*** EX RELS 03375 Release *** Total number of signatures: 6037 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 19 rule(s): --------------- 1134555 EXPLOIT Quagga BGP Daemon Notify Attribute Out of Bounds Read (CVE-2018-5378) 1134571 WEB Drupal Core Form Rendering Remote Code Execution -1.2 (CVE-2018-7600) 1134572 WEB Drupal Core Form Rendering Remote Code Execution -1.3 (CVE-2018-7600) 1134573 WEB Apache Solr xmlparser XML External Entity Expansion Remote Code Execution -2 (CVE-2017-12629) 1134574 FILE Adobe Acrobat ImageConversion EMF EmfPlus Heap-based Buffer Overflow (CVE-2018-4895) 1134575 WEB-CLIENT Mozilla Firefox WebAssembly Table Integer Underflow -1 (CVE-2018-5093) 1134577 FILE Adobe Acrobat XPS Initial Page Processing Format String Vulnerability (CVE-2018-4899) 1134578 SSL Microsoft Windows CredSSP MITM Code Execution (CVE-2018-0886) 1134579 WEB-CLIENT Microsoft Internet Explorer and Edge Substring New Out of Bounds Read -1 (CVE-2018-0891) 1134580 SIP Digium Asterisk app_minivm Caller-ID Command Execution -2 (CVE-2017-14100) 1134581 WEB-CLIENT Microsoft Internet Explorer and Edge Substring New Out of Bounds Read -2 (CVE-2018-0891) 1134582 RTP Digium Asterisk Unnegotiated RTP Payload Type Denial-of-Service (CVE-2018-7285) 1134583 FILE Adobe Acrobat XPS TIFF Tag Count Integer Overflow (CVE-2018-4904) 1134584 EXPLOIT Quagga BGP Daemon bgp_capability_msg_parse Denial-of-Service (CVE-2018-5381) 1134585 EXPLOIT Cisco Adaptive Security Appliance SNMP Remote Code Execution Vulnerability -3 (CVE-2016-6366) 1134586 FILE Generic XXE Information Disclosure 1134587 WEB-CLIENT Mozilla Firefox WebAssembly Table Integer Underflow -2 (CVE-2018-5093) 1134588 WEB-CLIENT Microsoft Edge EnsureNonNativeArray Type Confusion -1 (CVE-2018-0835) 1134589 WEB-CLIENT Microsoft Edge EnsureNonNativeArray Type Confusion -2 (CVE-2018-0835) Modified 5 rule(s): --------------- 1080021 SG - TUNNEL ExpressVPN access via TCP/UDP 1134191 SIP Digium Asterisk app_minivm Caller-ID Command Execution -1 (CVE-2017-14100) 1134239 MALWARE HIDDEN COBRA (FALLCHILL) Activity -1 1134569 WEB Drupal Core Form Rendering Remote Code Execution -1.1 (CVE-2018-7600) 1160634 IM AIM/ICQ/iIM access via SSL -5 Deleted 0 rule(s): ---------------