-
Iphone 6s owner have serious operation problem after upgrade their IOS to 12.4.9. Do you think vendor will be fixed?
Preface: Vendor insists to fix the cyber security weakness of CVE-2020-27929 & CVE-2020-27930. However, this iOS upgrade action was caused the specify iPhone product encounter operation difficulties especially 6s. Observation 1: On 5th November, 2020, apple implement security update to enhance the cyber security protection on their products. This enhancement including an remediation action to…
-
CVE-2020-27255 Software vulnerabilities that bypass the address space layout randomization (ASLR) protection (FactoryTalk Linx – Allen Bradley software product) 27th Nov 2020
Preface: To cope with Industrial automation and control system. The technology difference in between IT and OT are small. Perhaps they are close. For cyber security protection matters, seems they are no any difference. Product background: Formerly known as RSLinx® Enterprise, FactoryTalk® Linx is included with most FactoryTalk software and functions as the premier data…
-
Headline News: A hacker has now leaked the credentials for almost 50,000 vulnerable Fortinet VPNs. (26th Nov 2020)
Do you doubt whether you are a victim? A quick way to confirm the vulnerability of Fortinet SSL-VPN ( CVE-2018-13379). Preface: VPN client has design limitation causes information leakage not a news by today. However you should confirm your setup do not encounter this flaw. Background: An unknown person left the information online. The details…
-
Perspective VMware CVE-2020-4006
Preface: Within this week, the impression of VMware products vulnerabilities draw attention with a lot of people. It is because the vulnerabilities was found are high risk rating. But VMware is one of the pillar of virtual machine machine world. Do not worry too much. A good product should have space for improvement. Product background:…
-
VMware ESXi, Workstation and Fusion updates address use-after-free and privilege escalation vulnerabilities (24-11-2020)
Preface: Use After Free scenario can occur when “the memory in question is allocated to another pointer validly at some point after it has been freed. Background: If there is a process named vmware-vmx[.]exe in the process list then there is a virtual machine that is currently powered on. The Virtual Machine Monitor (VMM) process…
-
Buffer overflow is difficult to avoid, it can easily happen!
Preface: There are two primary types of buffer overflow vulnerabilities: Stack overflow and Heap overflow. Product background: The administrative command–line client is a program that runs on a file server, workstation, or mainframe. It is installed as part of the Tivoli Storage Manager server installation process. The administrative client can be accessed remotely. From the…
-
CVE-2020-3985 VMWARE SD-WAN Orchestrator vulnerability (19th Nov 2020)
Preface: Most SD-WAN suppliers have partnerships with leading cloud platforms, and they use a variety of methods to accelerate traffic coming to and from cloud platforms. But IT pros say, it should look for better security. Background: The Orchestrator provides you with a JSON-RPC API, which means you call it over HTTPS. It’s not a…
-
CVE-2020-16846 – SaltStack Salt(6th Nov 2020)
Preface: The interconnect component of the opensource application is the opensource software. Background: Salt (sometimes referred to as SaltStack) is Python-based, open-source software for event-driven IT automation, remote task execution, and configuration management. Vulnerability details: An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH…
-
What is the impact of CVE-2020-26892? (17-11-2020)
NATS Srv wiki – Cloud native messaging system made for developers and operators who want to spend more time doing their work and lesstime worrying about how to do messaging. End user of this product: Mastercard, Baidu, Alibaba Group, VMware, GE, Pivotal, Telia Company, netlify, htc, GE, Zephyr Project, tinder and ERICSSON Vulnerability details: Some…
-
Replay Protected Memory Block (RPMB) protocol vulnerability impact may more than expected – 16th Nov 2020.
Preface: With the advent of the 5G era, starting in 2019, UFS 3.0 has gradually been adopted by flagship smartphones.UFS 3.1 is an optimized version of 3.0. Background: The RPMB layer aims to provide in-kernel API for Trusted Execution Environment (TEE) devices that are capable to securely compute block frame signature. In case a TEE…