(RHSA-2023:3741) Important: c-ares security update

The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: 0-byte UDP payload Denial of Service (CVE-2023-32067) For more ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2023-27243

An access control issue in Makves DCAP v3.0.0.122 allows unauthenticated attackers to obtain cleartext credentials via a crafted web request to the product API.Read More ...

Continue Reading
CVE-2023-25194

A flaw was found in Apache Kafka Connect's REST API that permits configuration of SASL property by an authenticated operator, which could allow connection to a malicious LDAP server and subsequent des ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

(RHSA-2023:3771) Important: Red Hat Virtualization security and bug fix update

The VDSM service is required by a Virtualization Manager to manage the Linux hosts. VDSM manages and monitors the host's storage, memory and networks as well as virtual machine creation, other host ad ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

php-imap vulnerable to RCE through a directory traversal vulnerability

### Summary An unsanitized attachment filename allows any unauthenticated user to leverage a directory traversal vulnerability which results in a remote code execution vulnerability. ### Details An at ...

Continue Reading
How to Implement a Secure API Gateway

As you rely more on APIs to connect microservices in modern applications, these APIs become a lucrative target for bad actors. Learn how an API gateway provides an extra layer of security, helping pro ...

Continue Reading
SUSE SLES15 Security Update : salt (SUSE-SU-2023:2572-1)

The remote SUSE Linux SLES15 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2023:2572-1 advisory. Note that Nessus has not tested for this issue but has ...

Continue Reading
SUSE SLES15 Security Update : salt (SUSE-SU-2023:2581-1)

The remote SUSE Linux SLES15 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2023:2581-1 advisory. Note that Nessus has not tested for this issue but has ...

Continue Reading

Back to Main

Subscribe for the latest news: