Uncontrolled Resource Consumption

opentelemetry-go-contrib is a collection of extensions for OpenTelemetry-Go. The v0.38.0 release of `go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp` uses the `httpconv.ServerRequest` fu ...

Continue Reading
Uncontrolled Resource Consumption

opentelemetry-go-contrib is a collection of extensions for OpenTelemetry-Go. The v0.38.0 release of `go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp` uses the `httpconv.ServerRequest` fu ...

Continue Reading
Exposure of Sensitive Information to an Unauthorized Actor

Helm is a tool that streamlines installing and managing Kubernetes applications.`getHostByName` is a Helm template function introduced in Helm v3. The function is able to accept a hostname and return ...

Continue Reading
Ubuntu 16.04 ESM / 18.04 LTS / 20.04 LTS : Nova vulnerabilities (USN-5866-1)

The remote Ubuntu 16.04 ESM / 18.04 LTS / 20.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-5866-1 advisory. - An issue was discovered in O ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Nova vulnerabilities

## Releases * Ubuntu 20.04 LTS * Ubuntu 18.04 LTS * Ubuntu 16.04 ESM ## Packages * nova - OpenStack Compute cloud infrastructure It was discovered that Nova did not properly manage data logged ...

Continue Reading

CVSS3 - HIGH

CVSS2 - HIGH

Security Bulletin: IBM QRadar SIEM includes multiple components with known vulnerabilities

## Summary The product includes multiple vulnerable components (e.g., framework libraries) that may be identified and exploited with automated tools. IBM QRadar SIEM has addressed the applicable CVEs. ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - LOW

Octopus Strike! Three Argo CD API Exploits In Two Weeks

Argo CD is a popular [Continuous Deployment]() tool that enables [DevOps]() teams to manage their applications across multiple environments. However, in the past two weeks, three critical vulnerabilit ...

Continue Reading

CVSS3 - CRITICAL

Fedora 37 : 1:openssl (2023-57f33242bc)

The remote Fedora 37 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2023-57f33242bc advisory. - A timing based side channel exists in the OpenS ...

Continue Reading

Back to Main

Subscribe for the latest news: