Название уязвимости


Download 86.08 Kb.
bet23/33
Sana18.06.2023
Hajmi86.08 Kb.
#1580491
1   ...   19   20   21   22   23   24   25   26   ...   33
Bog'liq
Рекомендации по устранению уязвимостей

cpe:/a:adobe:flash_player

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player NPAPI!DisplayVersion:18.0.0.375
HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayerPlugin!Version:18.0.0.375


BDU:2020-02960

Высокий

Целочисленное переполнение в функции EVP_EncodeUpdate в crypto/evp/encode.c в OpenSSL до 1.0.1t и 1.0.2 до 1.0.2h позволяет удалённым злоумышленникам вызвать отказ в обслуживании (повреждение кучи) через большое количество бинарных данных.

Обновить OpenSSL до версии 3.1.0




C:\Program Files (x86)\OpenOffice 4\program\ssleay32.dll (0.9.8.32)

BDU:2018-00894

Высокий

Уязвимость доступа к освобожденной памяти в Adobe Flash Player 29.0.0.113 и ниже.

Обновить Adobe Flash Player до версии 32.0.0.465

cpe:/a:adobe:flash_player

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player NPAPI!DisplayVersion:18.0.0.375
HKEY_LOCAL_MACHINE\SOFTWARE\Macromedia\FlashPlayerPlugin!Version:18.0.0.375


BDU:2023-00769

Высокий

Уязвимость удаленного выполнения кода Print 3D.

