-
Linux world worries! CVE-2019-11477 TCP SACK PANIC – Kernel vulnerability (Jun 2019)
Preface: Router, SD-WAN,Load-balancer, Firewall and IDS and virtual machine. Their operations are based on Linux operation system. Background: A Selective Acknowledgment (SACK) mechanism, combined with a selective repeat retransmission policy, can help to overcome these limitations. The receiving TCP sends back SACK packets to the sender informing the sender of data that has been received.…
-
CVE-2019-1625 Cisco SD-WAN Solution Privilege Escalation Vulnerability – Jun 2019
Preface: Add the Viptela SD-WAN technology to the IOS XE software running the ISR/ASR routers. Both Cisco ASR and ISR routers offer secure WAN connectivity. Vulnerability details: A vulnerability in the CLI of Cisco SD-WAN Solution could allow an authenticated, local attacker to elevate lower-level privileges to the root user on an affected device. Root…
-
CVE-2019-4103 IBM Tivoli Netcool Impact Arbitrary Command Execution Vulnerability – Jun 2019
Preface – You never know what will be happened tomorrow. Synopsis: A vulnerability in IBM Tivoli Netcool Impact could allow an authenticated, adjacent attacker to execute arbitrary commands on a targeted system. Vulnerability details: A vulnerability in IBM Tivoli Netcool Impact could allow an authenticated, adjacent attacker to execute arbitrary commands on a targeted system.At…
-
It is hard to judge it was a self defense or attack. New York Times cyber attack news – 16th Jun 2019
-
Vulnerability might jeopardize IoT world – CVE-2019-10160 Python Security Regression Unicode Encoding Vulnerability (Jun 2019)
Preface: IoT device similar a delivery arm of robotic concept. They are the python language heavy duty users. Python language married with IoT devices – For IoT, there has been a variant of python called Micropython , that lets you program for IoT in Python. Additionally, developer can use Raspberry Pi to program your IoT…
-
It will jeopardizing 400,000 Linux system in the world – Exim Releases Security Patches (alert issued in Jun 2019)
Preface: Exim is growing in popularity because it is open source. Background:It’s the default mail transport agent installed on some Linux systems.It contain feature likes: Lookups in LDAP servers, MySQL and PostgreSQL databases, and NIS or NIS+ services. Vulnerability details: The vulnerability was patched in Exim 4.92, released on February 10, 2019. The vulnerable code…
-
CVE-2019-3567 osquery design flaw – unintended create hidden place for malware Jun 2019
Preface: Need to know what processes are running on a given machine? A servers current CPU temperature? Verify a hard drive is encrypted? OSQUERY can do, even though security monitoring. Technical background: osquery is a tool that exposes an operating system as a high-performance relational database.The design founded by Facebook. It enables developers to write…
-
CVE-2019-12243 Istio improper internet access control vulnerability (Jun 2019)
Preface: Independently deployable is the strongest feature of microservices. Docker is one of the technology vendor keen to develop the microservice. What is Istio? An open platform to connect, manage, and secure microservices. Istio is easy to deploy. User merely install a proxy (side-car proxy) and complete the configuration. Vulnerability details: The vulnerability was impacting…
-
It looks very vague – Oracle Vulnerability CVE-2019-2517 (Jun 2019)
Preface: Every time you review Oracle security advisory. Your feeling is vague since no details will be provided! Vulnerability details: A vulnerability in the Core RDBMS component of Oracle Database Server could allow an authenticated, remote attacker with high privileges to compromise a targeted system completely. More details: The vulnerability resides in the Java Virtual…
-
Configure a strong PSK to avoid wireless offline cryptographic attack
Preface: Maybe people won’t use WPA because it’s not safe. However, WPA2 can also collect PSK through tools. Technical details: WPA and WPA2 offline attack technique are well known today. For instance, penetration test conduct the WiFi penetration test will relies on tool (Aircrack-NG). As a matter of fact, the attacker first obtains a man-in-the-middle…