Oracle Linux 8 : openssl (ELSA-2023-12213)
The remote Oracle Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2023-12213 advisory.
- There is a type confusion vulnerability relating ...
Continue Reading
March 29, 2023
Security Bulletin: IBM Tivoli Netcool/OMNIbus Transport Module Common Integration Library is affected by vulnerability in Apache Kafka (CVE-2023-25194)
## Summary
Apache Kafka is used by IBM Tivoli Netcool/OMNIbus Transport Module Common Integration Library as part of the Kafka integration. The latest patch includes Apache Kafka 3.4.0 to fix the vuln ...
Continue Reading
March 29, 2023
CBL Mariner 2.0 Security Update: nodejs (CVE-2023-23918)
The version of nodejs installed on the remote CBL Mariner 2.0 host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the CVE-2023-23918 advisory.
- A privile ...
Continue Reading
March 29, 2023
CVE-2023-26329
Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypa ...
Continue Reading
March 29, 2023
CVE-2023-26327
Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypa ...
Continue Reading
March 29, 2023
CVE-2023-26328
Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this ...
Continue Reading
March 29, 2023
Rocky Linux 8 : openssl (RLSA-2023:1405)
The remote Rocky Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2023:1405 advisory.
- A timing based side channel exists in the OpenSSL R ...
Continue Reading
March 29, 2023
CVE-2023-25881
Adobe Dimension versions 3.4.7 (and earlier) is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of ...
Continue Reading
March 28, 2023
CVE-2023-25907
Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. ...
Continue Reading
March 28, 2023
CVE-2023-25906
Adobe Dimension versions 3.4.7 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. ...
Continue Reading
March 28, 2023