New Alerts for SICK, Aruba, and Asterisk. Tomorrow is Patch Tuesday.
SICK
Several security vulnerabilities have been found in the SICK ICR890-4. If exploited, these could allow a remote attacker to compromise the availability or confidentiality of the SICK ICR890-4. Highest CVSSv3 score of 8.6
More info.
HPE Aruba Networking has released patches for ArubaOS that address multiple security vulnerabilities. Highest CVSSv3 score of 8.8, unauthenticated highest of 6.1
More info.
Possible buffer overread when parsing a specially crafted STUN message with unknown attribute. The vulnerability affects Asterisk users using ICE and/or WebRTC. CVSSv3 score of 6.5
More info.