New Alerts for Google Chrome, Atos, F5, IBM, and Linux.
Splunk Quarterly Patches have been pushed off 2 weeks.
Chrome for Desktop has been updated to correct 15 security vulnerabilities, most of which are rated Medium or Low.
More info.
Microsoft is aware. More info.
Multiple vulnerabilities have been identified in Unify OpenScape 4000 Assistant and Unify OpenScape 4000 Manager. The vulnerability with the highest severity may allow a remote attacker to run arbitrary code and get administrative access to the system. Highest CVSSv3 score of 9.6
More info.
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data contains vulnerable third-party software. Highest CVSSv3 score of 9.8
More info. And here. And here.
F5 has published 10 new CVEs for their May update. No link.
BIG-IP TMM contains an SSL vulnerability that allows a remote attacker to cause a DoS on the BIG-IP system. There is no control plane exposure; this is a data plane issue only. CVSSv3 score of 5.3
More info.
BIG-IP Edge Client for Windows and macOS contains a message integrity vulnerability that allows an attacker with a man-in-the-middle position to modify requests and responses to and from the BIG-IP Edge Client. CVSSv3 score of 5.9
More info.
Oracle Linux has updated the kernel. More info.
Gentoo Linux has updated systemd, sudo, syslog-ng, and others. More info.
Security Wizardry Cyber Threat Intelligence - The Radar Page
Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page