*** NK8 RELS 3353 Release *** Total number of signatures: 3225 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 12 rule(s): --------------- 1134194 SNMP Squid snmpHandleUdp Off-by-one Buffer Overflow (CVE-2014-6270) 1134222 WEB D-LINK DIR-850L (Un)authenticated OS Command Exec 1134224 WEB-CLIENT Microsoft Internet Explorer CWigglyShape Information Disclosure -1.4 (CVE-2016-7283) 1134226 WEB Apache httpd mod_auth_digest Memory Access Denial of Service (CVE-2017-9788) 1134230 SMB Microsoft Windows Search CVE-2017-11771 Heap Buffer Overflow -1 (CVE-2017-11771) 1134231 SMB Microsoft Windows Search CVE-2017-11771 Heap Buffer Overflow -2 (CVE-2017-11771) 1134232 WEB Apache Solr xmlparser XML External Entity Expansion Remote Code Execution -1.u (CVE-2017-12629) 1134233 WEB Apache Solr xmlparser XML External Entity Expansion Remote Code Execution -1.b (CVE-2017-12629) 1134235 SMB Microsoft Windows Search Information Disclosure -2 (CVE-2017-11772) 1134236 SMB Microsoft Windows Search Information Disclosure -1 (CVE-2017-11772) 1134239 MALWARE HIDDEN COBRA (FALLCHILL) Activity -1 1134243 MALWARE HIDDEN COBRA (Volgmer) Activity Modified 8 rule(s): --------------- 1133061 FILE Microsoft Office CVE-2016-3318 Remote Code Execution -1 (CVE-2016-4324) 1133153 EXPLOIT HPE Network Automation RMI Registry Insecure Deserialization -1 (CVE-2016-4385) 1133173 DNS ISC BIND buffer.c Assertion Failure Denial of Service (CVE-2016-2776) 1133295 WEB-CLIENT Microsoft Internet Explorer CWigglyShape Information Disclosure -1.1 (CVE-2016-7283) 1133471 WEB-CLIENT Google Chrome Blink ImageBitmap Integer Overflow -1 (CVE-2016-5182) 1133661 SSL OpenSSL DHE and ECDHE Parameters NULL Pointer Dereference -1 (CVE-2017-3730) 1133960 DNS ISC BIND Query Response Missing RRSIG Denial of Service -1 (CVE-2016-9444) 1134208 EXPLOIT Elastic Elasticsearch ThrowableObjectInputStream Insecure Deserialization (CVE-2015-5377) Deleted 12 rule(s): --------------- 1068664 MEDIA YouTube access via UDP -2 (old rule) 1130218 WEB-CLIENT Microsoft Internet Explorer Same Origin Policy Bypass -1 (CVE-2015-0072) (old rule) 1130352 FILE Microsoft Windows WebDAV Kernel Driver Privilege Escalation (CVE-2015-0011) (old rule) 1130370 FILE Adobe Flash Player CVE-2015-0311 Unspecified Memory Corruption Vulnerability -1 (CVE-2015-0311) (old rule) 1130371 FILE Adobe Flash Player CVE-2015-0311 Unspecified Memory Corruption Vulnerability -2 (CVE-2015-0311) (old rule) 1130372 FILE Adobe Flash Player CVE-2015-0311 Unspecified Memory Corruption Vulnerability -3 (CVE-2015-0311) (old rule) 1130383 WEB-CLIENT Generic Javascript Obfuscation -24 (old rule) 1130405 FILE Adobe Flash Player DomainMemory Use After Free (CVE-2015-0311) (old rule) 1130409 WEB Wordpress Pixabay Images PHP Code Upload (OSVDB-117145) (old rule) 1130410 WEB Shuttle Tech ADSL Modem-Router 915 WM - Unauthenticated Remote DNS Change Exploit (EDB-35995) (old rule) 1130433 WEB-CLIENT Microsoft Internet Explorer Memory Corruption Vulnerability -1 (CVE-2015-0017) (old rule) 1130434 WEB-CLIENT Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2015-0018) (old rule)