By michele654 on Wednesday, 20 September 2023
Category: Vulnerabilities

New Vulnerabilities Wednesday 20 September


New Alerts for Omron, Atlassian, BIND, and Linux.

Omron 

Omron CJ/CS/CP series programmable logic controllers use the FINS protocol, which is vulnerable to brute-force attacks. The controllers do not enforce any rate limit on password guesses to password-protected memory regions. CVSSv3 score of 7.5
More info.

Atlassian 

Four high-severity vulnerabilities have been fixed in Atlassian products. Highest CVSSv3 score of 8.5
More info.

BIND 

A flaw in the networking code handling DNS-over-TLS queries may cause named to terminate unexpectedly due to an assertion failure. CVSSv3 score of 7.5
More info.

An issue with Recursion depth may cause the packet-parsing code to run out of available stack memory, causing named to terminate unexpectedly. CVSSv3 score of 7.5
More info.

Linux 

SUSE has updated the kernel and kernel-rt. More info.
OpenSUSE has updated the kernel and kernel-rt. More info.
Red Hat has updated the kernel. More info.
Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments