<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.ca.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.ca.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss version="2.0">
  <channel>
    <title>CA Security Advisor Newly Discovered Vulnerabilities</title>
    <link>http://www.ca.com/us/securityadvisor/vulninfo</link>
    <description>Vulnerability Newly Discovered</description>
    <managingEditor>support@ca.com</managingEditor>
    <language>en-us</language>
    <image><link>http://www.ca.com</link><url>http://www.ca.com/images/icons/logo.gif</url><title>CA</title></image><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.ca.com/CaSecurityAdvisorNewlyDiscoveredVulnerabilities" type="application/rss+xml" /><item>
      <title>Ruby rb_ary_store() multiple integer overflow vulnerabilities</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36498</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36498</guid>
    <description>Ruby contains multiple vulnerabilities that can allow a remote attacker to cause a denial of service condition or possibly execute arbitrary code.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/342390685" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft Windows DNS insufficient socket entropy vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36472</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36472</guid>
    <description>Microsoft Windows DNS contains a vulnerability that can allow a remote attacker to cause DNS cache poisoning.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330359595" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft SQL Server convert () buffer overrun vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36468</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36468</guid>
    <description>Microsoft SQL Server contains a vulnerability that can allow an attacker to gain escalated privileges.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330646476" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft SQL Server memory page reuse information disclosure vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36467</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36467</guid>
    <description>Microsoft SQL Server contains a vulnerability that can allow an attacker to access and collect the uninitialized memory pages from another user's session.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330646478" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft SQL Server buffer overrun vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36470</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36470</guid>
    <description>Microsoft SQL Server contains a vulnerability that can allow an attacker to gain escalated privileges.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330646479" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft Exchange server Outlook Web Acess HTML parsing cross-site scripting vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36477</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36477</guid>
    <description>Microsoft Exchange server Outlook Web Acess contains a vulnerability that can allow an attacker to conduct cross-site scripting attacks.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330372805" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft Windows DNS cache poisoning vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36473</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36473</guid>
    <description>Microsoft Windows contains a vulnerability that can allow a remote attacker to cause DNS cache poisoning.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330372806" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft Exchange server Outlook Web Access data validation cross-site scripting vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36475</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36475</guid>
    <description>Microsoft Exchange server Outlook Web Access contains a vulnerability that can allow an attacker to conduct cross-site scripting attacks.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330372807" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft Office Word document remote code execution vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36487</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36487</guid>
    <description>Microsoft Word contains a vulnerability that can allow a remote attacker to execute arbitrary code.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/331731162" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft Windows Explorer saved search remote code execution vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36471</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36471</guid>
    <description>Microsoft Windows Explorer contains a vulnerability that can allow a remote attacker to execute arbitrary code.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330359596" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Microsoft SQL Server memory corruption vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36469</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36469</guid>
    <description>Microsoft SQL Server contains a vulnerability that can allow an attacker to gain escalated privileges.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/330646481" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Adobe Reader Javascript API execution of arbitary code vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36453</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36453</guid>
    <description>Adobe Reader Javascript API contains a vulnerability that allows remote attacker to execute arbitrary code.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/326471242" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Linux Kernel information disclosure vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36448</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36448</guid>
    <description>Linux Kernel contains a vulnerability that can allow a local attacker to gain access to sensitive data.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/320528285" height="1" width="1"/&gt;</description></item>
    <item>
      <title>Linux Kernel ptrace and utrace race condition vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36450</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36450</guid>
    <description>Linux kernel contains a vulnerability that can allow a local attacker to cause a denial of service condition.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/336930908" height="1" width="1"/&gt;</description></item>
    <item>
      <title>sblim libraries arbitrary code execution vulnerability</title>
      
      <link>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36446</link>
      <guid>http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36446</guid>
    <description>sblim contains a vulnerability that can allow a local attacker to execute arbitrary code.&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.ca.com/~r/CaSecurityAdvisorNewlyDiscoveredVulnerabilities/~4/320264492" height="1" width="1"/&gt;</description></item>
  </channel>
</rss>
