A vulnerability classified as critical has been found in SKALE sgxwallet 1.58.3. This affects the function sgx_disp_ippsAES_GCMEncrypt
. Upgrading to version 1.77.0 eliminates this vulnerability. Applying the patch 77425c862ad20cd270d42c54f3d63e1eb4e02195 is able to eliminate this problem. The bugfix is ready for download at github.com. The best possible mitigation is suggested to be upgrading to the latest version.
SKALE sgxwallet 1.58.3 sgx_disp_ippsAES_GCMEncrypt out-of-bounds write
- Virtual Patching
- September 28, 2021
- 7:05 am
CVE-2024-6121 : NI SYSTEMLINK SERVER/FLEXLOGGER REDIS VULNERABLE THIRD-PARTY COMPONENT
Description An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple vulnerabilities, including CVE-2022-24834. This affects
CVE-2024-40634 : ARGOPROJ ARGO-CD UP TO 2.9.19/2.10.14/2.11.5 /API/WEBHOOK RESOURCE CONSUMPTION
Description Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. This report details a security vulnerability in Argo
CVE-2024-39685 : FISHAUDIO BERT-VITS2 UP TO 2.3 RESAMPLE DATA_DIR OS COMMAND INJECTION
Description Bert-VITS2 is the VITS2 Backbone with multilingual bert. User input supplied to the data_dir variable is used directly in