*** NK8 RELS 3345 Release *** Total number of signatures: 3220 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 14 rule(s): --------------- 1134014 WEB-CLIENT Microsoft Internet Explorer and Edge CVE-2017-0009 Information Disclosure Vulnerability (CVE-2017-0009) 1134015 WEB-CLIENT Microsoft Edge Array Out of Bounds Memory Corruption (CVE-2017-0046) 1134016 WEB-CLIENT Microsoft Edge Malformed UTF-8 Decode Arbitrary (CVE-2017-0131) 1134017 WEB Apache Tomcat 7.0.0 to 7.0.79 jsp File Upload Vulnerability (CVE-2017-12615) 1134018 WEB-CLIENT Microsoft Edge Chakra Eval Integer Overflow -1 (CVE-2017-8641) 1134019 WEB Muieblackcat Scanner 1134020 WEB Apache HTTP OPTIONS Memory Leak (CVE-2017-9798) 1134024 WEB Disk Pulse Enterprise GET Buffer Overflow (EDB-42560) 1134025 WEB HPE Intelligent Management Center wmiConfigContent Expression Language Injection (CVE-2017-12526) 1134026 WEB Trend Micro OfficeScan Proxy.php Command Injection (CVE-2017-11394) 1134027 EXPLOIT Trend Micro Control Manager cmdHandlerLicenseManager SQL Injection (CVE-2017-11384) 1160634 IM AIM/ICQ/iIM access via SSL -5 1160636 MEDIA YouTube access via UDP -5 1160637 MEDIA Youku.com access via TCP -4 Modified 4 rule(s): --------------- 1055396 WEB Cross-site Scripting -9 1066106 MEDIA Youku.com access via TCP -2 1068827 IM IPMSG access via UDP -1 1068939 IM IRC login via TCP -3 Deleted 12 rule(s): --------------- 1058571 WEB-CLIENT Android Browser and WebView addJavascriptInterface Code Execution (old rule) 1058632 EXPLOIT Linksys E-series Unauthenticated Remote Code Execution Exploit (EDB-31683) (old rule) 1058814 WEB Linksys WRT120N tmUnblock Buffer Overflow (EDB-31758) (old rule) 1058818 FILE Total Video Player 1.3.1 Buffer Overflow (OSVDB-100619) (old rule) 1058938 WEB-CLIENT Safari User-Assisted Download and Run Attack (old rule) 1059469 WEB-CLIENT Oracle Java JNDI Sandbox Bypass (CVE-2014-0422) (old rule) 1059537 SCADA Schneider Electric ClearSCADA OPF File Parsing Out of Bounds Array Indexing (CVE-2014-0779) (old rule) 1059541 WEB-ACTIVEX Adobe Acrobat Reader AdobePDF ActiveX Use After Free -1 (CVE-2014-0527) (old rule) 1059546 WEB Easy Chat Server 3.1 Stack Buffer Overflow (OSVDB-106841) (old rule) 1059623 DB PostgreSQL Database SET ROLE Security Bypass -2 (CVE-2014-0060) (old rule) 1059626 SSL OpenSSL DTLS Recursion Denial of Service (CVE-2014-0221) (old rule) 1059657 WEB-ACTIVEX Adobe Acrobat Reader AdobePDF ActiveX Use After Free -2 (CVE-2014-0527) (old rule)