Skip to main content

CND News and Blog

New Vulnerabilities Wednesday 20 September


New Alerts for Omron, Atlassian, BIND, and Linux.

Omron 

Omron CJ/CS/CP series programmable logic controllers use the FINS protocol, which is vulnerable to brute-force attacks. The controllers do not enforce any rate limit on password guesses to password-protected memory regions. CVSSv3 score of 7.5
More info.

Atlassian 

Four high-severity vulnerabilities have been fixed in Atlassian products. Highest CVSSv3 score of 8.5
More info.

BIND 

A flaw in the networking code handling DNS-over-TLS queries may cause named to terminate unexpectedly due to an assertion failure. CVSSv3 score of 7.5
More info.

An issue with Recursion depth may cause the packet-parsing code to run out of available stack memory, causing named to terminate unexpectedly. CVSSv3 score of 7.5
More info.

Linux 

SUSE has updated the kernel and kernel-rt. More info.
OpenSUSE has updated the kernel and kernel-rt. More info.
Red Hat has updated the kernel. More info.
Ubuntu has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Sunday, 05 May 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/