Rule Update

19-006 (February 12, 2019)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

DCERPC Services
1009511 - Microsoft Windows SMB Remote Code Execution Vulnerability (CVE-2019-0630)


DHCPv6 Client - Incoming
1008949* - ISC dhclient Buffer Overflow Vulnerability (CVE-2018-5732)


Microsoft Office
1009515 - Microsoft Excel Information Disclosure Vulnerability (CVE-2019-0669)


Web Application Common
1009308* - Moodle PHP Unserialize Remote Code Execution Vulnerability (CVE-2018-14630)
1009401* - Nagios XI Magpie 'cURL' Argument Injection Vulnerability (CVE-2018-15708)


Web Application PHP Based
1009481 - Drupal Core Critical Arbitrary PHP Code Execution Vulnerability (CVE-2019-6339)


Web Client Common
1009454* - Microsoft Windows Information Disclosure Vulnerability (CVE-2019-0636)
1009500 - Microsoft Windows Multiple Security Vulnerabilities (Feb-2019)


Web Client Internet Explorer/Edge
1009509 - Microsoft Edge Memory Corruption Vulnerability (CVE-2019-0645)
1009498 - Microsoft Edge Memory Corruption Vulnerability (CVE-2019-0650)
1009497 - Microsoft Edge Scripting Engine Information Disclosure Vulnerability (CVE-2019-0648)
1009501 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0590)
1009502 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0591)
1009503 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0593)
1009504 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0607)
1009506 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0610)
1009507 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0640)
1009508 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0642)
1009499 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0644)
1009510 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0651)
1009512 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0652)
1009516 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0655)
1009514 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0658)
1009513 - Microsoft Internet Explorer Information Disclosure Vulnerability (CVE-2019-0676)
1009505 - Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2019-0606)


Web Server Apache Tika
1009142* - Apache Tika 'tika-server' Command Injection Vulnerability (CVE-2018-1335)


Web Server Miscellaneous
1008104* - Apache ActiveMQ Multiple Remote Code Execution Vulnerabilities (CVE-2016-3088)


Windows Services RPC Server DCERPC
1009480 - Identified WMI Query Over DCE/RPC Protocol


Integrity Monitoring Rules:

1008271* - Application - Docker


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.