A vulnerability classified as problematic has been found in ARM mbed TLS up to 2.7.16 LTS/2.16.7 LTS/2.23.x. This affects the function mbedtls_ssl_read
of the component Plaintext Buffer Handler. Upgrading to version 2.7.17 LTS, 2.16.8 LTS or 2.24.0 eliminates this vulnerability. The upgrade is hosted for download at github.com.
ARM mbed TLS up to 2.7.16 LTS/2.16.7 LTS/2.23.x Plaintext Buffer mbedtls_ssl_read information disclosure
- Virtual Patching
- August 23, 2021
- 9:04 am
CVE-2024-6121 : NI SYSTEMLINK SERVER/FLEXLOGGER REDIS VULNERABLE THIRD-PARTY COMPONENT
Description An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple vulnerabilities, including CVE-2022-24834. This affects
CVE-2024-40634 : ARGOPROJ ARGO-CD UP TO 2.9.19/2.10.14/2.11.5 /API/WEBHOOK RESOURCE CONSUMPTION
Description Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. This report details a security vulnerability in Argo
CVE-2024-39685 : FISHAUDIO BERT-VITS2 UP TO 2.3 RESAMPLE DATA_DIR OS COMMAND INJECTION
Description Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly in