CVE-2022-36003 TensorFlow is an open source platform for machine learning. When RandomPoissonV2 receives large input and rates, it gives a CHECK fail that can trigger a DDoS attack.
When the `RandomPoissonV2` estimator receives a large input shape and rates, it gives a `CHECK` fail and stops training. The fix is cherry-picking this
CVE-2022-36014 TensorFlow is an open source platform for machine learning. When it receives null type attributes, it crashes.
You can update to TensorFlow 2.10.0 or TensorFlow 2.9.1 if you are running TensorFlow 2.8.1 or TensorFlow 2.7.
CVE-2022-28758 On-Premise Meeting Connector MMR 4.8.20220815 contains an improper access control vulnerability.
Meeting Connector is an extensible content management platform that enables meeting organizers to create, edit, and share documents and presentations. It is widely used in
CVE-2022-38992 The secure OS module has configuration defects
MITM attacks are possible. In some cases, the system may be completely compromised. Configuration and configuration settings of the system may be modified by an
CVE-2022-38413 InDesign versions 16.4.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
In the majority of cases, InDesign users are not aware of the malicious file existing on the system. The malicious file might be installed through
Episode
00:00:00
00:00:00