ENISA EUVD · EUVD-2017-5994Official EUVD mapping0 linked advisory records.
Official EUVD record ↗Canadian Centre for Cyber Security · English · AV18-006SierraWireless ALEOS update 4.4.5 for AirLink devicesE-2016-0705, CVE-2016-2105, CVE-2016-2183, CVE-2016-0797, CVE-2016-2106, CVE-2016-6302, CVE-2016-0798, CVE-2016-2107, CVE-2016-6303, CVE-2016-0799, CVE-2016-2109, CVE-2016-6304, CVE-2016-0800, CVE-2016-2176, CVE-2016-6306, CVE-2016-2842, CVE-2016-2177, CVE-2015-3195, CVE-2015-1794, CVE-2016-2178, CVE-2015-3197, CVE-2015-3193, CVE-2016-2179, CVE-2015-3194, CVE-2016-2180
Dropbear: CVE-2017-9078 and CVE-2017-9079
Tcpdump and Libpcap: CVE-2014-8769 and CVE-2014-8767
Linux kernel: CVE-2017-14106, CVE-2014-7822, CVE-2014-9888, CVE-2015-3288
OpenVPN: CVE-2017-7520 and CVE-2017-7479
SNMP: CVE-2015-5621
Libcurl: CVE-2016-5421
Dnsmasq: CVE-2017-14496, CVE-2017-14491, CVE-2017-14492, CVE-2017-14493, CVE-2017-14494, CVE-2017-14495
Suggested Action
CCIRC recommends that system administrators test and deploy the vendor released updates on affected platforms accordingly.
CCIRC recommends confirming if your remote access, mobile or off-site solutions include this type of cellular gateway. Contact your integrator or service provider for more information on how to properly test and deploy the vendor released updates on affected platforms accordingly.
References:
Release Notes:
https://source.sierrawireless.com/resources/airlink/software_reference_docs/release-notes/aleos-4,-d-,4,-d-,5-release-notes/
(1) Product
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-147GNU dnsmasq security updatesGNU dnsmasq released security updates to address multiple vulnerabilities in dnsmasq. A remote user could exploit some of these vulnerabilities to take control of an affected system.
Versions Affected:
GNU dnsmasq 2.62 to 2.77
CVE References: CVE-2017-13704, CVE-2017-14491,CVE-2017-14492,CVE-2017-14493,CVE-2017-14494,CVE-2017-14495,CVE-2017-14496
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0203Multiples vulnérabilités dans les produits Siemensoductcert/html/ssa-576771.html
Bulletin de sécurité Siemens SSA-653855 du 12 mars 2024
https://cert-portal.siemens.com/productcert/html/ssa-653855.html
Bulletin de sécurité Siemens SSA-770721 du 12 mars 2024
https://cert-portal.siemens.com/productcert/html/ssa-770721.html
Bulletin de sécurité Siemens SSA-792319 du 12 mars 2024
https://cert-portal.siemens.com/productcert/html/ssa-792319.html
Bulletin de sécurité Siemens SSA-832273 du 12 mars 2024
https://cert-portal.siemens.com/productcert/html/ssa-832273.html
Bulletin de sécurité Siemens SSA-918992 du 12 mars 2024
https://cert-portal.siemens.com/productcert/html/ssa-918992.html
Référence CVE CVE-2017-14491
https://www.cve.org/CVERecord?id=CVE-2017-14491
Référence CVE CVE-2017-18509
https://www.cve.org/CVERecord?id=CVE-2017-18509
Référence CVE CVE-2020-0338
https://www.cve.org/CVERecord?id=CVE-2020-0338
Référence CVE CVE-2020-0417
https://www.cve.org/CVERecord?id=CVE-2020-0417
Référence CVE CVE-2020-10768
https://www.cve.org/CVERecord?id=CVE-2020-10768
Référence CVE CVE-2020-11301
https://www.cve.org/CVERecord?id=CVE-2020-11301
Référence CVE CVE-2020-14305
https://www.cve.org/CVERecord?id=CVE-2020-14305
Référence CVE CVE-2020-14381
https://www.cve.org/CVERecord?id=CVE-2020-14381
Référence CVE CVE-2020-15436
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-267Multiples vulnérabilités dans Juniper Networks Junos Spaced?id=CVE-2017-13089
Référence CVE CVE-2017-13090
https://www.cve.org/CVERecord?id=CVE-2017-13090
Référence CVE CVE-2017-13672
https://www.cve.org/CVERecord?id=CVE-2017-13672
Référence CVE CVE-2017-13711
https://www.cve.org/CVERecord?id=CVE-2017-13711
Référence CVE CVE-2017-13720
https://www.cve.org/CVERecord?id=CVE-2017-13720
Référence CVE CVE-2017-13722
https://www.cve.org/CVERecord?id=CVE-2017-13722
Référence CVE CVE-2017-14033
https://www.cve.org/CVERecord?id=CVE-2017-14033
Référence CVE CVE-2017-14064
https://www.cve.org/CVERecord?id=CVE-2017-14064
Référence CVE CVE-2017-14167
https://www.cve.org/CVERecord?id=CVE-2017-14167
Référence CVE CVE-2017-14491
https://www.cve.org/CVERecord?id=CVE-2017-14491
Référence CVE CVE-2017-14492
https://www.cve.org/CVERecord?id=CVE-2017-14492
Référence CVE CVE-2017-14493
https://www.cve.org/CVERecord?id=CVE-2017-14493
Référence CVE CVE-2017-14494
https://www.cve.org/CVERecord?id=CVE-2017-14494
Référence CVE CVE-2017-14495
https://www.cve.org/CVERecord?id=CVE-2017-14495
Référence CVE CVE-2017-14496
https://www.cve.org/CVERecord?id=CVE-2017-14496
Référence CVE CVE-2017-15124
https://www.cve.org/CVERecord?id=CVE-2017-15124
Référence CVE CVE-2017-15268
https://www.cve.org/CVERecord?id=CVE-2017-15268
Référence CVE CVE-2017-15289
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2021-AVI-155Multiples vulnérabilités dans Google Androidrrectif du 01 mars 2021
Résumé
De multiples vulnérabilités ont été découvertes dans Google Android.
