Skip to main content

CND News and Blog

New Vulnerabilities Tuesday 02 April


Monthly Patches are out for Google Android and Samsung. New Alerts for IBM and Linux.

Google 

Android Monthly Patches are out, with 8 vulnerabilities, all rated High, plus MediaTek, Widevine, and Qualcomm patches.
More info.

Samsung 

Samsung Monthly Patches for Mobile are out, with Android patches and 17 additional Samsung vulnerabilities.
More info.

IBM 

IBM Cloud Pak for Network Automation update addresses multiple vulnerabilities. Highest CVSSv3 score of 9.8
More info.

IBM App Connect Enterprise Certified Container instances that run or edit flows containing JSONata mapping are vulnerable to arbitrary code execution. CVSSv3 score of 9.8
More info.

IBM App Connect Enterprise is vulnerable to a DoS and RCE. Highest CVSSv3 score of 9.8
More info.

A vulnerability in Pillow affects IBM Process Mining. CVSSv3 score of 9.
More info.

IBM Jazz for Service Management and IBM Tivoli Netcool Impact are vulnerable to Apache Derby security bypass. CVSSv3 score of 9.1
More info. And here.

Netcool Operations Insights has addressed multiple security vulnerabilities. Highest CVSSv3 score of 9.8
More info.

IBM Maximo Application Suite uses postgresql-42.3.8.jar which is vulnerable. CVSSv3 score of 10.
More info.

Linux 

Amazon Linux 2 has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Thursday, 09 May 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/