By michele654 on Thursday, 25 September 2025
Category: Vulnerabilities

New Vulnerabilities Thursday 25 September


New Alerts for Extreme Networks, Apache (IoTDB), F5, Dell, IBM, and Linux.

Extreme Networks

A vulnerability in CPython "TarFile" module that can result in an infinite loop and deadlock during the parsing of maliciously crafted tar archives affects ExtremeCloud IQ - Site Engine (XIQ-SE).
More info.

Apache

Apache IoTDB contains 2 vulnerabilities, DoS and deserialization of untrusted data.
More info. And here.

F5

Traffix SDC contains a vulnerability in libxml2 that can allow a DoS. No patches yet. CVSSv3 score of 3.1
More info.

Dell

Dell has published a Critical bulletin for Dell Custom VMware ESXi.
More info.

IBM

IBM has published Critical bulletins for App Connect Enterprise, Watson Developer Cloud, and watsonx Assistant Cartridge.
More info.

Linux

SUSE has updated the kernel. More info.
Red Hat has updated the kernel. More info.
Ubuntu has updated the kernel. More info.
AlmaLinux has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details