Security through data

MAIN

  • Home
  • Alerts
  • Blog
  • Events
  • Incidents
  • Tutorials

FEATURED

  • AI
  • Privacy
  • Cryptocurrency
  • Blockchain
  • IoT
  • Deep Web
  • Threat Actors
  • Social Engineering
  • Phishing
  • Malware
  • E-Commerce
  • Deepfake
  • Quantum Computing

COMPANY

  • About us
  • Advertise
  • Legal & Policy
Cybermaterial
  • CATEGORIES
    • Cyber101
      • Definition
      • Quote
    • Document
      • Cheat Sheet
      • Paper
      • Report
    • Education
      • Certification
      • Course
    • Entertainment
      • Documentary
      • Game
      • Meme
      • Movie
      • TV Show
    • Learning
      • Book
      • Lexicon
      • Podcasts
      • Tutorials
    • Tool
      • Hardware
      • Software
No Result
View All Result
Contact Us
Cybermaterial
  • CATEGORIES
    • Cyber101
      • Definition
      • Quote
    • Document
      • Cheat Sheet
      • Paper
      • Report
    • Education
      • Certification
      • Course
    • Entertainment
      • Documentary
      • Game
      • Meme
      • Movie
      • TV Show
    • Learning
      • Book
      • Lexicon
      • Podcasts
      • Tutorials
    • Tool
      • Hardware
      • Software
No Result
View All Result
Contact Us
Cybermaterial
No Result
View All Result

Siemens has mitigated 21 vulnerabilities in two of its virtualization software tools

in Alerts
2 min read
February 16, 2021

Siemens has mitigated 21 vulnerabilities in two of its virtualization software tools that, if exploited, could enable attackers to gain remote control, exfiltrate data or cause systems to crash. It’s urging customers to shift to updated versions of the software that fix the flaws.

The Flaws

All the vulnerabilities that were disclosed by Siemens have a CVSS rank of 7.8, or highly vulnerable. Among the flaws are:

  • CVE-2020-26998: This vulnerability is caused by improper validation of user data while parsing PAR files. It could lead to memory access and data leaks.
  • CVE-2020-27000: This vulnerability, which arises from parsing BMP files, could enable attackers to perform remote code execution.
  • CVE-2020-27001: This is a stack-based buffer overflow caused by parsing of PAR files that could lead to remote code execution.
  • CVE-2020-27003: This flaw is caused by parsing of TIFF files. It, too, could lead to remote code execution.

Many of the vulnerabilities disclosed by Siemens are linked to the use of Open Design Alliance software development kits. The alliance has released details of the issues involved.

READ FULL REPORT

Tags: AlertPatch TuesdaySiemensTool
10
VIEWS

More Alerts

Adobe Releases Security Updates
Alerts

Adobe Releases Security Updates

April 15, 2021
Russian SVR Targets U.S. and Allied Networks – CISA – FBI – NSA
Alerts

Russian SVR Targets U.S. and Allied Networks – CISA – FBI – NSA

April 15, 2021
Google patches vulnerability in Android system – Security Bulletin –  April 2021
Alerts

Google patches vulnerability in Android system – Security Bulletin – April 2021

April 14, 2021

MORE

Incidents

Illinois Data Breach Exposed 323K Records Including Sensitive Court Files

February 2, 2021
Quote

“My fear is that we are neglecting the risk of ‘cyber errors’ in creating wild disruptions…”

November 9, 2020
Quote

“If security were all that mattered, computers would never be turned on, let alone hooked into a network with literally millions of potential intruders.”

October 25, 2020

88% of breaches in the healthcare industry are financially motivated

October 21, 2020
ADVERTISEMENT

Tags

Books Cybersecurity Hackers Malware Memes Movies Quantum Computing Report Software Word of the day

© 2021 | CyberMaterial | All rights reserved.

SECURITY THROUGH DATA

No Result
View All Result
  • Home
  • Alerts
  • Cyber Incidents
  • Blog
  • Events
  • Tutorials
  • Featured
    • AI
    • Privacy
    • Cryptocurrency
    • Blockchain
    • IoT
    • Deep Web
    • Threat Actors
    • Social Engineering
    • Deepfake
    • E-Commerce
    • Malware
    • Phishing
    • Quantum Computing

© 2020 CyberMaterial - Cyber Decoded.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.