Monthly Patches are out for Google Android. Quarterly Patches are out for Splunk. New Alerts for Google Chrome, ABB, Pilz, HPE, ModSecurity, and Linux.
Google
Google has published monthly patches for Android with 11 vulnerabilities rated High, plus Qualcomm, Imagination Technologies, and Arm vulnerability patches.
More info.
Google has published an update for Chrome for Desktop that fixes 3 security vulnerabilities.
More info.
Splunk Quarterly Patches have been published with 2 vulnerabilities, one rated High and one rated Medium, and 2 third-party software updates rated Critical. Of the 2 vulnerabilities, Highest CVSSv3 score of 8.
More info.
ABB Welcome IP-Gateway products contain several security vulnerabilities. Highest CVSSv3 score of 9.8
More info.
Pilz has published 4 new bulletins, identifying vulnerabilities in PiCtory, IndustrialPI Webstatus, and Node-RED integration. Highest CVSSv3 score of 9.8
More info.
Security vulnerabilities have been identified in HPE StoreOnce Software thatcould allow a remote attacker to achieve RCE, disclosure of information, server-side request forgery, authentication bypass, arbitrary file deletion, and directory traversal information disclosure. Highest CVSSv3 score of 9.8
More info.
A DoS vulnerability has been identified ModSecurity. Patches will be published soon. CVSSv3 score of 7.5
More info.
Ubuntu has updated the kernel. More info.
Amazon Linux 2023 has updated the kernel and microcode. More info.