Заменить/обновить на другое приложение 3D Builder app

cpe:/a:microsoft:print_3d

module_name=Appx, module_id={aeef2bef-eba9-4a1d-a3d2-d0b52df76deb}, module_version=2.0.1.0, verb=Get, noun=AppxPackage, parameters=, select=name,version, value=AD2F1837.HPJumpStart1.4.464.0, value=Microsoft.NET.Native.Runtime.1.31.3.23901.0, value=Microsoft.NET.Native.Runtime.1.31.3.23901.0, value=Microsoft.NET.Native.Runtime.1.41.4.24201.0, value=Microsoft.NET.Native.Runtime.1.41.4.24201.0, value=Microsoft.XboxSpeechToTextOverlay1.21.13002.0, value=Microsoft.NET.Native.Runtime.2.12.1.26424.0, value=Microsoft.NET.Native.Runtime.2.12.1.26424.0, value=Microsoft.Xbox.TCUI1.24.10001.0, value=windows.immersivecontrolpanel10.0.2.1000, value=Fitbit.FitbitCoach4.4.133.0, value=Microsoft.Advertising.Xaml10.1811.1.0, value=Microsoft.Advertising.Xaml10.1811.1.0, value=Microsoft.UI.Xaml.2.02.1810.18004.0, value=Microsoft.UI.Xaml.2.02.1810.18004.0, value=Microsoft.NET.Native.Framework.1.71.7.27413.0, value=Microsoft.NET.Native.Framework.1.71.7.27413.0, value=Microsoft.Services.Store.Engagement10.0.19011.0, value=Microsoft.Services.Store.Engagement10.0.19011.0, value=Microsoft.NET.Native.Framework.1.31.3.24211.0, value=Microsoft.NET.Native.Framework.1.31.3.24211.0, value=Microsoft.UI.Xaml.2.12.11906.6001.0, value=Microsoft.UI.Xaml.2.12.11906.6001.0, value=Microsoft.Print3D3.3.791.0, value=Microsoft.NET.Native.Framework.2.12.1.27427.0, value=Microsoft.NET.Native.Framework.2.12.1.27427.0, value=Microsoft.Messaging4.1901.10241.1000, value=Windows.PrintDialog6.2.1.0, value=Microsoft.Advertising.Xaml10.1808.3.0, value=Microsoft.NET.Native.Framework.1.71.7.25531.0, value=Microsoft.NET.Native.Framework.1.71.7.25531.0, value=Microsoft.Services.Store.Engagement10.0.18101.0, value=Microsoft.Services.Store.Engagement10.0.18101.0, value=Microsoft.Wallet2.4.18324.0, value=Microsoft.UI.Xaml.2.22.21909.17002.0, value=Microsoft.UI.Xaml.2.22.21909.17002.0, value=Microsoft.VCLibs.140.0014.0.27810.0, value=48295AnnsSoft.TorrentRTFREEPlus1.1.11.0, value=Amazon.com.Amazon2018.519.2815.0, value=Microsoft.UI.Xaml.2.32.32002.13001.0, value=Microsoft.UI.Xaml.2.32.32002.13001.0, value=FINGERSOFT.HILLCLIMBRACING1.41.1.0, value=Microsoft.NET.Native.Runtime.2.22.2.28604.0, value=Microsoft.NET.Native.Runtime.2.22.2.28604.0, value=Microsoft.NET.Native.Runtime.1.71.7.27422.0, value=Microsoft.NET.Native.Runtime.1.71.7.27422.0, value=SynapticsIncorporated.SynHPConsumerDApp19005.35054.0.0, value=56900FiveStarPeakGames.RedBall3Adventure15.9.0.0, value=Microsoft.XboxGameOverlay1.54.4001.0, value=Microsoft.UI.Xaml.2.42.42007.9001.0, value=Microsoft.UI.Xaml.2.42.42007.9001.0, value=Microsoft.VCLibs.140.0014.0.29231.0, value=Microsoft.NET.Native.Framework.2.22.2.29512.0, value=Microsoft.NET.Native.Framework.2.22.2.29512.0, value=Microsoft.UI.Xaml.2.52.52012.2002.0, value=Microsoft.UI.Xaml.2.52.52012.2002.0, value=PricelinePartnerNetwork.Booking.comBigsavingsonhot2.0.5.0, value=Microsoft.WindowsCamera2021.105.10.0, value=Microsoft.WindowsSoundRecorder10.2103.28.0, value=Microsoft.NET.Native.Framework.2.22.2.27405.0, value=Microsoft.NET.Native.Runtime.1.71.7.25531.0, value=Microsoft.NET.Native.Runtime.2.22.2.27328.0, value=RealtekSemiconductorCorp.HPAudioControl1.10.216.0, value=Microsoft.VCLibs.140.0014.0.30035.0, value=Microsoft.VCLibs.140.00.UWPDesktop14.0.30035.0, value=1527c705-839a-4832-9118-54d4Bd6a0c8910.0.19041.1023, value=E2A4F912-2574-4A75-9BB0-0D023378592B10.0.19041.1023, value=F46D4000-FD22-4DB4-AC8E-4E1DDDE828FE10.0.19041.1023, value=Microsoft.AccountsControl10.0.19041.1023, value=Microsoft.AsyncTextService10.0.19041.1023, value=Microsoft.CredDialogHost10.0.19041.1023, value=Microsoft.ECApp10.0.19041.1023, value=Microsoft.LockApp10.0.19041.1023, value=Microsoft.MicrosoftEdgeDevToolsClient1000.19041.1023.0, value=Microsoft.Win32WebViewHost10.0.19041.1023, value=Microsoft.Windows.Apprep.ChxApp1000.19041.1023.0, value=Microsoft.Windows.CallingShellApp1000.19041.1023.0, value=Microsoft.Windows.CapturePicker10.0.19041.1023, value=Microsoft.Windows.NarratorQuickStart10.0.19041.1023, value=Microsoft.Windows.ParentalControls1000.19041.1023.0, value=Microsoft.Windows.PeopleExperienceHost10.0.19041.1023, value=Microsoft.Windows.PinningConfirmationDialog1000.19041.1023.0, value=Microsoft.Windows.XGpuEjectDialog10.0.19041.1023, value=Microsoft.XboxGameCallableUI1000.19041.1023.0, value=NcsiUwpApp1000.19041.1023.0, value=Windows.CBSPreview10.0.19041.1023, value=Microsoft.BioEnrollment10.0.19041.1023, value=Microsoft.AAD.BrokerPlugin1000.19041.1023.0, value=Microsoft.Windows.OOBENetworkConnectionFlow10.0.19041.1023, value=Microsoft.Windows.OOBENetworkCaptivePortal10.0.19041.1023, value=MicrosoftWindows.UndockedDevKit10.0.19041.1023, value=Microsoft.Windows.StartMenuExperienceHost10.0.19041.1023, value=Microsoft.Windows.ContentDeliveryManager10.0.19041.1023, value=MicrosoftWindows.Client.CBS120.2212.3530.0, value=Microsoft.MixedReality.Portal2000.21051.1282.0, value=Microsoft.WebMediaExtensions1.0.42192.0, value=Microsoft.VCLibs.140.0014.0.30704.0, value=Microsoft.VCLibs.140.0014.0.30704.0, value=Microsoft.VCLibs.140.00.UWPDesktop14.0.30704.0, value=Microsoft.VCLibs.140.00.UWPDesktop14.0.30704.0, value=5A894077.McAfeeSecurity2.1.68.0, value=Microsoft.MicrosoftEdge44.19041.1266.0, value=Microsoft.Windows.CloudExperienceHost10.0.19041.1266, value=Microsoft.MicrosoftOfficeHub18.2110.13110.0, value=Microsoft.UI.Xaml.2.62.62112.3002.0, value=Microsoft.UI.Xaml.2.62.62112.3002.0, value=Microsoft.MSPaint6.2203.1037.0, value=Microsoft.549981C3F5F104.2204.13303.0, value=Microsoft.XboxApp48.89.25001.0, value=Microsoft.UI.Xaml.2.77.2208.15002.0, value=Microsoft.UI.Xaml.2.77.2208.15002.0, value=Microsoft.Windows.SecHealthUI10.0.19041.1865, value=Microsoft.WebpImageExtension1.0.52351.0, value=c5e2524a-ea46-4f67-841f-6a9465d9d51510.0.19041.1949, value=Microsoft.Windows.ShellExperienceHost10.0.19041.1949, value=AppUp.IntelOptaneMemoryandStorageManagement18.1.1037.0, value=Microsoft.VP9VideoExtensions1.0.52781.0, value=26720RandomSaladGamesLLC.SimpleSolitaire7.4.14.0, value=Microsoft.ZuneVideo10.22091.10031.0, value=613EBCEA.PolarrPhotoEditorAcademicEdition5.11.3.0, value=Microsoft.XboxIdentityProvider12.95.3001.0, value=Microsoft.Getstarted10.2210.3.0, value=Microsoft.Microsoft3DViewer7.2211.24012.0, value=Microsoft.WindowsCalculator11.2210.0.0, value=MicrosoftWindows.Client.CBS120.2212.4190.0, value=Microsoft.ZuneMusic11.2211.35.0, value=Microsoft.MicrosoftStickyNotes4.5.9.0, value=Microsoft.DesktopAppInstaller1.19.10173.0, value=A025C540.Yandex.Music4.53.8434.0, value=Microsoft.LanguageExperiencePackru-ru19041.56.177.0, value=microsoft.windowscommunicationsapps16005.14326.21374.0, value=Microsoft.BingWeather4.53.50501.0, value=Microsoft.OneConnect5.2302.593.0, value=Microsoft.StorePurchaseApp12301.1401.8.0, value=Microsoft.MicrosoftSolitaireCollection4.16.3140.0, value=Microsoft.ScreenSketch10.2008.3001.0, value=Microsoft.GetHelp10.2302.10601.0, value=Microsoft.WindowsAppRuntime.1.22000.802.31.0, value=Microsoft.WindowsAppRuntime.1.22000.802.31.0, value=Microsoft.YourPhone1.23022.140.0, value=Microsoft.WindowsStore22301.1401.15.0, value=Microsoft.WindowsAlarms11.2302.4.0, value=Microsoft.Windows.Photos2023.10030.7003.0, value=Microsoft.WindowsMaps11.2302.2.0, value=Microsoft.People10.2202.30.0, value=king.com.CandyCrushFriends1.98.2.0, value=Microsoft.LanguageExperiencePackru-ru19041.59.185.0, value=king.com.CandyCrushSaga1.2500.3.0, value=C27EB4BA.DropboxOEM23.4.16.0, value=Microsoft.XboxGamingOverlay5.823.3261.0, value=Microsoft.BingNews4.55.50751.0, value=Microsoft.UI.Xaml.2.88.2304.12003.0, value=Microsoft.UI.Xaml.2.88.2304.12003.0, value=Microsoft.Office.OneNote16001.14326.21386.0, value=0EB8BD08.PARADISEISLAND212.190.0.0, value=Microsoft.SkypeApp15.96.3409.0, value=Microsoft.WindowsFeedbackHub1.2304.1101.0, value=PLRWorldwideSales.Homescapes6.1.5.0, value=DolbyLaboratories.DolbyAccess3.17.857.0, value=Microsoft.HEIFImageExtension1.0.60871.0, value=Microsoft.Windows.Search1.14.9.19041, value=Microsoft.MicrosoftEdge.Stable112.0.1722.58

BDU:2020-02964

Высокий

Функция X509_NAME_oneline в crypto/x509/x509_obj.c в OpenSSL до 1.0.1t и 1.0.2 до 1.0.2h позволяет удалённым злоумышленникам получить доступ к конфиденциальной информации через память стека процесса и вызвать отказ в обслуживании (чтение за пределами буфера) через специально сформированные EBCDIC ASN.1 данные.

Обновить OpenSSL до версии 3.1.0





Download 86.08 Kb.

Do'stlaringiz bilan baham:
1   ...   19   20   21   22   23   24   25   26   ...   33




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©fayllar.org 2024
ma'muriyatiga murojaat qiling