*** NK8 RELS 3375 Release *** Total number of signatures: 3235 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 7 rule(s): --------------- 1134569 WEB Drupal Core Form Rendering Remote Code Execution -1.1 (CVE-2018-7600) 1134571 WEB Drupal Core Form Rendering Remote Code Execution -1.2 (CVE-2018-7600) 1134572 WEB Drupal Core Form Rendering Remote Code Execution -1.3 (CVE-2018-7600) 1134574 FILE Adobe Acrobat ImageConversion EMF EmfPlus Heap-based Buffer Overflow (CVE-2018-4895) 1134577 FILE Adobe Acrobat XPS Initial Page Processing Format String Vulnerability (CVE-2018-4899) 1134578 SSL Microsoft Windows CredSSP MITM Code Execution (CVE-2018-0886) 1134579 WEB-CLIENT Microsoft Internet Explorer and Edge Substring New Out of Bounds Read -1 (CVE-2018-0891) Modified 3 rule(s): --------------- 1134191 SIP Digium Asterisk app_minivm Caller-ID Command Execution -1 (CVE-2017-14100) 1134239 MALWARE HIDDEN COBRA (FALLCHILL) Activity -1 1160634 IM AIM/ICQ/iIM access via SSL -5 Deleted 12 rule(s): --------------- 1057898 FILE Microsoft Excel Worksheet Name Memory Corruption (old rule) 1131530 WEB-CLIENT Firefox PDF.js Privileged Javascript Injection (CVE-2015-0816) (old rule) 1131537 WEB Visual Mining NetCharts Server projectContents.jsp File Rename Denial of Service -1 (CVE-2015-4032) (old rule) 1131551 DNS ISC BIND DNSSEC Validation Denial of Service (CVE-2015-4620) (old rule) 1131578 WEB ManageEngine EventLog Analyzer Remote Code Execution -1.a (CVE-2015-7387) (old rule) 1131599 WEB PHP HTTP Multipart Form-Data Denial of Service (CVE-2015-4024) (old rule) 1131604 WEB ManageEngine ServiceDesk Plus Arbitrary File Upload (ZDI-15-396) (old rule) 1131615 WEB-CLIENT Microsoft Scripting Engine Memory Corruption Vulnerability (CVE-2015-6055) (old rule) 1131618 WEB-CLIENT Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2015-6050) (old rule) 1131621 WEB-CLIENT Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2015-6048) (old rule) 1131624 WEB-CLIENT Microsoft Internet Explorer Information Disclosure Vulnerability (CVE-2015-6045) (old rule) 1131637 FILE Adobe Flash iExternalizable Interface Type Confusion -1 (CVE-2015-7645) (old rule)