Fortinet Purchases Panopta

Enterprise Vulnerabilities
From DHS/US-CERT’s National Vulnerability Database CVE-2020-35457
PUBLISHED: 2020-12-14

** DISPUTED ** GNOME GLib before 2.65.3 has an integer overflow, that might lead to an out-of-bounds write, in g_option_group_add_entries. NOTE: the vendor’s position is "Realistically this is not a security issue. The standard pattern is for callers to provide a static list of option entries i…

CVE-2020-35460
PUBLISHED: 2020-12-14

common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations.

CVE-2020-0016
PUBLISHED: 2020-12-14

In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-171413483

CVE-2020-0019
PUBLISHED: 2020-12-14

In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local information disclosure in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-171413798

CVE-2020-0456
PUBLISHED: 2020-12-14

There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-170378843

Read More HERE

Leave a Reply