About DOE Button Organization Button News Button Contact Us Button


Entire Site
DOE-CIRC
US Department of Energy Seal and Header Photo
Science and Technology Button Energy Sources Button Energy Efficiency Button The Environment Button Prices and Trends Button National Security Button Safety and Health Button
Office of the Cheif Information Officer
DOE-CIRC Home
About CIRC
Bulletins
Latest
High Risk
Revised
Bulletin Archive
Technical Bulletins
Search
C-Notes
Recent C-Notes
C-Notes Archive
Security Links
Advanced Search
Contact CIRC

You are the 12787th visitor to CIRC.

Maintenance Schedule
The DOE-CIRC server will be unavailable during the following scheduled events:
Routine maintenance:
Every Thursday from 5:00 - 9:00pm (PST)


Quick Reference Header
circ rss news feed


doe-circ logo
High-risk Bulletins
bulletin legend
  • T-260 Mozilla Firefox and SeaMonkey MFSA 2009-52 through -64 Multiple Vulnerabilities (28 Oct 2009)
  • T-258 Multiple Security Vulnerabilities in Adobe Reader and Acrobat (26 Oct 2009)
  • T-257 MapServer Multiple Security Vulnerabilities (23 Oct 2009)
  • T-255 Oracle Critical Patch Update Advisory (21 Oct 2009)
  • T-250 Microsoft Patch Tuesday Reminder (14 Oct 2009)
  • T-248 Adobe Acrobat Reader Remote Code Execution Vulnerability (09 Oct 2009)
  • T-232 VMware Hosted Products VMSA-2009-0005 Multiple Remote Vulnerabilities (16 Sept 2009)
  • T-229 Mozilla Firefox MFSA 2009-47, -48, -49, -50, -51 Multiple Vulnerabilities (11 Sept 2009)
  • T-228 Microsoft Windows SMB2 '_Smb2ValidateProviderCallback()' Remote Code Execution Vulnerability (10 Sept 2009)
  • T-227 Microsoft Patch Tuesday Reminder (09 Sept 2009)
  • T-226 Debian devscripts 'uscan' Input Validation Vulnerability (08 Sept 2009)
  • T-211 Memcached Multiple Heap Based Buffer Overflow Vulnerability (17 Aug 2009)
  • T-210 Mozilla Firefox 3.5.1/3.0.12 Multiple Memory Corruption Vulnerabilities (14 Aug 2009)
  • T-208 Apple Safari Code Execution and Security Bypass Vulnerabilities (12 Aug 2009)
  • T-207 Microsoft Patch Tuesday Reminder (12 Aug 2009)
  • T-205 Mozilla Firefox Flash Player Unloading Remote Code Execution Vulnerability (07 Aug 2009)
  • T-204 Apple Mac OS X 2009-003 Multiple Security Vulnerabilities (06 Aug 2009)
  • T-201 Mozilla Firefox and Seamonkey Regular Expression Parsing Heap Buffer Overflow Vulnerability (03 Aug 2009)
  • T-199 Mozilla Firefox NULL Character CA SSL Certificate Validation Security Bypass Vulnerability (31 Jul 2009)
  • T-197 ISC BIND Denial of Service Vulnerability (29 Jul 2009)
  • T-196 Critical Cumulative Security Update for Internet Explorer (29 Jul 2009)
  • T-192 Microsoft Office Web Components ActiveX Control 'msDataSourceObject' is vulnerable to Code Execution (24 Jul 2009)
  • T-191 Vulnerability in Adobe Acrobat, Reader, and Flash Player (23 Jul 2009)
  • T-190 Buffer Overflow in NASA Common Data Format (CDF) Library (22 Jul 2009)
  • T-189 Directory Traversal Vulnerability in the Administration Interface in Cisco Customer Response Solutions (21 Jul 2009)
  • T-186 Mozilla Firefox 3.5 'Tracemonkey' Component Remote Code Execution Vulnerability (17 Jul 2009)
  • T-185 Two Remote Code Execution Vulnerabilities in Firefox (16 Jul 2009)
  • T-184 Microsoft Monthly Updates (15 Jul 2009)
  • T-183 Vulnerability in Microsoft Office Web Components Control Could Allow Remote Code Execution (14 Jul 2009)
  • T-182 Nagios 'statuswml.cgi' Remote Arbitrary Shell Command Injection Vulnerability (13 Jul 2009)
