitrary shell commands on the underlying operating system with the full privileges...
CVE-2016-9091, SA138, VIGILANCE-VUL-22320
Linux kernel: memory corruption via UDP MSG_PEEK
An attacker can generate a memory corruption via UDP on applications using the MSG_PEEK option on the Linux kernel, in order to trigger a denial of service, and possibly to run code...
CERTFR-2016-AVI-004, CERTFR-2016-AVI-073, CERTFR-2017-AVI-390, CERTFR-2019-AVI-358, CVE-2016-10229, DSA-3434-1, FG-IR-17-118, PAN-SA-2017-0018, SA148, SUSE-SU-2016:0168-1, SUSE-SU-2016:0585-1, SUSE-SU-2017:2920-1, VIGILANCE-VUL-22314
Our database contains other pages. You can request a free trial to read them.