By michele654 on Thursday, 07 December 2023
Category: Vulnerabilities

New Vulnerabilities Thursday 07 December


New Alerts for Apache Struts, Google Pixel, Dell, and Linux.

Apache 

A vulnerability in Struts allows a remote attacker to manipulate file upload params and enable paths traversal. This can lead to uploading a malicious file which can be used to perform RCE. CVSSv3 score of 9.8
More info.

Google 

Monthly Patches for Google Pixel are out with 24 Pixel vulnerabilities, 3 rated Critical, 5 rated High, and 16 rated Moderate. It also includes updates for Android and Qualcomm.
More info.

Dell 

Dell PowerFlex appliance and PowerFlex rack remediation is available for multiple security vulnerabilities in third-party software. Dell rates this Critical.
More info. And here.

Linux
Oracle Linux has updated the kernel. More info.
Alpine Linux 3.19.0 has been released. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments