By michele654 on Monday, 10 June 2024
Category: Vulnerabilities

New Vulnerabilities Monday 10 June


New Alerts for SolarWinds, Broadcom, checkmk, PyTorch, Dell, and Linux.

SolarWinds 

SolarWinds Serv-U contained a directory transversal vulnerability that would allow access to read sensitive files on the host machine. Highest CVSSv3 score of 8.6
More info.

Broadcom 

VMware Tanzu Application Service for VMs GoRouter contains a DoS vulnerability. CVSSv3 score of 6.7
More info.

checkmk 

2FA failures could not trigger account lockout. CVSSv3 score of 5.9
More info.

PyTorch 

During RPC calls using torch.distributed.rpc, the framework allows a remote attacker to RPC over the network to call Python built-in functions, such as eval, and load other Python libraries to execute arbitrary commands. CVSSv3 score of 10
More info.

Dell 

Dell Data Protection Central remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system. Dell rates this Critical.
More info.

Linux 

Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details