Certaines d'entre elles permettent à un attaquant de provoquer un
problème de sécurité non spécifié par l'éditeur, une exécution de code
arbitraire et une atteinte à la confidentialité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Android du 01 mars 2021
https://source.android.com/security/bulletin/2021-03-01
Bulletin de sécurité Pixel du 01 mars 2021
https://source.android.com/security/bulletin/pixel/2021-03-01
Référence CVE CVE-2017-14491
https://www.cve.org/CVERecord?id=CVE-2017-14491
Référence CVE CVE-2020-11165
https://www.cve.org/CVERecord?id=CVE-2020-11165
Référence CVE CVE-2020-11166
https://www.cve.org/CVERecord?id=CVE-2020-11166
Référence CVE CVE-2020-11171
https://www.cve.org/CVERecord?id=CVE-2020-11171
Référence CVE CVE-2020-11178
https://www.cve.org/CVERecord?id=CVE-2020-11178
Référence CVE CVE-2020-11186
https://www.cve.org/CVERecord?id=CVE-2020-11186
Référence CVE CVE-2020-11188
https://www.cve.org/CVERecord?id=CVE-2020-11188
Référence CVE CVE-2020-11189
https://www.cve.org/CVERecord?id=CVE-2020-11189
Référence CVE CVE-2020-11190
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2020-AVI-632Multiples vulnérabilités dans les produits SiemensDe multiples vulnérabilités ont été découvertes dans les produits
Siemens. Elles permettent à un attaquant de provoquer une atteinte à
l'intégrité des données et une atteinte à la confidentialité des
données.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-362Multiples vulnérabilités dans NVIDIA Tegra Jetson L4TRecord?id=CVE-2017-0325
Référence CVE CVE-2017-0326
https://www.cve.org/CVERecord?id=CVE-2017-0326
Référence CVE CVE-2017-0327
https://www.cve.org/CVERecord?id=CVE-2017-0327
Référence CVE CVE-2017-0331
https://www.cve.org/CVERecord?id=CVE-2017-0331
Référence CVE CVE-2017-0332
https://www.cve.org/CVERecord?id=CVE-2017-0332
Référence CVE CVE-2017-0428
https://www.cve.org/CVERecord?id=CVE-2017-0428
Référence CVE CVE-2017-0429
https://www.cve.org/CVERecord?id=CVE-2017-0429
Référence CVE CVE-2017-1000250
https://www.cve.org/CVERecord?id=CVE-2017-1000250
Référence CVE CVE-2017-1000251
https://www.cve.org/CVERecord?id=CVE-2017-1000251
Référence CVE CVE-2017-14491
https://www.cve.org/CVERecord?id=CVE-2017-14491
Référence CVE CVE-2017-14492
https://www.cve.org/CVERecord?id=CVE-2017-14492
Référence CVE CVE-2017-14493
https://www.cve.org/CVERecord?id=CVE-2017-14493
Référence CVE CVE-2017-14494
https://www.cve.org/CVERecord?id=CVE-2017-14494
Référence CVE CVE-2017-14495
https://www.cve.org/CVERecord?id=CVE-2017-14495
Référence CVE CVE-2017-14496
https://www.cve.org/CVERecord?id=CVE-2017-14496
Référence CVE CVE-2017-6273
https://www.cve.org/CVERecord?id=CVE-2017-6273
Gestion détaillée du document
le 18 octobre 2017
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-329Multiples vulnérabilités dans DnsmasqDe multiples vulnérabilités ont été découvertes dans Dnsmasq . Elles
permettent à un attaquant de provoquer une exécution de code arbitraire
à distance, un déni de service à distance et une atteinte à la
confidentialité des données.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2017-008618dnsmasq における境界外書き込みに関する脆弱性dnsmasq には、境界外書き込みに関する脆弱性が存在します。
Official advisory ↗JVN iPedia · Japanese · JVNDB-2019-007414Dnsmasq における境界外読み取りに関する脆弱性Dnsmasq には、境界外読み取りに関する脆弱性が存在します。 本脆弱性は、CVE-2017-14491 とは異なる脆弱性です。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-4801Dnsmasq 신규 취약점 보안 업데이트 권고로컬 네트워크에서 익스플로잇될 수 있는 DNS Subsystem 원격 코드 실행 취약점 (CVE-2017-14491) [1]
Official advisory ↗