Sourcefire 3D System Vulnerability Database (VDB) Update
Date: 2013-09-27
This VDB: 170
Previous VDB: 169
Sourcefire 3D System Version 4.9.x:
Defense Centers and 3D Sensors
RNA for Red Hat Linux
3D Sensor Software for Crossbeam X-Series
Sourcefire 3D System Version 4.10.x:
Defense Centers and 3D Sensors
3D Sensor Software for Crossbeam X-Series
Sourcefire 3D System Version 5.x:
Defense Centers
Supported Detector Types:
service (4.9.1 and 4.10.x) and application protocol (5.x)
client application (4.10.x) and client (5.x)
payload (any 4.10.x release including and above 4.10.1) and web application (5.x)
IMPORTANT! Some application protocol, client, and web application detectors are supported in Version 5.x only. This Advisory refers to these as FireSIGHT application detectors.
Download the VDB update and obtain update instructions from the Sourcefire Support Site at https://support.sourcefire.com. Note that the time it takes to update the VDB can vary. For more information, see the online help on your appliance or download the Sourcefire 3D System User Guide from the Support Site.
VDB Changelog:
from version 169 (6:58:08 PM on September 19th, 2013 UTC)
to version 170 (4:40:35 PM on September 20th, 2013 UTC)
Service (4.x) and Application Protocol (5.x) Detectors
Total Added:
1
Total Removed:
0
Total Updated:
0
Client Application (4.x) and Client (5.x) Detectors
Total Added:
1
Total Removed:
0
Total Updated:
0
Payload (4.x) and Web Application (5.x) Detectors
Total Added:
101
Total Removed:
4
Total Updated:
0
FireSIGHT Detector Updates (5.x)
Total Added:
272
Total Removed:
267
Total Modified:
0
Operating System Fingerprint Details
Total Added:
0
Total Removed:
0
Total Updated:
3
Operating System and Hardware Fingerprint Details (5.1.x)
Total Added:
17
Total Removed:
0
Total Updated:
0
Vulnerability References
Total Added:
0
Total Removed:
0
Total Updated:
0
Fingerprint References
Total Added:
0
Total Removed:
0
Total Updated:
0
Operating System Fingerprint Details:
Microsoft Windows 98, Server 2008, 7, 8; Windows Phone Windows Phone 7.5 (ID 30003) updated
Microsoft Windows Vista, 7, Server 2008, 8; Windows Phone Windows Phone 7.5, 8.0 (ID 30932) updated
Microsoft Windows 7, 8; Windows Phone Windows Phone 7.5, 8.0 (ID 30950) updated
Operating System and Hardware Fingerprint Details (5.1.x)::
Google Android ASUS MeMO Pad (ID 100201) added
Google Android BlackBerry Curve 8520 (ID 100202) added
Google Android BlackBerry Curve 8530 (ID 100203) added
Google Android Casio G'zOne (ID 100204) added
Google Android HTC Evo 4G (ID 100205) added
Google Android HTC One S (ID 100206) added
Google Android LG Optimus L9 P769 (ID 100207) added
Google Android Micromax A110 Canvas 2 (ID 100208) added
Microsoft Windows Phone Nokia Lumia 800 (ID 100209) added
Google Android Samsung Galaxy Note II (ID 100210) added
Google Android Samsung Galaxy S4 (ID 100211) added
Google Android Samsung Galaxy S III Mini (ID 100212) added
Google Android Samsung Galaxy S Stratosphere (ID 100213) added
Google Android Samsung Galaxy Tab 2 (ID 100214) added
Google Android Samsung Galaxy Win I8550 (ID 100215) added
Google Android Xperia Play (ID 100216) added
Google Android Xperia Z (ID 100217) added
Service (4.x) and Application Protocol (5.x) Detectors:
NAT-PMP: Network Address Translation Port Mapping Protocol. added
Client Application (4.x) and Client (5.x) Detectors:
BitTorrent Sync: To sync files and folders across devices. added
Payload (4.x) and Web Application (5.x) Detectors:
AddThis Bot: Web crawler by AddThis. added
AhrefsBot: Web crawler by Ahrefs, SEO tool for checking backlinks. added
Akamai NetSession Interface: Interface for faster download. added
Ando Media: Metrics and analytics for Internet radio. added
Apache Nutch: Open soruce web crawler. added
Apple App Store: Apple iPhone app downloads. Different than Mac App Store. added
AudioDocumentary.org: Online archive of public-domain audio and video documentaries. added
audiodocumentary.org: Online archive of public-domain audio and video documentaries. removed
BitTorrent Sync: To sync files and folders across devices. added
Boxoh: A site that aggregates shipment tracking from different shipping providers. added
Break.com: Web portal for sharing funny videos and pictures. added
BuddyBuddy: Korean messenger. removed
Buffer: App to share web pages with social media. added
Cisco: Official website for Cisco. added
Cloudnymous Login: Logins to Cloudynomous, a private VPN/anonymizer service. added
CNET Download: Download of content from CNET. added
Coc Coc bot: Web crawler for coccoc.com. added
Coupa: Procurement software. added
Dilbert.com: Offcial website for Dilbert, American comic strips. added
Dots: Mobile game for connecting dots. added
Dr. Watson: Application debugger. added
Dragon Dictate: Speach recognition software for Mac. added
Dump Truck: Cloud storage. added
Feed43: Online RSS feed converter. added
Firefox: A mozilla web browser. added
Genieo: Web portal adware site. added
