By michele654 on Friday, 01 November 2024
Category: Vulnerabilities

New Vulnerabilities Friday 01 November


New Alerts for Ricoh, Microsoft Edge, Digi, Moxa, IBM, Splunk, and Linux.

Ricoh 

Ricoh has identified a buffer overflow vulnerability when using the Web Image Monitor that could potentially allow a DoS or RCE. CVSSv3 score of 9.8
More info.

Microsoft 

Microsoft has updated Edge with the latest chromium updates.
More info.

Digi 

Web server related vulnerabilities have been updated in ConnectPort LTS, including requiring a password to activate the admin user.
More info.

Moxa 

Multiple Moxa Ethernet switches are affected by vulnerabilities. Highest CVSSv3 score of 5.9
More info.

IBM 

IBM has published several bulletins rated Critical, including updates for QRadar SIEM.
More info.

Splunk 

Third-Party package updates are available in the Splunk Add-on for Google Cloud Platform. Splunk rates this High.
More info.

Linux 

Ubuntu has updated the kernel. More info.
Amazon Linux has updated the microcode. More info.
Amazon Linux 2 and Amazon Linux 2023 have updated the kernel and microcode. More info. And here.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details