TippingPoint Zero Day Initiative

Published Advisories

The following is a list of all publicly disclosed vulnerabilities discovered by TippingPoint Zero Day Initiative researchers. While the affected vendor is working on a patch for these vulnerabilities, TippingPoint customers are protected from exploitation by IPS filters delivered ahead of public disclosure. TippingPoint customers are additionally protected against 0day vulnerabilities discovered by our own DVLabs researchers. A list of published advisories discovered by TippingPoint's DVLabs research group is available from:

View advisories from: 2008   |   2007   |   2006   |   2005

ZDI-08-044 CVE: CVE-2008-2785 Published: 2008-07-17
Mozilla Firefox CSSValue Array Memory Corruption Vulnerability
ZDI-08-043 CVE: Published: 2008-07-17
Sun Java Web Start vm args Stack-Based Buffer Overflow Vulnerability
ZDI-08-042 CVE: Published: 2008-07-17
Sun Java Web Start Sandbox Bypass Vulnerability
ZDI-08-041 CVE: Published: 2008-07-10
Novell eDirectory dhost Integer Overflow Code Execution Vulnerability
ZDI-08-040 CVE: CVE-2008-1444 Published: 2008-06-10
Microsoft DirectX SAMI File Format Name Parsing Stack Overflow Vulnerability
ZDI-08-039 CVE: CVE-2008-1442 Published: 2008-06-10
Microsoft Internet Explorer DOM Object substringData() Heap Overflow Vulnerability
ZDI-08-038 CVE: CVE-2008-1585 Published: 2008-06-10
Apple QuickTime SMIL qtnext Redirect File Execution Vulnerability
ZDI-08-037 CVE: CVE-2008-1584 Published: 2008-06-10
Apple QuickTime Indeo Video Buffer Overflow Vulnerability
ZDI-08-036 CVE: CVE-2008-2541 Published: 2008-06-04
CA ETrust Secure Content Manager Gateway FTP LIST Stack Overflow Vulnerability
ZDI-08-035 CVE: CVE-2008-2541 Published: 2008-06-04
CA ETrust Secure Content Manager Gateway FTP PASV Stack Overflow Vulnerability
ZDI-08-034 CVE: CVE-2008-1661 Published: 2008-06-04
HP StorageWorks Storage Mirroring Authentication Processing Stack Overflow Vulnerability
ZDI-08-033 CVE: Published: 2008-05-27
Motorola RAZR JPG Processing Stack Overflow Vulnerability
ZDI-08-032 CVE: CVE-2007-0071 Published: 2008-05-22
Adobe Flash DefineSceneAndFrameLabelData Parsing Memory Corruption Vulnerability
ZDI-08-031 CVE: CVE-2008-2409 Published: 2008-05-21
Trillian MSN MIME Header Stack-Based Overflow Vulnerability
ZDI-08-030 CVE: CVE-2008-2408 Published: 2008-05-21
Trillian Multiple Protocol XML Parsing Memory Corruption Vulnerability
ZDI-08-029 CVE: CVE-2008-2407 Published: 2008-05-21
Trillian AIM.DLL Long HTML Font Parameter Stack Overflow Vulnerability
ZDI-08-028 CVE: Published: 2008-05-21
IBM Lotus Sametime Community Services Multiplexer Stack Overflow Vulnerability
ZDI-08-027 CVE: CVE-2008-2241 Published: 2008-05-19
CA BrightStor ARCserve Backup caloggerd Arbitrary File Writing Vulnerability
ZDI-08-026 CVE: CVE-2008-2242 Published: 2008-05-19
CA BrightStor ARCserve Backup XDR Parsing Buffer Overflow Vulnerability
ZDI-08-025 CVE: Published: 2008-05-15
Symantec Altiris Deployment Solution Domain Credential Disclosure Vulnerability
ZDI-08-024 CVE: Published: 2008-05-15
Symantec Altiris Deployment Solution SQL Injection Vulnerability
ZDI-08-023 CVE: CVE-2008-1091 Published: 2008-05-13
Microsoft Office RTF Parsing Engine Memory Corruption Vulnerability
ZDI-08-022 CVE: CVE-2008-1026 Published: 2008-04-16
Apple Safari WebKit PCRE Handling Integer Overflow Vulnerability
ZDI-08-021 CVE: CVE-2007-6019 Published: 2008-04-08
Adobe Flash Player DeclareFunction2 Invalid Object Use Vulnerability
ZDI-08-020 CVE: CVE-2008-1083 Published: 2008-04-08
Microsoft GDI WMF Parsing Heap Overflow Vulnerability
ZDI-08-019 CVE: CVE-2008-1022 Published: 2008-04-03
Apple QuickTime Malformed VR obji Atom Parsing Memory Corruption Vulnerability
ZDI-08-018 CVE: CVE-2008-1021 Published: 2008-04-03
Apple QuickTime Run Length Encoding Heap Overflow Vulnerability
ZDI-08-017 CVE: CVE-2008-1020 Published: 2008-04-03
Apple QuickTime Kodak Encoding Heap Overflow Vulnerability
ZDI-08-016 CVE: CVE-2008-1018 Published: 2008-04-03
Apple QuickTime MP4A Atom Parsing Heap Corruption Vulnerability
ZDI-08-015 CVE: CVE-2008-1017 Published: 2008-04-03
Apple QuickTime Clipping Region Heap Overflow Vulnerability
ZDI-08-014 CVE: CVE-2008-1019 Published: 2008-04-03
Apple Quicktime Multiple Opcode Memory Corruption Vulnerabilities
ZDI-08-013 CVE: CVE-2008-0924 Published: 2008-03-26
Novell eDirectory for Linux LDAP delRequest Stack Overflow Vulnerability
ZDI-08-012 CVE: CVE-2008-0727 Published: 2008-03-13
IBM Informix Dynamic Server Authentication Password Stack Overflow Vulnerability
ZDI-08-011 CVE: CVE-2008-0727 Published: 2008-03-13
IBM Informix Dynamic Server DBPATH Buffer Overflow Vulnerability
ZDI-08-010 CVE: CVE-2008-1188 Published: 2008-03-12
Java Web Start encoding Stack Buffer Overflow Vulnerability
ZDI-08-009 CVE: CVE-2008-1188 Published: 2008-03-12
Java Web Start tempbuff Stack Buffer Overflow Vulnerability
ZDI-08-008 CVE: CVE-2008-0113 Published: 2008-03-11
Microsoft Excel BIFF File Format Cell Record Parsing Memory Corruption Vulnerability
ZDI-08-007 CVE: CVE-2008-0638 Published: 2008-02-20
Symantec VERITAS Storage Foundation Administrator Service Heap Overflow Vulnerability
ZDI-08-006 CVE: CVE-2008-0077 Published: 2008-02-12
Microsoft Internet Explorer SVG animateMotion.by Code Execution Vulnerability
ZDI-08-005 CVE: CVE-2008-0639 Published: 2008-02-11
Novell Client NWSPOOL.DLL EnumPrinters Stack Overflow Vulnerability
ZDI-08-004 CVE: CVE-2008-0726 Published: 2008-02-11
Adobe Acrobat Javascript for PDF Integer Overflow Vulnerability
ZDI-08-003 CVE: CVE-2008-0457 Published: 2008-02-06
Symantec Backup Exec Remote File Upload Vulnerability
ZDI-08-002 CVE: CVE-2008-0356 Published: 2008-01-17
Citrix Metaframe Presentation Server IMA Service Heap Overflow Vulnerability
ZDI-08-001 CVE: CVE-2008-0247 Published: 2008-01-14
IBM Tivoli Storage Manager Express Backup Server Heap Overflow Vulnerability