By michele654 on Wednesday, 27 September 2023
Category: Vulnerabilities

New Vulnerabilities Wednesday 27 September


New Alerts for Baker Hughes, Squid, Apple, Belden, Juniper Networks (Exploit), Mozilla, and Linux.

Baker Hughes 

Bently Nevada 3500 Rack (TDI Firmware) contains several vulnerabilities including exposure of sensitive information, cleartext transmission of sensitive information, and authentication bypass by capture-replay. Highest CVSSv3 score of 7.5
No patches, only mitigation.
More info.

Squid 

Due to a NULL pointer dereference bug Squid is vulnerable to a DoS attack against Squid's Gopher gateway. CVSSv3 score of 7.5
More info.

Apple 

Apple has published security updates for Safari and macOS.
More info.

Belden 

Multiple Expat vulnerabilities exist in Hirschmann HiOS products, HiSecOS products, BAT-C2, and GECKO. Highest CVSSv3 score of 9.8
More info.

Juniper Networks Exploit

A new exploit for a previously reported code execution vulnerability in Junos OS works without a previous file upload. Highest CVSSv3 score of 9.8
More info.

Mozilla 

Mozilla has published bulletins rated High for Firefox, Firefox ESR, and Thunderbird.
More info.

Linux 

SUSE has updated the kernel. More info.
OpenSUSE has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments