By michele654 on Wednesday, 29 November 2023
Category: Vulnerabilities

New Vulnerabilities Wednesday 29 November


New Alerts for Delta Electronics, Google Chrome, Sierra Wireless, IBM, Dell, and Linux.

Delta Electronics 

InfraSuite Device Master contains several vulnerabilities, including Path Traversal, Deserialization of Untrusted Data, and Exposed Dangerous Method or Function. Successful exploitation could allow a remote attacker to remotely execute arbitrary code and obtain plaintext credentials. Highest CVSSv3 score of 9.8
More info.

Google 

Google has updated Chrome for Desktop to fix 7 security vulnerabilities, most rated High.
More info.

Microsoft is aware. More info.

Sierra Wireless 

Sierra Wireless has updated ALEOS, an OS in AirLink Routers, to fix eight security vulnerabilities. Highest CVSSv3 score of 8.3
More info.

IBM 

A vulnerability in Apache Avro Java SDK affects IBM InfoSphere Information Server. CVSSv3 score of 9.8
More info.

IBM Maximo Application Suite - Monitor Component uses systeminformation which contains a vulnerability. CVSSv3 score of 9.8
More info.

IBM Sterling B2B Integrator uses Spring Framework, which is affected by multiple vulnerabilies. Highest CVSSv3 score of 9.1
More info.

Dell 

Dell Cloud Tiering Appliance remediation is available for multiple security vulnerabilities. Dell rates this High.
More info. And here.

Linux 

Ubuntu has updated the kernel. More info.
Mageia has updated the kernel. More info.

Security Wizardry Cyber Threat Intelligence - The Radar Page

Security Wizardry Cyber Threat Intelligence - The Mobile Radar Page

SecurityWizardry.com - Vulnerability Details

Leave Comments