By michele654 on Friday, 17 March 2023
Category: Vulnerabilities

New Vulnerabilities Friday 17 March


New Alerts for Honeywell, Samsung (0-Day), IBM, NetApp, BD, and Linux.

Honeywell 

Honeywell OneWireless Wireless Device Manager contains several vulnerabilities, including Command Injection, Use of Insufficiently Random Values, and Missing Authentication for Critical Function. Highest CVSSv3 score of 9.8
More info.

Samsung 0-Day

Eighteen 0-day vulnerabilities have been reported in Exynos Modems produced by Samsung Semiconductor. The four most severe of these eighteen vulnerabilities allow an attacker to remotely compromise a phone at the baseband level with no user interaction, and require only that the attacker know the victim's phone number.
More info.

IBM 

IBM Cognos Command Center is affected by multiple vulnerabilities. Highest CVSSv3 score of 9.8
More info.

NetApp 

NetApp has published 11 new bulletins identifying vulnerabilities third-party software in their products. Highest CVSSv3 score of 9.8
Five have patches.
More info.

BD 

BD has updated third-party software in BACTEC FX40.
More info.

Linux 

SUSE has updated the kernel. More info.
Oracle Linux has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments