ENISA EUVD · EUVD-2015-3261Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2025-1459Dell Data Protection Advisor: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell Data Protection Advisor ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, und um weitere nicht näher spezifizierte Angriffe durchzuführen.
Official advisory ↗Canadian Centre for Cyber Security · English · AV18-006SierraWireless ALEOS update 4.4.5 for AirLink devicespace monitor has been added to the flash memory file system.
Affected Products:
AirLink GX400, GX440, ES440, and LS300 running software prior to 4.4.5.
CVE References:
User input validation: CVE-2017-15043
OpenSSL: CVE-2016-0701, CVE-2017-3731, CVE-2016-2181, CVE-2016-0702, CVE-2017-3732, CVE-2016-2182, CVE-2016-0705, CVE-2016-2105, CVE-2016-2183, CVE-2016-0797, CVE-2016-2106, CVE-2016-6302, CVE-2016-0798, CVE-2016-2107, CVE-2016-6303, CVE-2016-0799, CVE-2016-2109, CVE-2016-6304, CVE-2016-0800, CVE-2016-2176, CVE-2016-6306, CVE-2016-2842, CVE-2016-2177, CVE-2015-3195, CVE-2015-1794, CVE-2016-2178, CVE-2015-3197, CVE-2015-3193, CVE-2016-2179, CVE-2015-3194, CVE-2016-2180
Dropbear: CVE-2017-9078 and CVE-2017-9079
Tcpdump and Libpcap: CVE-2014-8769 and CVE-2014-8767
Linux kernel: CVE-2017-14106, CVE-2014-7822, CVE-2014-9888, CVE-2015-3288
OpenVPN: CVE-2017-7520 and CVE-2017-7479
SNMP: CVE-2015-5621
Libcurl: CVE-2016-5421
Dnsmasq: CVE-2017-14496, CVE-2017-14491, CVE-2017-14492, CVE-2017-14493, CVE-2017-14494, CVE-2017-14495
Suggested Action
CCIRC recommends that system administrators test and deploy the vendor released updates on affected platforms accordingly.
CCIRC recommends confirming if your remote access, mobile or off-site solutions include this type of cellular gateway. Contact your integ
Official advisory ↗Canadian Centre for Cyber Security · English · AV16-167Multiple Juniper security updatestegrity of files and folders.
Impacted products:
Juniper Juno OS
vMX (Virtual MX Series router)
JUNOSe with IPv6 enabled
Junos OS with J-Web enabled
Junos OS with IPv6 enabled
CTPView prior to 7.1R3, 7.3R1
Junos Space before 15.2R2
CVE Numbers:
CVE-2013-0169, CVE-2016-4926, CVE-2016-4927, CVE-2016-4928, CVE-2016-4929, CVE-2016-4930, CVE-2016-4931, CVE-2011-0997, CVE-2011-2748, CVE-2011-2749, CVE-2012-3571, CVE-2013-0791, CVE-2013-1620, CVE-2013-1739, CVE-2013-1741, CVE-2013-2596, CVE-2013-5605, CVE-2013-5606, CVE-2013-5607, CVE-2014-1490, CVE-2014-1491, CVE-2014-1492, CVE-2014-1545, CVE-2014-1568, CVE-2015-1794, CVE-2015-2151, CVE-2015-3193, CVE-2015-3194, CVE-2015-3195, CVE-2015-3196, CVE-2015-5364, CVE-2015-5366, CVE-2016-4921, CVE-2016-4923, CVE-2016-4925, CVE-2016-4924, CVE-2016-4922
Suggested Action
CCIRC recommends that owner/operators test and deploy the vendor released updates or workarounds to affected platforms accordingly.
References:
Juniper Security Bulletins
https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10763&cat=SIRT_1&actp=LIST
https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10766&cat=SIRT_1&actp=LIST
https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10767&cat=SIRT_1&actp=LIST
https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10764&cat
Official advisory ↗Canadian Centre for Cyber Security · English · AV16-080HP security bulletinHP released multiple updates to address vulnerabilities in HPE Systems Insight Manager (SIM) on Windows and Linux which could be exploited remotely resulting in Denial of Service (DoS), execution of arbitrary code, disclosure of information, Cross-site Request Forgery (CSRF), and Cross-site scripting (XSS).
Affected Versions:
HP Systems Insight Manager prior to 7.5.1
CVE References: CVE-2015-3194, CVE-2015-3195, CVE-2016-0705, CVE-2016-0799, CVE-2016-2842, CVE-2015-6565
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-1094Multiples vulnérabilités dans les produits Siemens.cve.org/CVERecord?id=CVE-2015-0293
Référence CVE CVE-2015-1787
https://www.cve.org/CVERecord?id=CVE-2015-1787
Référence CVE CVE-2015-1788
https://www.cve.org/CVERecord?id=CVE-2015-1788
Référence CVE CVE-2015-1789
https://www.cve.org/CVERecord?id=CVE-2015-1789
Référence CVE CVE-2015-1790
https://www.cve.org/CVERecord?id=CVE-2015-1790
Référence CVE CVE-2015-1791
https://www.cve.org/CVERecord?id=CVE-2015-1791
Référence CVE CVE-2015-1792
https://www.cve.org/CVERecord?id=CVE-2015-1792
Référence CVE CVE-2015-1794
https://www.cve.org/CVERecord?id=CVE-2015-1794
Référence CVE CVE-2015-3193
https://www.cve.org/CVERecord?id=CVE-2015-3193
Référence CVE CVE-2015-3194
https://www.cve.org/CVERecord?id=CVE-2015-3194
Référence CVE CVE-2015-3195
https://www.cve.org/CVERecord?id=CVE-2015-3195
Référence CVE CVE-2015-3196
https://www.cve.org/CVERecord?id=CVE-2015-3196
Référence CVE CVE-2015-3197
https://www.cve.org/CVERecord?id=CVE-2015-3197
Référence CVE CVE-2015-4000
https://www.cve.org/CVERecord?id=CVE-2015-4000
Référence CVE CVE-2015-5352
https://www.cve.org/CVERecord?id=CVE-2015-5352
Référence CVE CVE-2015-5600
https://www.cve.org/CVERecord?id=CVE-2015-5600
Référence CVE CVE-2015-6563
https://www.cve.org/CVERecord?id=CVE-2015-6563
Référence CVE CVE-2015-6564
https://www.cve.org/CVERecord?id=CVE-2015-6564
Ré
Official advisory ↗CERT-FR · French · CERTFR-2016-AVI-365Multiples vulnérabilités dans les produits AppleDe multiples vulnérabilités ont été corrigées dans les produits Apple . Elles permettent à un
attaquant de provoquer une exécution de code arbitraire à distance et
une atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2016-AVI-344Multiples vulnérabilités dans les produits Juniper.cve.org/CVERecord?id=CVE-2013-5607
Référence CVE CVE-2014-1490
https://www.cve.org/CVERecord?id=CVE-2014-1490
Référence CVE CVE-2014-1491
https://www.cve.org/CVERecord?id=CVE-2014-1491
Référence CVE CVE-2014-1492
https://www.cve.org/CVERecord?id=CVE-2014-1492
Référence CVE CVE-2014-1545
https://www.cve.org/CVERecord?id=CVE-2014-1545
Référence CVE CVE-2014-1568
https://www.cve.org/CVERecord?id=CVE-2014-1568
Référence CVE CVE-2015-1794
https://www.cve.org/CVERecord?id=CVE-2015-1794
Référence CVE CVE-2015-2151
https://www.cve.org/CVERecord?id=CVE-2015-2151
Référence CVE CVE-2015-3193
https://www.cve.org/CVERecord?id=CVE-2015-3193
Référence CVE CVE-2015-3194
https://www.cve.org/CVERecord?id=CVE-2015-3194
Référence CVE CVE-2015-3195
https://www.cve.org/CVERecord?id=CVE-2015-3195
Référence CVE CVE-2015-3196
https://www.cve.org/CVERecord?id=CVE-2015-3196
Référence CVE CVE-2015-5364
https://www.cve.org/CVERecord?id=CVE-2015-5364
Référence CVE CVE-2015-5366
https://www.cve.org/CVERecord?id=CVE-2015-5366
Référence CVE CVE-2016-4921
https://www.cve.org/CVERecord?id=CVE-2016-4921
Référence CVE CVE-2016-4922
https://www.cve.org/CVERecord?id=CVE-2016-4922
Référence CVE CVE-2016-4923
https://www.cve.org/CVERecord?id=CVE-2016-4923
Référence CVE CVE-2016-4924
https://www.cve.org/CVERecord?id=CVE-2016-4924
Ré
Official advisory ↗CERT-FR · French · CERTFR-2016-AVI-138Multiples vulnérabilités dans Oracle MySQLdans Oracle MySQL . Certaines d'entre elles permettent à
un attaquant de provoquer un déni de service à distance, un
contournement de la politique de sécurité et une atteinte à l'intégrité
des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Oracle cpuapr2016v3 du 19 avril 2016
http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html#AppendixMSQL
Bulletin de sécurité Oracle cpuapr2016v3verbose du 19 avril 2016
http://www.oracle.com/technetwork/security-advisory/cpuapr2016verbose-2881709.html#MSQL
Référence CVE CVE-2015-3194
https://www.cve.org/CVERecord?id=CVE-2015-3194
Référence CVE CVE-2016-0639
https://www.cve.org/CVERecord?id=CVE-2016-0639
Référence CVE CVE-2016-0640
https://www.cve.org/CVERecord?id=CVE-2016-0640
Référence CVE CVE-2016-0641
https://www.cve.org/CVERecord?id=CVE-2016-0641
Référence CVE CVE-2016-0642
https://www.cve.org/CVERecord?id=CVE-2016-0642
Référence CVE CVE-2016-0643
https://www.cve.org/CVERecord?id=CVE-2016-0643
Référence CVE CVE-2016-0644
https://www.cve.org/CVERecord?id=CVE-2016-0644
Référence CVE CVE-2016-0646
https://www.cve.org/CVERecord?id=CVE-2016-0646
Référence CVE CVE-2016-0647
https://www.cve.org/CVERecord?id=CVE-2016-0647
Ré
Official advisory ↗CERT-FR · French · CERTFR-2015-AVI-517Multiples vulnérabilités dans OpenSSLDe multiples vulnérabilités ont été corrigées dans OpenSSL . Elles permettent à un attaquant de
provoquer un déni de service à distance, une atteinte à l'intégrité des
données et une atteinte à la confidentialité des données.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2015-006115OpenSSL の crypto/rsa/rsa_ameth.c におけるサービス運用妨害 (DoS) の脆弱性OpenSSL の crypto/rsa/rsa_ameth.c には、サービス運用妨害 (NULL ポインタデリファレンスおよびアプリケーションクラッシュ) 状態にされる脆弱性が存在します。 補足情報 : CWE による脆弱性タイプは、CWE-476: NULL Pointer Dereference (NULL ポインタデリファレンス) と識別されています。 http://cwe.mitre.org/data/definitions/476.html
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-4576OpenSSL 취약점 보안업데이트 권고인증서 검증시 PSS 파라미터 부재로 인한 서비스 거부 취약점 (CVE-2015-3194)
Official advisory ↗