Skip to main content

CND News and Blog

New Vulnerabilities Friday 05 July


New Alerts for Exim, CODESYS, IBM, and Linux.

Exim 

Exim misparses a multiline RFC 2231 header filename, allowing remote attackers to bypass a $mime_filename extension-blocking protection mechanism, and deliver executable attachments to the mailboxes of end users.
More info.

CODESYS 

CODESYS Control runtime system uses the OPC UA stack, which is vulnerable to a DoS. CVSSv3 score of 7.5
More info.

IBM 

IBM Instana Observability is vulnerable to Improper Input Validation due to Apache Avro Java SDK. CVSSv3 score of 9.8
More info.

Linux 

A vulnerability in IPv6 can lead to a DoS.
More info.

There are several other linux vulnerabilities reported, worth a look. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/