Skip to main content

CND News and Blog

New Vulnerabilities Wednesday 27 September


New Alerts for Baker Hughes, Squid, Apple, Belden, Juniper Networks (Exploit), Mozilla, and Linux.

Baker Hughes 

Bently Nevada 3500 Rack (TDI Firmware) contains several vulnerabilities including exposure of sensitive information, cleartext transmission of sensitive information, and authentication bypass by capture-replay. Highest CVSSv3 score of 7.5
No patches, only mitigation.
More info.

Squid 

Due to a NULL pointer dereference bug Squid is vulnerable to a DoS attack against Squid's Gopher gateway. CVSSv3 score of 7.5
More info.

Apple 

Apple has published security updates for Safari and macOS.
More info.

Belden 

Multiple Expat vulnerabilities exist in Hirschmann HiOS products, HiSecOS products, BAT-C2, and GECKO. Highest CVSSv3 score of 9.8
More info.

Juniper Networks Exploit

A new exploit for a previously reported code execution vulnerability in Junos OS works without a previous file upload. Highest CVSSv3 score of 9.8
More info.

Mozilla 

Mozilla has published bulletins rated High for Firefox, Firefox ESR, and Thunderbird.
More info.

Linux 

SUSE has updated the kernel. More info.
OpenSUSE has updated the kernel. More info.



Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

A mobile version of our Security Wizardry Radar Page, providing vulnerability details and visibility for a variety of software and industries.

SecurityWizardry.com - Vulnerability Details

Security Wizardry Radar Page provides vulnerability details and visibility for a variety of software and industries.

Report Print
×
Stay Informed

When you subscribe to the blog, we will send you an e-mail when there are new updates on the site so you wouldn't miss them.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Sunday, 05 May 2024

Captcha Image

By accepting you will be accessing a service provided by a third-party external to https://www.cndltd.com/