VMware Releases Security Updates for Tools

VMware has released a security update to address a vulnerability in VMware Tools. A cyber threat actor can exploit this vulnerability to obtain sensitive information. CERT Bulgaria encourages users and administrators to review VMware Security Advisory VMSA-2023-0019 and apply the necessary update.

VMware Releases Security Updates for Aria Operations for Networks

VMware has released security updates to address multiple vulnerabilities in Aria Operations for Networks. A cyber threat actor can exploit one of these vulnerabilities to take control of an affected system. CERT Bulgaria encourages users and administrators to review VMware Security Advisory VMSA-2023-0018 and apply the necessary updates.

Mozilla Releases Security Updates for Firefox and Firefox ESR

Mozilla has released security updates to address vulnerabilities for Firefox 117, Firefox ESR 115.2, and Firefox ESR 102.5. A cyber threat actor can exploit some of these vulnerabilities to take control of an affected system. CERT Bulgaria encourages users and administrators to review the following advisories and apply the necessary updates: Read more

Juniper Networks Releases Security Advisory for Junos OS and Junos OS Evolved

Juniper Networks has released a security advisory to address a vulnerability for Junos OS and Junos OS Evolved. A cyber threat actor could exploit this vulnerability to cause a denial-of-service condition. CERT Bulgaria encourages users and administrators to review Juniper’s Support Portal and apply the necessary update.

Juniper Releases Security Advisory for Multiple Vulnerabilities in Junos OS

Juniper has released a security advisory to address vulnerabilities in Junos OS on SRX Series and EX Series. A remote cyber threat actor could exploit these vulnerabilities to cause a denial-of service condition. CERT Bulgaria encourages users and administrators to review Juniper’s Support Portal and apply the necessary updates.

Cisco Releases Security Advisories for Multiple Products

Cisco has released security advisories for vulnerabilities affecting multiple Cisco products. A cyber threat actor can exploit some of these vulnerabilities to take control of an affected system or cause a denial-of service condition. CERT Bulgaria encourages users and administrators to review the following advisories and apply the necessary updates. Read more

Atlassian Releases Security Update for Confluence Server and Data Center

Atlassian has released its security bulletin for August 2023 to address a vulnerability in Confluence Server and Data Center, CVE-2023-28709. A remote attacker can exploit this vulnerability to cause a denial-of-service condition. CERT Bulgaria encourages users and administrators to review Atlassian’s August 2003 Security Bulletin and apply the necessary update.

Уязвимост, засягаща процесори Intel Downfall

Уязвимостта Downfall, идентифицирана като CVE-2022-40982, позволява на потребител да получи достъп до  чувствителна информация като пароли, електронни писма, банкови данни, съобщения и ключове за криптиране. Този сериозен пропуск в сигурността на Intel процесорите дава възможност на нападателите ескалират своите права и да проникват в системите неоторизирано. Засегнати са огромен брой процесори на Intel, които се … Read more

Chrome публикува актуализации за защита

Google публикува актуализации за отстраняване на уязвимости, които нападател може да използва, за да поеме контрола върху засегната система. CERT България препоръчва на потребителите и администраторите да се запознаят и да приложат необходимите актуализации.

Microsoft Releases August 2023 Security Updates - 09.08.2023

Microsoft has released updates to address multiple vulnerabilities in Microsoft software. An attacker can exploit some of these vulnerabilities to take control of an affected system. CERT Bulgaria encourages users and administrators to review Microsoft's August 2023 Security Update Guide and apply the necessary updates.