*** EX RELS 03357 Release *** Total number of signatures: 6021 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 8 rule(s): --------------- 1132963 WEB Squid Proxy ESI Response Processing Denial of Service (CVE-2016-4555) 1134294 SCADA Sunway ForceControl Multiple Security Vulnerabilities -7 1134295 WEB-CLIENT Microsoft Edge Chakra LowerBoundCheck Integer Overflow -1 (CVE-2017-11861) 1134297 WEB HPE Intelligent Management Center WebDMServlet Insecure Deserialization (CVE-2017-12558) 1134298 FILE Microsoft Office EQNEDT32 Stack Buffer Overflow -2 (CVE-2017-11882) 1160741 IM WeChat transfer via SSL -2 1160742 IM WhatsApp access via SSL -2 1160765 IM WhatsApp access via UDP -1 Modified 8 rule(s): --------------- 1065963 MEDIA iQIYI/PPS login via SSL -1 1130397 SMTP Exim ESMTP GHOST Denial Of Service -2 (CVE-2015-0235) 1133661 SSL OpenSSL DHE and ECDHE Parameters NULL Pointer Dereference -1 (CVE-2017-3730) 1133855 WEB GoAhead IPCam Remote Code Execution -2.1 1134035 WEB HTTP Host Header Command Injection 1134276 SMTP Exim BDAT command Denial of Service -1 (CVE-2017-16944) 1134291 FILE Microsoft Office EQNEDT32 Stack Buffer Overflow -1 (CVE-2017-11882) 1160485 MEDIA Youku.com media via TCP -7 Deleted 21 rule(s): --------------- 1052688 WEB-IM eBuddy login via TCP -5 (old rule) 1053121 WEB-IM eBuddy login via TCP -6 (old rule) 1053122 WEB-IM eBuddy login via TCP -7 (old rule) 1053380 WEB-IM eBuddy login via TCP -8 (old rule) 1053608 WEB-IM eBuddy login via TCP -9 (old rule) 1062370 GAME GameTea/GameABC login via TCP -1 (old rule) 1062405 WEB-IM eBuddy login via TCP -10 (old rule) 1062423 GAME TENOnline access via TCP -1 (old rule) 1062431 GAME TENOnline access via TCP -2 (old rule) 1062443 GAME Nobol login via TCP -1 (old rule) 1063166 WEB-IM eBuddy access via TCP -1 (old rule) 1064110 GAME GameTea/GameABC login via TCP -2 (old rule) 1064387 SOCIAL WordPress access via TCP -2 (old rule) 1064388 SOCIAL WordPress login via SSL -1 (old rule) 1064484 SOCIAL Odnoklassniki login via SSL -1 (old rule) 1064999 SOCIAL WordPress access via TCP -1 (old rule) 1067296 SOCIAL WordPress access via TCP -3 (old rule) 1067362 SOCIAL WordPress access via SSL -1 (old rule) 1068835 GAME GameTea/GameABC access via TCP -1 (old rule) 1068836 GAME GameTea/GameABC access via TCP -2 (old rule) 1133698 WEB Intel Active Management Technology Remote Privilege Escalation -1 (CVE-2017-5689) (old rule)