By michele654 on Wednesday, 26 April 2023
Category: Vulnerabilities

New Vulnerabilities Wednesday 26 April


New Alerts for Keysight, Hitachi Energy, Tenable, and Linux.

Keysight 

Keysight N8844A Data Analytics Web Service deserializes untrusted data without sufficiently verifying the resulting data will be valid. A remote attacker could achieve RCE. CVSSv3 score of 9.8
EOL, find a replacement.
More info.

Hitachi Energy 

Multiple vulnerabilities in libexpat affect the AFS65x, AFS66x, AFS67x, AFR67x and AFF66x series products. Highest CVSSv3 score of 9.8
More info.

Multiple vulnerabilities in Wind River VxWorks and OpenSSL that affect RTU500 series. Highest CVSSv3 score of 9.8
More info.

Multiple vulnerabilities exist in open-source software components used in MSM. Highest CVSSv3 score of 9.8
More info.

Tenable 

Tenable has updated PHP in Tenable.sc. Highest CVSSv3 score of 7.5
More info.

Linux 

SUSE has updated the kernel. More info.
Red Hat has updated the kernel and rt-kernel. More info.
Ubuntu has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details