Microsoft Security Bulletin Coverage (Nov 8, 2011)
SonicWALL has analyzed and addressed Microsoft’s security advisories for the month of November, 2011. A list of issues reported, along with SonicWALL coverage information follows:
MS11-083 Vulnerability in TCP/IP Could Allow Remote Code Execution (2588516)
- CVE-2011-2013 Reference Counter Overflow
Normal traffic is not distinguishable from malicious traffic.
MS11-084 Vulnerability in Windows Kernel-Mode Drivers Could Allow Denial of Service (2617657)
- CVE-2011-2004 TrueType Font Parsing Vulnerability
There is no feasible method of detection.
- CVE-2011-2016 Windows Mail Insecure Library Loading Vulnerability
IPS: 5726 – Possible Binary Planting Attempt 1
MS11-086 Vulnerability in Active Directory Could Allow Elevation of Privilege (2630837)
- CVE-2011-2014 LDAPS Authentication Bypass Vulnerability
Normal traffic is not distinguishable from malicious traffic.