A vulnerability was found in IrfanView up to 4.30 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption.
This vulnerability is handled as CVE-2011-5233. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape. DragonForce Ransomware Group is Targeting Saudi Arabia Massive Botnet Targets M365 with Stealthy Password Spraying Attacks Notorious Malware, Spam Host “Prospero” Moves to Kaspersky Lab ACRStealer Infostealer Exploiting Google Docs as C2 #StopRansomware: Ghost (Cring) Ransomware […]
This post first appeared on blog.netwrix.com and was written by Tyler Reese. Microsoft Identity Manager (MIM) has long been a cornerstone of identity and access management for many organizations. It integrates seamlessly with on-premises systems like Active Directory, SAP, Oracle, and other LDAP and SQL platforms to ensure consistent user identities across multiple environments. However, with Microsoft’s focus shifting toward cloud-first solutions like Entra ID, MIM’s mainstream … Continued
A vulnerability classified as problematic has been found in Linux Kernel up to 5.10.230/5.15.173/6.1.119/6.6.65/6.12.4. This affects the function tagged_addr_ctrl_set of the component ptrace. The manipulation leads to uninitialized pointer.
This vulnerability is uniquely identified as CVE-2024-57874. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.12.7. This issue affects some unknown processing of the component megaraid_sas. The manipulation leads to deadlock.
The identification of this vulnerability is CVE-2024-57807. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 5.15.173/6.1.119/6.6.65/6.12.4. It has been rated as problematic. This issue affects the function of_clk_get_by_name of the file soc-imx8m.c. The manipulation leads to state issue.
The identification of this vulnerability is CVE-2024-56787. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 5.10.230/5.15.173/6.1.119/6.6.65/6.12.4 and classified as problematic. This issue affects some unknown processing of the file arch/mips/boot/dts/loongson/ls7a-pch.dtsi of the component Loongson64. The manipulation leads to Privilege Escalation.
The identification of this vulnerability is CVE-2024-56785. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.1.119/6.6.65/6.12.4. This issue affects some unknown processing of the component nft_socket. The manipulation leads to reachable assertion.
The identification of this vulnerability is CVE-2024-56783. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
犹他州有可能成为美国第一个在公共自来水系统中禁止添加氟的州。去年有一项研究报告饮用水氟含量超过推荐限制两倍与儿童较低的 IQ 值相关。在饮用水中加入低浓度氟被广泛视为上世纪公共卫生领域最大的成就之一。氟通过补充正常磨损中流失的矿物质去加固牙齿和减少龋齿。该研究汇总了加拿大、中国、印度、伊朗、巴基斯坦和墨西哥进行的研究,其结论是每升饮用水含氟量超过 1.5 毫克与儿童 IQ 值较低相关。研究人员并没有建议饮用水不要加氟。此外汇总的大部分研究质量较低,且主要在美国之外进行,如中国等国饮用水中的氟含量要高得多。去年澳大利亚发表的另一项研究没有发现儿童早期接触氟与认知发育问题有关联。主要公共卫生组织如美国儿科学会、美国牙科协会和疾控中心(CDC)都支持在饮用水中添加氟。美国牙科协会督促犹他州州长不要签署禁止添加氟的 HB0081 法案。
A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. Ransomware gangs exploit a Paragon Partition Manager BioNTdrv.sys driver zero-day Microsoft disrupted a global cybercrime ring abusing Azure […]