By michele654 on Tuesday, 28 June 2022
Category: Vulnerabilities

New Vulnerabilities Tuesday 28 June


New Alerts for Hitachi Energy, Google Chrome, Google ChromeOS, IBM, HPE, and Linux.

Hitachi Energy

A vulnerability exists in the HCI Modbus TCP function included in RTU500 series firmware. An attacker could exploit the vulnerability by sending a specially crafted message to the RTU500 in a high rate, causing the targeted RTU500 CMU to reboot. The vulnerability is caused by a lack of flood control which causes an internal stack overflow resulting in a DoS. CVSSv3 score of 7.5
More info.

Google 

Google has updated Chrome for Desktop, with no highlighted security fixes. However, Microsoft says they're aware of security fixes, so there must be.
More info.

Microsoft is aware on working on Edge. More info.

Google has updated ChromeOS with 3 security fixes rated High, plus Chrome browser fixes.
More info.

IBM 

IBM Robotic Process Automation is affected by multiple vulnerabilities in open source components. Highest CVSSv3 score of 9.8
More info.

HPE 

Multiple security vulnerabilities have been identified in the HPE B-Series SANnav Management Portal. The vulnerabilities could be exploited to disclose sensitive information, perform unauthorized access and modification of data and cause partial DoS. Highest CVSSv3 score of 9.4
More info.

Linux 

Red Hat has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments