(RHSA-2023:0560) Critical: OpenShift Container Platform 4.10.51 security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. Security Fix(es): * jenkins-plugin/scri ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

(RHSA-2023:0560) Critical: OpenShift Container Platform 4.10.51 security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. Security Fix(es): * jenkins-plugin/scri ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Go SSH library vulnerable to Man-in-the-Middle attacks

The Go SSH library (x/crypto/ssh) by default does not verify host keys, facilitating man-in-the-middle attacks. Default behavior changed in commit e4e2799 to require explicitly registering a hostkey v ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Improper Input Validation in etcd

In etcd before versions 3.3.23 and 3.4.10, a large slice causes panic in decodeRecord method. The size of a record is stored in the length field of a WAL file and no additional validation is done on t ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

EulerOS 2.0 SP8 : tomcat (EulerOS-SA-2023-1341)

According to the versions of the tomcat packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities : - If Apache Tomcat 8.5.0 to 8.5.82, 9.0.0-M1 to ...

Continue Reading

CVSS3 - HIGH

Security Bulletin: Multiple security vulnerabilities are addressed with IBM Business Automation Manager Open Editions 8.0.2

## Summary In addition to updates of open source dependencies, the following security vulnerabilities are addressed with IBM Business Automation Manager Open Editions 8.0.2 ## Vulnerability Details ** ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Exploit for Deserialization of Untrusted Data in Apache Log4J

# Log4Shell Read More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Security Bulletin: A Security Vulnerability has been identified in the IBM Java SDK as shipped with IBM Security Verify Access.

## Summary A Security Vulnerability in the IBM Java SDK OpenJ9 affects the IBM Security Verify Access (ISVA) Appliance and Container images. ## Vulnerability Details ** CVEID: **[CVE-2021-28167]() ** ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: