K01512680: Linux kernel vulnerability CVE-2019-11811

Linux kernel vulnerability CVE-2019-11811 Security Advisory Security Advisory Description An issue was discovered in the Linux kernel before 5.0.4. There is a use-after-free upon attempted read ... More info: https://support.f5.com/csp/article/K01512680?utm_source=f5support&utm_medium=RSS

K52285493: Multiple Intel CPU vulnerabilities

Multiple Intel CPU vulnerabilities Security Advisory Security Advisory Description CVE-2020-8670 Race condition in the firmware for some Intel(R) Processors may allow a privileged user to ... More info: https://support.f5.com/csp/article/K52285493?utm_source=f5support&utm_medium=RSS

K08593253: Intel CPU vulnerability CVE-2021-0144

Intel CPU vulnerability CVE-2021-0144 Security Advisory Security Advisory Description Insecure default variable initialization for the Intel BSSA DFT feature may allow a privileged user to ... More info: https://support.f5.com/csp/article/K08593253?utm_source=f5support&utm_medium=RSS

K01249564: Linux kernel vulnerability CVE-2020-27786

Linux kernel vulnerability CVE-2020-27786 Security Advisory Security Advisory Description A flaw was found in the Linux kernels implementation of MIDI, where an attacker with a local account and ... More info: https://support.f5.com/csp/article/K01249564?utm_source=f5support&utm_medium=RSS

K04337834: Linux kernel vulnerability CVE-2017-10661

Linux kernel vulnerability CVE-2017-10661 Security Advisory Security Advisory Description Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or ... More info: https://support.f5.com/csp/article/K04337834?utm_source=f5support&utm_medium=RSS

K82248373: Linux kernel vulnerability CVE-2020-16119

Linux kernel vulnerability CVE-2020-16119 Security Advisory Security Advisory Description Use-after-free vulnerability in the Linux kernel exploitable by a local attacker due to reuse of a DCCP ... More info: https://support.f5.com/csp/article/K82248373?utm_source=f5support&utm_medium=RSS

K28116312: Linux-PAM vulnerability CVE-2020-27780

Linux-PAM vulnerability CVE-2020-27780 Security Advisory Security Advisory Description A flaw was found in Linux-Pam in versions prior to 1.5.1 in the way it handle empty passwords for non- ... More info: https://support.f5.com/csp/article/K28116312?utm_source=f5support&utm_medium=RSS

Drupal core – Moderately critical – Cross Site Scripting – SA-CORE-2021-011

Project: Drupal coreDate: 2021-November-17Security risk: Moderately critical 13∕25 AC:Basic/A:User/CI:Some/II:Some/E:Theoretical/TD:DefaultVulnerability: Cross Site ScriptingDescription: The Drupal project uses the CKEditor library for WYSIWYG editing. CKEditor has released a security update that impacts Drupal.Vulnerabilities are possible if Drupal is configured to allow use of the CKEditor library for WYSIWYG editing. An attacker that can create or edit content (even without access to More info: https://www.drupal.org/sa-core-2021-011

Monitoring Winnti 4.0 C2 Servers for Two Years

The VMware Threat Analysis Unit (TAU) continually monitors the latest threats and attacks affecting our customers and businesses worldwide. For years, TAU has reversed and emulated the network Command and Control (C2) protocols of high-profile malware families, especially used for cyber espionage, in order to discover active C2 servers on the Internet. One family that TAU has tracked for years is Winnti 4.0 malware. TAU reported last year The post Monitoring Winnti 4.0 C2 Servers for Two Years More info: https://blogs.vmware.com/security/2021/11/monitoring-winnti-4-0-c2-servers-for-two-years.html?utm_source=rss&utm_medium=rss&utm_campaign=monitoring-winnti-4-0-c2-servers-for-two-years
Translate »