Category: CVSS3 - HIGH
November 8, 2022—KB5020009 (Monthly Rollup)

None ## **Summary** Learn more about this cumulative security update, including improvements, any known issues, and how to get the update. **REMINDER** [Windows Server 2012]() has reached the end of m ...

Continue Reading
November 8, 2022—KB5020023 (Monthly Rollup)

None ## **Summary** Learn more about this cumulative security update, including improvements, any known issues, and how to get the update. **REMINDER** [Windows 8.1]() will reach end of support on Jan ...

Continue Reading
Mozilla Thunderbird < 102.7

The version of Thunderbird installed on the remote Windows host is prior to 102.7. It is, therefore, affected by multiple vulnerabilities as referenced in the mfsa2023-03 advisory. - An out of date ...

Continue Reading
Oracle Linux 7 : thunderbird (ELSA-2023-0456)

The remote Oracle Linux 7 host has a package installed that is affected by multiple vulnerabilities as referenced in the ELSA-2023-0456 advisory. - A mishandled security check when creating a WebSoc ...

Continue Reading
Amazon Linux 2022 : (ALAS2022-2023-273)

It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2022-2023-273 advisory. - Python 3.9.x before 3.9.16 and 3.10.x before 3.10.9 on Linux allows local privilege escalati ...

Continue Reading
SUSE SLES15 / openSUSE 15 Security Update : rubygem-websocket-extensions (SUSE-SU-2023:0127-1)

The remote SUSE Linux SLES15 / openSUSE 15 host has packages installed that are affected by a vulnerability as referenced in the SUSE-SU-2023:0127-1 advisory. - websocket-extensions ruby module prio ...

Continue Reading
Amazon Linux 2022 : (ALAS2022-2022-210)

It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2022-2022-210 advisory. - containerd is a container runtime available as a daemon for Linux and Windows. A bug was fou ...

Continue Reading
Security Updates for Azure CycleCloud (Nov 2022)

The Azure CycleCloud product is missing security updates. It is, therefore, affected by an elevation of privilege vulnerability. An unauthenticated, adjacent attacker can exploit this, via brute force ...

Continue Reading
Amazon Linux 2022 : (ALAS2022-2023-274)

It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2022-2023-274 advisory. - Python 3.9.x before 3.9.16 and 3.10.x before 3.10.9 on Linux allows local privilege escalati ...

Continue Reading
Security Bulletin: Vulnerability in GraphQL Java may affect IBM Robotic Process Automation and result in a denial of service (CVE-2022-37734)

## Summary There is a vulnerability in the Java used by IBM Robotic Process Automation as part of it's infrastructure, license management and UMS which may result in a denial of service. (CVE-2022-377 ...

Continue Reading
Load more