  • T-181 Microsoft Windows 'MPEG2TuneRequest' ActiveX Control Vulnerability (10 Jul 2009)
  • T-180 Citrix XenCenterWeb Multiple Input Validation Vulnerabilities (09 Jul 2009)
  • T-178 Microsoft Windows 'msvidctl.dll' ActiveX Control Unspecified Remote Memory Corruption Vulnerability (07 Jul 2009)
  • T-177 FCKeditor input sanitization errors (06 Jul 2009)
  • T-176 Sun Kernel udp(7p) Denial of Service Vulnerability (06 Jul 2009)
  • T-165 Microsoft Active Directory Encoded LDAP String Memory Corruption Remote Code Execution Vulnerability (18 Jun 2009)
  • T-164 Sun Java Runtime Environment Aqua Look and Feel Privilege Escalation Vulnerability (18 Jun 2009)
  • T-163 Linux Kernel NFS 'MAY_EXEC' Security Bypass Vulnerability (17 Jun 2009)
  • T-161 Mozilla Firefox/Thunderbird/SeaMonkey MFSA 2009-24 through -32 Multiple Remote Vulnerabilities (15 Jun 2009)
  • T-160 Microsoft Windows Print Spooler 'EnumeratePrintShares()' Remote Stack Buffer Overflow Vulnerability (12 Jun 2009)
  • T-159 Adobe Reader and Acrobat 9.1.1 and Prior Multiple Remote Vulnerabilities (11 Jun 2009)
  • T-157 Apple Safari Prior to 4.0 Multiple Security Vulnerabilities (09 Jun 2009)
  • T-152 Apple QuickTime JP2 Image Handling Heap Buffer Overflow Vulnerability (04 Jun 2009)
  • T-150 VMware Hosted products and ESX and ESXi security issues (02 Jun 2009)
  • T-149 Apache 'Options' and 'AllowOverride' Security Directives Vulnerability (01 Jun 2009)
  • T-148 Microsoft DirectX DirectShow QuickTime Video Remote Code Execution Vulnerability (29 May 2009)
  • T-146 BlackBerry Attachment Service PDF Distiller Multiple Unspecified Security Vulnerabilities (28 May 2009)
  • T-144 FreeBSD 'telnetd' Daemon Remote Code Execution Vulnerability (27 May 2009)
  • T-141 Novell GroupWise Buffer Overflow and Cross Site Scripting Vulnerabilities (22 May 2009)
  • T-140 CiscoWorks Common Services TFTP Server Directory Traversal Vulnerability (21 May 2009)
  • T-137 Microsoft IIS 6.0 WebDAV Remote Authentication Bypass (18 May 2009)
  • T-124 Linux Kernel 'FWD-TSN' Chunk Remote Buffer Overflow Vulnerability (04 May 2009)
  • T-111 Oracle April 2009 Critical Patch Update (16 Apr 2009)
  • T-106 Vulnerabilities in Microsoft Office Excel Could Cause Remote Code Execution (968557) (16 Apr 2009)
  • T-105 Critical Cumulative Security Update for Internet Explorer (963027) (16 Apr 2009)
  • T-104 Vulnerabilities in Windows HTTP services could allow remote code execution (15 Apr 2009)
  • T-103 Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution (15 Apr 2009)
  • T-102 Vulnerabilities in WordPad and Office Text Converters Could Allow Remote Code Execution (15 Apr 2009)
  • T-099 Linux Kernel CIFS Remote Buffer Overflow Vulnerability (10 Apr 2009)
  • T-095 Microsoft Office PowerPoint code execution vulnerability (06 Apr 2009)
  • T-094 Wireshark PN-DCP Data Format String Vulnerability (02 Apr 2009)
  • T-089 pam-krb5 Local Privilege Escalation Vulnerability (26 Mar 2009)
  • T-079 Cisco Unified Communications Manager IP Phone Personal Address Book Synchronizer Privilege Escalation Vulnerability (12 Mar 2009)
  • T-078 Microsoft Windows Kernel GDI EMF/WMF Remote Code Execution Vulnerability (11 Mar 2009)
  • T-071 Novell eDirectory Management Console Accept-Language Buffer Overflow (02 Mar 2009)
  • T-070 Cisco Unified MeetingPlace Web Conferencing Authentication Bypass Vulnerability (27 Feb 2009)
  • T-064 BlackBerry Application Web Loader ActiveX Control Remote Buffer Overflow Vulnerability (19 Feb 2009)
  • T-063 Apple Mac OS X SMB Component Unspecified Buffer Overflow Vulnerability (18 Feb 2009)
  • T-060 Cumulative Security Update for Internet Explorer 7 (12 Feb 2009)
  • T-059 Vulnerabilities in Microsoft Exchange Could Allow Remote Code Execution (11 Feb 2009)
  • T-049 Sun Solaris IPv6 Packet Processing Denial of Service Vulnerability (28 Jan 2009)
  • T-040 Sun SPARC Enterprise Server Authentication Bypass Vulnerability   (Released 20 Jan 2009)
  • T-037 Oracle Has Released The January 2009 Critical Patch Update   (Released 14 Jan 2009)
  • T-036 Vulnerabilities in SMB Could Allow Remote Code Execution (MS09-001)   (Released 13 Jan 2009)
  • T-018  Vulnerability in Server Service   (Released 23 Oct 2008)
  • T-002  Vulnerability in Host Integration Server RPC Service   (Released 15 Oct 2008)
  • T-001  LANDesk QIP Vulnerability   (Released 14 Oct 2008)
  • R-022 ClamAV   (Released: 23 Oct 2006)
  • R-012 Vulnerabilities in Microsoft Office   (Released: 10 Oct 2006)
  • R-011 Vulnerabilities in Microsoft XML Core Services   (Released: 10 Oct 2006)
  • R-010 Vulnerabilities in Microsoft Word   (Released: 10 Oct 2006)
  • R-009 Vulnerabilities in Microsoft Excel   (Released: 10 Oct 2006)
  • R-008 Vulnerabilities in Microsoft PowerPoint   (Released: 10 Oct 2006)
  • R-007 Vulnerability in Windows Explorer   (Released: 10 Oct 2006)
  • R-003 HP-UX Running Ignite-UX Server   (Released: 3 Oct 2006)
  • Q-326 Vulnerability in Vector Markup Language   (Released: 26 Sep 2006)
  • Q-323 AirPort Update 2006-001 and Apple Security Update 2006-005   (Released: 22 Sep 2006)
  • Q-322 Cisco DOCSIS Read-Write Community String Enabled in Non-DOCSIS Platforms   (Released: 22 Sep 2006)
  • Q-310 Vulnerability in Microsoft Publisher   (Released: 12 Sep 2006)
  • Q-278 Vulnerability in Microsoft Windows   (Released: 8 Aug 2006)
  • Q-277 Cumulative Security Update for Internet Explorer   (Released: )
  • Q-276 Vulnerability in Windows Explorer   (Released: 8 Aug 2006)
  • Q-275 Vulnerabilities in Microsoft Office   (Released: 8 Aug 2006)
  • Q-274 Vulnerability in Microsoft Visual Basic for Application   (Released: 8 Aug 2006)
  • Q-273 Vulnerability in Windows Kernel   (Released: 8 Aug 2006)
  • Q-272 Vulnerability in HTML Help   (Released: 8 Aug 2006)
  • Q-271 Vulnerability in DNS Resolution   (Released: 8 Aug 2006)
  • Q-270 Vulnerability in Server Service   (Released: 8 Aug 2006)
  • Q-269 Vulnerability in Microsoft Management Console   (Released: 8 Aug 2006)
  • Q-265 Apple Security Update   (Released: 9 Aug 2006)
  • Q-263 Apache Buffer Overflow   (Released: 1 Aug 2006)
  • Q-259 Seamonkey Security Update   (Released: 28 Jul 2006)
  • Q-251 Oracle Critical Patch Update - July 2006   (Released: 21 July 2006)
  • Q-250 Multiple Vulnerabilities in Cisco Security Monitoring, Analysis and Response System (CS-MARS)   (Released: 20 July 2006)
  • Q-249 Vulnerability in PowerPoint   (Released: 20 July 2006)
  • Q-240 Vulnerability in Server Service   (Released: 12 July 2006)
  • Q-235 Cisco Security Advisory: Access Point Web-browser Interface Vulnerability   (Released: 28 Jun 2006)
  • Q-234 Cisco Security Advisory: Multiple Vulnerabilties in Wireless Control System   (Released: 28 June 2006)
The White House www.USA.gov E-gov IQ FOIA DOE Privacy Program
U.S. Department of Energy | 1000 Independence Ave., SW | Washington, DC 20585
1-800-dial-DOE | f/202-586-4403