Atlassian Jira Service Desk 4.8.1 < 4.12.0 Information Disclosure In API and Integrations
According to its self-reported version number, the Atlassian Jira Service Desk application running on the remote host is version 4.8.x prior to 4.12.0. It is, therefore, affected by a flaw which may p ...
Continue Reading
March 08, 2023
SUSE SLES12 Security Update : python-rsa (SUSE-SU-2023:0648-1)
The remote SUSE Linux SLES12 host has a package installed that is affected by a vulnerability as referenced in the SUSE- SU-2023:0648-1 advisory.
- It was found that python-rsa is vulnerable to Blei ...
Continue Reading
March 08, 2023
VMware NSX Manager vulnerabilities being actively exploited in the wild
The Wallarm Detect team has found exploit attempts in the wild of [CVE-2022-31678]() and [CVE-2021-39144](). The original vulnerabilities were found in VMware NSX Manager at the end of last year, and ...
Continue Reading
March 06, 2023
(RHSA-2023:1064) Critical: OpenShift Developer Tools and Services for OCP 4.12 security update
Jenkins is a continuous integration server that monitors executions of repeated jobs, such as building a software project or jobs run by cron.
Security Fix(es):
* jenkins-plugin/script-security: Sandb ...
Continue Reading
March 06, 2023
Directus vulnerable to Server-Side Request Forgery On File Import
### Summary
Directus versions (encodeURL(importURL), {
responseType: 'stream',
});
} catch (err: any) {
logger.warn(err, `Couldn't fetch file from url "${importURL}"`);
throw new S ...
Continue Reading
March 06, 2023
Important Photon OS Security Update – PHSA-2023-3.0-0538
Updates of ['telegraf', 'linux-secure', 'harfbuzz', 'kafka', 'bindutils', 'openssl', 'linux-rt', 'python3', 'gnutls', 'containerd', 'linux', 'linux-esx', 'linux-aws'] packages of Photon OS have been r ...
Continue Reading
February 27, 2023
(RHSA-2023:0777) Critical: OpenShift Container Platform 4.9.56 security update
Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments.
This advisory contains the RPM packages ...
Continue Reading
February 23, 2023
(RHSA-2023:0777) Critical: OpenShift Container Platform 4.9.56 security update
Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments.
This advisory contains the RPM packages ...
Continue Reading
February 23, 2023
Debian DLA-3325-1 : openssl – LTS security update
The remote Debian 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-3325 advisory.
- AES OCB mode for 32-bit x86 platforms using the AES-NI assemb ...
Continue Reading
February 20, 2023
Security Bulletin: Vulnerability in RC4 stream cipher affects the IBM FlashSystem models 840 and 900 (CVE-2015-2808)
## Summary
The RC4 âBar Mitzvahâ Attack for SSL/TLS affects the IBM® FlashSystem⢠840 and IBM FlashSystem 900.
## Vulnerability Details
**CVEID:** [_CVE-2015-2808_]()
**DESCRIPTIO ...
Continue Reading
February 18, 2023