Skip to main content

CND News and Blog

New Vulnerabilities Tuesday 06 August


Monthly Patches are out for Google Android and Samsung Android. New Alerts for Carrier, Hitachi, Janobe, Dell, and Linux.

Google 

Android Monthly Patches include 15 patched vulnerabilities, all rated High, plus patches from Arm, Imagination Technologies, MediaTek, and Qualcomm.
More info.

Samsung 

Samsung has included 14 vulnerabilities in their Monthly Patches, 1 rated Critical, 3 rated High,and 8 rated Moderate (2 with no details), plus updates from Google and Samsung Semiconductor.
More info.

Carrier 

The use of the Polyfill[.]io service is included with some LenelS2 products including NetBox, VRx Series, and NetVR. CDN was sold and Polyfill.io is delivering malicious code.
More info.

Hitachi 

Hitachi has published 10 new security bulletins identifying vulnerabilities in Command Suite, Automation Director, Configuration Manager, Infrastructure Analytics Advisor, Ops Center, Cosminexus, Tuning Manager, Storage Advisor, Ops Center API Configuration Manager, Ops Center Analyzer Viewpoint, Ops Center Viewpoint, and Device Manager. There are updates for 11 previously published bulletins as well.
More info.

Janobe 

INCIBE has published 40 vulnerabilities affecting Janobe, an open source payment system that integrates several payment methods, such as PayPal, Credit Card, Debit Card Payment 1.0, School Attendance Monitoring System 1.0 and School Event Management System 1.0. Highest CVSSv3 score of 9.8
No response from maintainer.
More info. And here.

Dell 

Data Protection Advisor remediation is available for multiple vulnerabilities. Dell rates this Critical.
More info.

XtremIO X2 remediation is available for multiple security vulnerabilities. Dell rates this Critical.
More info.

Linux 

Oracle Linux has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/