By michele654 on Tuesday, 04 June 2024
Category: Vulnerabilities

New Vulnerabilities Tuesday 04 June


Monthly Patches are out for Google Android and Samsung. New Alerts for Microsoft Edge, Codesys, Mitsubishi Electric, Zyxel, and Linux.

Google 

Monthly Patches are out for Android with 12 addressed vulnerabilities, plus Arm, MediaTek, and Qualcomm patches.
More info.

Samsung 

Samsung Monthly Patches are out with 22 SVEs addressed vulnerabilities rated High, plus Google Android patches.
More info.

Microsoft 

Microsoft has updated Edge to patch the latest chromium vulnerabilities.
More info.

Codesys 

A remote attacker can use a malicious OPC UA client to send a crafted request to affected CODESYS products which can cause a DoS due to incorrect calculation of buffer size. CVSSv3 score of 7.5
More info.

Mitsubishi Electric 

Information disclosure and DoS vulnerabilities due to OpenSSL vulnerabilities exist in CC-Link IE TSN Industrial Managed Switch. Highest CVSSv3 score of 6.5
More info.

Zyxel 

Zyxel NAS326 and NAS542 devices contain vulnerabilities that allow a remote attacker to execute OS commands by sending a crafted HTTP POST request and execute arbitrary code by uploading a crafted configuration file to a vulnerable device.
More info.

Linux 

Mageia has updated the microcode. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details