New Alerts for Cisco, Arcserve, Apache Tomcat, BD, Mitsubishi Electric, IBM, and Linux.
Cisco
Cisco has published 7 new security bulletins. Highest CVSSv3 score of 7.8.
More info.
A vulnerability in theDHCPv4 server feature of IOS XR Software could allow a remote attacker to trigger a crash of the dhcpd process, resulting in a DoS. CVSSv3 score of 5.3
More info.
Multiple vulnerabilities in the IP ACL processing in the ingress direction on MPLS and Pseudowire interfaces of IOS XR Software could allow a remote attacker to bypass a configured ACL. CVSSv3 score of 5.8
More info.
Multiple vulnerabilities exist in Arcserve Unified Data Protection (UDP) allowing authentication bypass and DoS. Highest CVSSv3 score of 9.8
More info. And here. And here.
Apache Tomcat has been updated to fix 2 DoS vulnerabilities.
More info. And here.
BD has published security updates for third-party software for BACTEC FX, ViperLT, and BACTEC FX40.
The bulletins are dated 30 and 31 March.
More info.
Information disclosure and RCE vulnerabilities exist in MELSEC-Q/L Series CPU modules. A remote attacker can read arbitrary information or execute malicious code by sending a specially crafted packet. CVSSv3 score of 9.8
A patch will be released in the near future.
More info.
Multple vulnerabilities affect IBM Sterling Secure Proxy. Highest CVSSv3 score of 9.4
More info.
Red Hat has updated the kernel, kernel-rt, and kpatch. More in
Comments