Kategorie: Allgemein

[NEU] [mittel] Python: Schwachstelle ermöglicht Offenlegung von Informationen

Ein Angreifer kann eine Schwachstelle in Python ausnutzen, um Informationen offenzulegen.

[NEU] [mittel] Samsung Exynos: Mehrere Schwachstellen

Ein lokaler Angreifer kann eine Schwachstelle in Samsung Exynos ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen.

Jetzt patchen! Angreifer schieben Schadcode durch Lücke in Adobe ColdFusion

Angreifer attackieren Adobes Middleware ColdFusion. Sicherheitsupdates sind verfügbar.

Kritische Sicherheitslücke in Ivanti Sentry wird bereits missbraucht

Ivanti schließt in Sentry, vormals MobileIron Sentry, eine kritische Sicherheitslücke. Sie wird bereits angegriffen.

CVE-2023-33131 Microsoft Outlook Remote Code Execution Vulnerability

Corrected Download and Article links in the Security Updates table. This is an informational change only.

Chromium: CVE-2023-4367 Insufficient policy enforcement in Extensions API

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2023) for more information.

Chromium: CVE-2023-4355 Out of bounds memory access in V8

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2023) for more information.

Chromium: CVE-2023-4363 Inappropriate implementation in WebShare

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2023) for more information.

Chromium: CVE-2023-4359 Inappropriate implementation in App Launcher

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2023) for more information.

Chromium: CVE-2023-4352 Type Confusion in V8

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2023) for more information.