SUSE SLES12 Security Update : openssl (SUSE-SU-2023:0684-1)
The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0684-1 advisory.
- A timing based side channel exists in the ...
Continue Reading
March 10, 2023
SUSE SLES15 Security Update : nodejs16 (SUSE-SU-2023:0673-1)
The remote SUSE Linux SLES15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0673-1 advisory.
- A privilege escalation vulnerability exist ...
Continue Reading
March 10, 2023
php: Fix of 3 CVEs
- CVE-2023-0567: crypt: Fix validation of malformed BCrypt hashes
- CVE-2023-0568: Fix array overrun when appending slash to paths
- CVE-2023-0662: Fix DoS vulnerability when parsing multipart request ...
Continue Reading
March 09, 2023
php: Fix of 3 CVEs
- CVE-2023-0567: crypt: Fix validation of malformed BCrypt hashes
- CVE-2023-0568: Fix array overrun when appending slash to paths
- CVE-2023-0662: Fix DoS vulnerability when parsing multipart request ...
Continue Reading
March 09, 2023
Security Bulletin: z/Transaction Processing Facility is affected by vulnerabilities in the Apache Kafka (kafka-clients) and cryptography packages
## Summary
The Apache Kafka and cryptography packages are used by the z/TPF system in runtime metrics collection and the z/TPF real-time insights dashboard starter kit. The z/TPF system was updated to ...
Continue Reading
March 09, 2023
EulerOS 2.0 SP11 : python3 (EulerOS-SA-2023-1414)
According to the versions of the python3 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :
- Python 3.9.x before 3.9.16 and 3.10.x befor ...
Continue Reading
March 08, 2023
EulerOS 2.0 SP11 : python3 (EulerOS-SA-2023-1429)
According to the versions of the python3 packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :
- Python 3.9.x before 3.9.16 and 3.10.x before ...
Continue Reading
March 08, 2023
Security Bulletin: IBM MQ is affected by issues in IBM WebSphere Application Server Liberty (CVE-2022-3509, CVE-2022-3171)
## Summary
Issues were identified in IBM WebSphere Application Server Liberty, which IBM MQ ships and uses to supply IBM MQ Console and IBM MQ REST API functionality.
## Vulnerability Details
**CVEID: ...
Continue Reading
March 07, 2023
ol8addon security update
delve
[1.9.1-1.0.1]
- Bump version of delve from 1.8.3 to 1.9.1
[1.8.3-1.0.1]
- Bump version of delve from 1.7.2 to 1.8.3
[1.7.2-1.0.1]
- Bump version of delve from 1.6.0 to 1.7.2, enable aarch64
[1.6 ...
Continue Reading
March 07, 2023
Tenable SecurityCenter <= 5.23.1 Multiple Vulnerabilities (TNS-2023-08)
According to its self-reported version, the Tenable SecurityCenter application installed on the remote host is running Read More ...
Continue Reading
March 07, 2023