The following archived
zero-day vulnerabilities have been patched by the vendor. At the time
of disclosure, these entries were made public and/or used in active
attacks prior to the release of a patch. (see our active
zero-day vulnerability list).
CASEScontact.org
provided information to proactively protect systems from these flaws,
while CyTRAP Labs tools help in detecting
the presence of these vulnerabilities.
Date disclosed: 2008-12-11 Microsoft has issued a patch for this vulnerability within just about 10 days after exploits in the wild were discovered, you can get: This is a kind of vulnerability can be mitigated by disabling Active Scripting in the Internet Zone. A safer option is to use Firefox and the no Script add-in (see as explained further below).
Affected Systems: vulnerability affects:
are currently known to be vulnerable to this issue, although other versions may also be affected.
Vendor: Microsoft
Date patched: 2008-12-18
Status: Patched
Patch Info:
Date disclosed: 2008-02-09
Affected Systems: Vulnerability affects:
with the following operating systems:
Date disclosed: 2008-01-16 CyTRAP Labs: security reminder - 2008-03-11 - Patch Tuesday - Microsoft has issued a patch for this vulnerability within just about 56 days after discovery, you can get security patch and information here: Microsoft Security Advisory (947563): Vulnerability in Microsoft Excel Could Allow Remote Code Execution ==> CVE-2008-0081 Check also our: If this post was helpful to you, please consider stumbling it or subscribing to feeds from CyTRAP Labs.
Affected Systems: The vulnerability affects:
Vendor: Microsoft
Date patched: 2008-03-11
Status: Patched
Patch Info:
Days of exposure: 55
Date disclosed: 2008-01-11 Since Quicktime is part of iTunes, users who have the latter installed also have Quicktime on their machine(s) .... Quicktime has to be launched and then the latest version can be downloaded (either automatic by program or going to Help > Options > check for latest version - this will trigger the program to download the latest version
Affected Systems: Vulnerabilities affect:
Vendor: Apple
Date patched: 2008-01-16
Status: Patched
Patch Info: Apple has issued a patch for this vulnerability within just about 5 days after discovery, you can get:
Days of exposure: 6
Date disclosed: 2007-11-26 Since Quicktime is part of iTunes, users who have the latter installed also have Quicktime on their machine(s) .... Quicktime has to be launched and then the latest version can be downloaded (either automatic by program or going to Help > Options > check for latest version - this will trigger the program to download the latest version
Affected Systems: Vulnerabilities affect:
Vendor: Apple
Date patched: 2007-12-14
Status: Patched
Patch Info: Apple has issued a patch for this vulnerability within just about 17 days after discovery, you can get more info here:
Days of exposure: 21
Date disclosed: 2007-10-20
Affected Systems: Vulnerability affects:
Only systems on which BOTH, RealPlayer and IE have been installed are vulnerable
Vendor: RealNetworks
Date patched: 2007-10-20
Status: Patched
Days of exposure: 2
Date disclosed: 2007-09-13 You need to upgrade your software as follows:
Please remember, this vulnerability has neither been patched for Microsoft Internet Explorer nor the Opera browser
Affected Systems: Vulnerabilities affect:
Vulnerabilities affect Microsoft Windows
Vendor: Apple, Mozilla Foundation, Opera and Microsoft
Date patched: 2007-09-19
Status: Patched
Patch Info: PATCH ISSUED 2007-09-19
Please also remember to adjust your Options in Firefox, so next time you get this release automatically when surfing the net by doing as follows:
CyTRAP Labs quicktip - setting your Firefox options to get security updates automatically - it is easy AND convenient for YOU,
Days of exposure: 7
Date disclosed: 2007-08-16
Affected Systems: Vulnerability affects:
Date disclosed: 2007-07-10
Affected Systems: Vulnerability affects:
Vulnerability was tested using the French, German and English version of a fully patched Windows XP SP2 operating system.
Vendor: Microsoft
Date patched: 2007-11-13
Status: Patched
Patch Info: Get more information about the patch here:
Days of exposure: 126
Date disclosed: 2007-06-07
Affected Systems: Vulnerability affects:
Better risk management.
