*** EX RELS 03427 Release *** Total number of signatures: 6033 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 5 rule(s): --------------- 1135553 SMB Microsoft Windows SMB Server SMBv1 CVE-2017-0143 Memory Corruption -4 1135557 EXPLOIT UltraVNC VNC Server File Transfer Offer Handler Heap-based Buffer Overflow (CVE-2019-8274) 1135559 WEB Atlassian Confluence Widget Connector Macro Velocity Template Injection (CVE-2019-3396) 1135560 WEB-CLIENT Microsoft Edge and Internet Explorer Chakra CVE-2018-8145 Heap Buffer Overflow -3 (CVE-2018-8145) 1135561 WEB Apache Tomcat HTTP2 Denial of Service (CVE-2019-0199) Modified 13 rule(s): --------------- 1130489 SSL TLSv1.0 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_RC4_40_MD5 -1.3 1130490 SSL TLSv1.0 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5 -1.3 1130491 SSL TLSv1.0 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_DES40_CBC_SHA -1.3 1130492 SSL TLSv1.0 FREAK with CBC Cipher TLS_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA -1.3 1130493 SSL TLSv1.1 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_RC4_40_MD5 -1.2 1130494 SSL TLSv1.1 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5 -1.2 1130495 SSL TLSv1.1 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_DES40_CBC_SHA -1.2 1130496 SSL TLSv1.1 FREAK with CBC Cipher TLS_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA -1.2 1134909 WEB-CLIENT Microsoft Edge and Internet Explorer Chakra CVE-2018-8145 Heap Buffer Overflow -1 (CVE-2018-8145) 1134910 WEB-CLIENT Microsoft Edge and Internet Explorer Chakra CVE-2018-8145 Heap Buffer Overflow -2 (CVE-2018-8145) 1135520 WEB WordPress Crop-image Shell Upload (CVE-2019-8942) 1135529 FILE Foxit Reader JavaScript popUpMenu Use After Free -1.1 (CVE-2019-7089) 1135541 NTP NTPsec ntpd ctl_getitem Out of Bounds Read -1 (CVE-2019-6443) Deleted 0 rule(s): ---------------