SAP Product Security Update Advisories (CVE-2023-49583, CVE-2023-50422, CVE-2023-50423, CVE-2023-50423, CVE-2023-50424, CVE-2024-21737, CVE-2024-22125, CVE-2024-21735)

Overview   An update has been made available to fix vulnerabilities in SAP products. Users of affected versions are advised to update to the latest version.   Affected Products   CVE-2023-49583 SAP BTP Security Services Integration Library @sap/xssec versions earlier than 3.6.0   CVE-2023-50422 SAP BTP Security Services Integration Library

Dell (Dell PowerProtect Data Manager) Products February 2024 Secondary Security Update Advisory

Overview   Dell(https://www.dell.com) has released a security update that fixes vulnerabilities in products. Users of affected products are advised to update to the latest version.   Affected Products   Dell Power Protect Data Manager 19.15 and earlier versions   Resolved Vulnerabilities   Vulnerability due to a weak password recovery mechanism

MS Family February 2024 Routine Security Update Advisory

Overview   Microsoft(https://www.microsoft.com) has released a security update that fixes vulnerabilities in products it has supplied. Users of affected products are advised to update to the latest version.   Affected Products     Azure family Azure Connected Machine Agent Azure DevOps Server 2022.1 Azure File Sync v14.0 Azure File Sync

VMware Family February 2024 Round 1 Security Update Advisory

Overview   VMware(https://www.vmware.com) has released a security update that fixes vulnerabilities in products it has been made. Users of affected products are advised to update to the latest version.   Affected Products   VMware Aria Operations for Networks version 6.x   Resolved Vulnerabilities   Local Elevation of Privilege Vulnerability (CVE-2024-22237)

PostgreSQL Vulnerability Security Update Advisory (CVE-2024-0985)

Overview   PostgreSQL(https://www.postgresql.org/) has released a security update that fixes vulnerabilities in its products. Users of affected products are advised to update to the latest version.   Affected Products   PostgreSQL 15 PostgreSQL 14 PostgreSQL 13 PostgreSQL 12   Resolved Vulnerabilities   Arbitrary SQL Execution Vulnerability in PostgreSQL (CVE-2024-0985, CVSS

Google Chrome browser (121.0.6167.160) security update advisory

Overview   Google has released an update to fix vulnerabilities in the Chrome(https://www.google.com/chrome) browser. Users of affected versions are advised to update to the latest version.   Affected Products   Chrome version 121.0.6167.160 and earlier (Mac, Linux)   Resolved Vulnerabilities   High-level memory free-and-reuse (UAF) vulnerability in the Mojo feature

Fortinet FortiOS Security Update Advisory (CVE-2024-21762, CVE-2024-23113)

Overview   Fortinet (https://www.fortinet.com) has made available an update that fixes vulnerabilities in FortiOS. Users of affected versions are advised to update to the latest version.   Affected Products   CVE-2024-21762 Applicable if SSLVPN is enabled and in use, otherwise not relevant FortiOS versions 7.4.0 through 7.4.2 FortiOS versions 7.2.0

Dell (Dell Unity) Products February 2024 1st Security Update Advisory

Overview   Dell(https://www.dell.com) has released a security update that fixes vulnerabilities in products. Users of affected products are advised to update to the latest version.   Affected Products   Dell Unity version 5.4 and earlier   Resolved Vulnerabilities   Arbitrary OS command execution vulnerability in Dell Unity due to OS

Ivanti Security Update Advisory (CVE-2024-22024)

Overview   An update has been made available to fix vulnerabilities in Ivanti products. Users of affected versions are advised to update to the latest version.   Affected Products   Ivanti Connect Secure 9.1R14.4 9.1R17.2 9.1R18.3 22.4R2.2 22.5R1.1   Ivanti Policy Secure 22.5R1.1   Ivanti ZTA 22.6R1.3   Resolved Vulnerabilities

Elastic Network Drive Connector security update advisory (CVE-2024-23447)

Overview An update has been made available to fix vulnerabilities in the Elastic Network Drive Connector. Users of affected versions are advised to update to the latest version.  Affected Products Versions of the Elastic Network Drive Connector prior to 8.12.1   Resolved Vulnerabilities Vulnerability in Elastic Network Drive Connector that