Cisco
Cisco has published 18 new bulletins, 12 rated High and the rest Medium. Eight are exploitable by unauthenticated remote attackers.
More info.
Vulnerabilities in Cisco Firepower Threat Defense Software could allow an unauthenticated, remote attacker to trigger a DoS condition. CVSSv3 score of 8.6
More info. And here. And here. And here.
A vulnerability in an IPsec VPN library of Cisco Adaptive Security Appliance Software and Cisco Firepower Threat Defense Software could allow an unauthenticated, remote attacker to read or modify data within an IPsec IKEv2 VPN tunnel. CVSSv3 score of 7.4
More info.
Vulnerabilities in Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software could allow an unauthenticated, remote attacker to cause a DoS on an affected device. CVSSv3 score of 8.6
More info. And here. And here.
IBM PowerVM Novalink is vulnerable because Dojo cloud allow a remote attacker to execute arbitrary code on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system. CVSSv3 score of 9.8
More info.
IBM Watson Discovery for IBM Cloud Pak for Data contains a vulnerable version of Java.PostgreSQL JDBC Driver. CVSSv3 score of 9.8
More info.
Oracle Linux has updated the kernel. More info.