CVE-2022-25659 Buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, and Snapdragon Industrial IOT can lead to memory corruption.
Inadequate handling of invalid MKV files may cause application crashes, data corruption, or other issues.
Notable Software defects resolved in this software update include: Incorrect
CVE-2021-39009 IBM Cognos Analytics stores users' credentials in plain text, which can be read by a local privileged user.
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by
CVE-2022-36773 IBM Cognos Analytics is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
In certain configurations, IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to a Denial of Service (DoS) attack.
CVE-2022-2153 - How a KVM SynIC IRQ Bug Can Crash Linux Hosts (with Exploit Details)
In 2022, security researchers discovered an important vulnerability in the Linux kernel, specifically in KVM (Kernel-based Virtual Machine). By exploiting a programming mistake in the
CVE-2022-2485 The AutomationDirect Stride Field I/O device may respond with its password in the packets.
If this happens, make sure you are logging into the device using the credentials that are stored in the device’s memory. This is different
Episode
00:00:00
00:00:00