GoodSync: File transfer and synchronization service. added
Google PageSpeed: Website analyze and optimizer by Google. added
Google Play: Google app market. removed
Google URL Shortener: Shortens URL for website. added
Grantland: Web portal for sports news by ESPN. added
HBO: Offical website for HBO shows. added
Hide My Ass!: Web surfing anonymizer. added
Hideman Login: Logging into Hideman internet anonymizer. added
Hotels.com: Webportal for finding hotel deals and booking it online. added
ibVPN Login: Logins to the ibVPN personal VPN service. added
IMTransferAgent: Windows Azure storage used by iMessage. added
Infinity Blade: Mobile game. added
INRIX: Mobile app for Traffic related updates. added
Instapaper: App to save wb pages for later use. added
iTunes Radio: Internet radio by Apple. added
Ivacy Login: Logging into Ivacy VPN, a firewall-bypassing service. added
JikeSpider: Web crawler for Jike.com, chinese search engine. added
JonDo: IP changing proxy client. added
JSTOR: Digital library for academic journals and books. added
KBS: Korean Broadcasting Syste, radio station. added
Lijit: Advertising and analystics company. added
LOCKSS: Lots of Copies Keep Stuff Safe, an open source digital preservation system. added
MapMyFitness: App to track the workouts and calorie. added
Mathworks: Producers of MATLAB and other tools for science and engineering. added
MCStats: Free plugin metrics. added
Mediabot: Web crawler used by Google AdSense. added
Microsoft Access: Microsoft desktop database application. added
Minus: Website for file sharing. added
Moat: Ad search and analystics. added
MobileAsset: Track organizational assets. added
Moped: Messenger for chat, share files, photos. added
NASA: Web portal for NASA. added
ndgsa-crawler: A web crawler. added
NetNewsWire: News feed and aggregator for iOS. added
NetSight: Network management software. added
New Relic: Web metrics site. added
OSSProxy: OSS Proxy daemon for open source software for sound devices. added
Ovi Browser: Mobile phone browser. added
Owlinbot: Web crawler. added
own3D.tv: Live streaming video platform specifically for gaming. removed
Panoramio: Social network for sharing interesting places through photo. added
PDF Expert: App for iPad to view and endit PDF files. added
Penultimate: Handwriting app for iPad. added
Pinboard: Social bookmarking portal. added
PNAS: Offical journal from United States National Academy of Sciences. added
Pocket: App to save web pages. added
Powermarks: Bookmark extension for browsers like Netscape, IE, Mozilla, Opera and NetCaptor. added
Printer Pro Desktop: Software to print using the printer connected to Mac. added
PubSubHubbub: A distributed publish/subscribe protocol. added
Pushover: Push notification services. added
Python urllib: Python library for opening URLs. added
Radian6 CommentReader: Web crawler for Radian6. added
Realview TV: Provides HD,3D videos to engage the website viewers. added
Sage: RSS and News Aggregator. added
Samsung Wallet: Mobile app to manage tickets, boarding passes, membership and coupons. added
Southern Living: Guide to Southern culture, recipes and travel. added
Stitcher: Internet radio for news and talk shows. added
StreetFire: Video portal for Automotive enthusiasts. added
Svpply: Online shopping portal. added
The Atlantic: News portal. added
The Baltimore Sun: Offcial website for the daily newspaper covering local and regional events in Baltimore. added
The Escapist Magazine: Online Magazine for Video game lovers. added
The Independent: Online portal for UK based and world news. added
Tinder: Social Network for connecting people. added
Tiny Tiny RSS: Open source news feed. added
Tunnelbear Login: Logins to Tunnelbear, a web browsing anonymizer service. added
UpTo
Date: Online clinical database for medical professionals. added
URLAppendBot: Prodcut of Profound Network, Web crawler to retreive correct business domain based on the input. added
urlgrabber: Python package for fetching files. added
uTorrent: BitTorrent client known for its lightweight and efficient design. added
For a complete list of new and modified information use this link.
For Assistance:
Visit the Sourcefire Support Site at https://support.sourcefire.com/.
Email Sourcefire Support at support@sourcefire.com.
Call Sourcefire Support at 410.423.1901 or 1.800.917.4134.
About the VRT:
The Sourcefire VRT is a group of renowned security experts working to proactively discover, assess, and respond to the latest trends in hacking activities, intrusion attempts, and vulnerabilities.
About Sourcefire:
Focused on its mission to be the leader in intelligent cybersecurity solutions, Sourcefire is transforming the way Global 2000 organizations and government agencies manage and minimize network security risks. With solutions from the network to the endpoint, Sourcefire provides customers with Agile Security that is as dynamic as the real world it protects and the attackers against which it defends.