Rule Update
19-006 (12 Februar 2019)
Publish Date: 12 Februar 2019
Beschreibung
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
DCERPC Services
1009511 - Microsoft Windows SMB Remote Code Execution Vulnerability (CVE-2019-0630)
DHCPv6 Client - Incoming
1008949* - ISC dhclient Buffer Overflow Vulnerability (CVE-2018-5732)
Microsoft Office
1009515 - Microsoft Excel Information Disclosure Vulnerability (CVE-2019-0669)
Web Application Common
1009308* - Moodle PHP Unserialize Remote Code Execution Vulnerability (CVE-2018-14630)
1009401* - Nagios XI Magpie 'cURL' Argument Injection Vulnerability (CVE-2018-15708)
Web Application PHP Based
1009481 - Drupal Core Critical Arbitrary PHP Code Execution Vulnerability (CVE-2019-6339)
Web Client Common
1009454* - Microsoft Windows Information Disclosure Vulnerability (CVE-2019-0636)
1009500 - Microsoft Windows Multiple Security Vulnerabilities (Feb-2019)
Web Client Internet Explorer/Edge
1009509 - Microsoft Edge Memory Corruption Vulnerability (CVE-2019-0645)
1009498 - Microsoft Edge Memory Corruption Vulnerability (CVE-2019-0650)
1009497 - Microsoft Edge Scripting Engine Information Disclosure Vulnerability (CVE-2019-0648)
1009501 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0590)
1009502 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0591)
1009503 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0593)
1009504 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0607)
1009506 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0610)
1009507 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0640)
1009508 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0642)
1009499 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0644)
1009510 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0651)
1009512 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0652)
1009516 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0655)
1009514 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0658)
1009513 - Microsoft Internet Explorer Information Disclosure Vulnerability (CVE-2019-0676)
1009505 - Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2019-0606)
Web Server Apache Tika
1009142* - Apache Tika 'tika-server' Command Injection Vulnerability (CVE-2018-1335)
Web Server Miscellaneous
1008104* - Apache ActiveMQ Multiple Remote Code Execution Vulnerabilities (CVE-2016-3088)
Windows Services RPC Server DCERPC
1009480 - Identified WMI Query Over DCE/RPC Protocol
Integrity Monitoring Rules:
1008271* - Application - Docker
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
DCERPC Services
1009511 - Microsoft Windows SMB Remote Code Execution Vulnerability (CVE-2019-0630)
DHCPv6 Client - Incoming
1008949* - ISC dhclient Buffer Overflow Vulnerability (CVE-2018-5732)
Microsoft Office
1009515 - Microsoft Excel Information Disclosure Vulnerability (CVE-2019-0669)
Web Application Common
1009308* - Moodle PHP Unserialize Remote Code Execution Vulnerability (CVE-2018-14630)
1009401* - Nagios XI Magpie 'cURL' Argument Injection Vulnerability (CVE-2018-15708)
Web Application PHP Based
1009481 - Drupal Core Critical Arbitrary PHP Code Execution Vulnerability (CVE-2019-6339)
Web Client Common
1009454* - Microsoft Windows Information Disclosure Vulnerability (CVE-2019-0636)
1009500 - Microsoft Windows Multiple Security Vulnerabilities (Feb-2019)
Web Client Internet Explorer/Edge
1009509 - Microsoft Edge Memory Corruption Vulnerability (CVE-2019-0645)
1009498 - Microsoft Edge Memory Corruption Vulnerability (CVE-2019-0650)
1009497 - Microsoft Edge Scripting Engine Information Disclosure Vulnerability (CVE-2019-0648)
1009501 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0590)
1009502 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0591)
1009503 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0593)
1009504 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0607)
1009506 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0610)
1009507 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0640)
1009508 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0642)
1009499 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0644)
1009510 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0651)
1009512 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0652)
1009516 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0655)
1009514 - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-0658)
1009513 - Microsoft Internet Explorer Information Disclosure Vulnerability (CVE-2019-0676)
1009505 - Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2019-0606)
Web Server Apache Tika
1009142* - Apache Tika 'tika-server' Command Injection Vulnerability (CVE-2018-1335)
Web Server Miscellaneous
1008104* - Apache ActiveMQ Multiple Remote Code Execution Vulnerabilities (CVE-2016-3088)
Windows Services RPC Server DCERPC
1009480 - Identified WMI Query Over DCE/RPC Protocol
Integrity Monitoring Rules:
1008271* - Application - Docker
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.