Logo Kaycee Smith Computer Repair, Redding CA Call 530-356-4652
Kaycee Smith Computer Angels BBB Business Review

Kaycee Smith Computer Angel - Security Alerts


If you are experiencing problems with any of the following.

Call Kaycee Smith Computer Angel for assistance.

530-356-4652

    
 

CISA Current Activity

A regularly updated summary of the most frequent, high-impact security incidents currently being reported to the US-CERT.

F5 Releases Security Advisory for BIG-IP TMUI RCE vulnerability, CVE-2020-5902 4 Jul 2020, 8:55 pm

Original release date: July 4, 2020

F5 has released a security advisory to address a remote code execution (RCE) vulnerability—CVE-2020-5902—in the BIG-IP Traffic Management User Interface (TMUI). An attacker could exploit this vulnerability to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the F5 advisory for CVE-2020-5902 and upgrade to the appropriate version.

This product is provided subject to this Notification and this Privacy & Use policy.

Samba Releases Security Updates 3 Jul 2020, 4:02 pm

Original release date: July 3, 2020

The Samba Team has released security updates to address vulnerabilities in multiple versions of Samba. An attacker could exploit some of these vulnerabilities to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the Samba Security Announcements for CVE-2020-10730, CVE-2020-10745, CVE-2020-10760, and CVE-2020-14303 and apply the necessary updates and workarounds.

This product is provided subject to this Notification and this Privacy & Use policy.

Cisco Releases Security Updates for Multiple Products 2 Jul 2020, 3:06 pm

Original release date: July 2, 2020

Cisco has released security updates to address vulnerabilities in multiple products. A remote attacker could exploit some of these vulnerabilities to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the following Cisco advisories and apply the necessary updates:

This product is provided subject to this Notification and this Privacy & Use policy.

Mozilla Releases Security Updates for Firefox and Firefox ESR 2 Jul 2020, 2:53 pm

Original release date: July 2, 2020 | Last revised: July 3, 2020

Mozilla has released security updates to address vulnerabilities in Firefox, Firefox ESR, and Thunderbird. An attacker could exploit some of these vulnerabilities to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the Mozilla Security Advisories for Firefox 78, Firefox ESR 68.10, and Thunderbird 68.10.0 and apply the necessary updates.

This product is provided subject to this Notification and this Privacy & Use policy.

Microsoft Releases Security Updates for Windows 10, Windows Server 1 Jul 2020, 2:45 pm

Original release date: July 1, 2020

Microsoft has released security updates to address vulnerabilities in Windows 10 and Windows Server. These vulnerabilities could allow a remote attacker to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the Microsoft security advisories for CVE-2020-1425 and CVE-2020-1457 and apply the necessary updates.

This product is provided subject to this Notification and this Privacy & Use policy.

Netgear Router Vulnerabilities 29 Jun 2020, 7:44 pm

Original release date: June 29, 2020

Multiple Netgear router models contain vulnerabilities that a remote attacker can exploit to take control of an affected device. 

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to update to the most recent firmware version and to replace end-of-life devices that are no longer supported with security patches. Given the increase in telework, CISA recommends that CISOs consider the risk that these vulnerabilities present to business networks.

See the following products for additional information. 

This product is provided subject to this Notification and this Privacy & Use policy.

Palo Alto Releases Security Updates for PAN-OS 29 Jun 2020, 6:10 pm

Original release date: June 29, 2020

Palo Alto Networks has released security updates to address a vulnerability affecting the use of Security Assertion Markup Language in PAN-OS. An unauthenticated attacker with network access could exploit this vulnerability to obtain sensitive information.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review Palo Alto Security Advisory for CVE-2020-2021 and apply the necessary updates or workarounds.

This product is provided subject to this Notification and this Privacy & Use policy.

Apache Releases Security Advisory for Apache Tomcat 26 Jun 2020, 12:40 pm

Original release date: June 26, 2020 | Last revised: June 29, 2020

The Apache Software Foundation has released a security advisory to address a vulnerability in Apache Tomcat. An attacker could exploit this vulnerability to cause a denial-of-service condition.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the Apache security advisory for CVE-2020-11996 and upgrade to the appropriate version.

This product is provided subject to this Notification and this Privacy & Use policy.

Cisco Releases Security Advisory for Telnet Vulnerability in IOS XE Software 25 Jun 2020, 4:35 pm

Original release date: June 25, 2020

Cisco has released a security advisory on a Telnet vulnerability—CVE-2020-10188—affecting Cisco IOS XE devices. A remote attacker could exploit this vulnerability to take control of an affected system. The advisory contains workarounds as well as indicators of compromise.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the Cisco Security Advisory and apply the necessary workarounds.

This product is provided subject to this Notification and this Privacy & Use policy.

VMware Releases Security Updates for Multiple Products 24 Jun 2020, 3:05 pm

Original release date: June 24, 2020

VMware has released security updates to address multiple vulnerabilities in VMware ESXi, Workstation, Fusion, and Cloud Foundation. An attacker could exploit some of these vulnerabilities to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review VMware Security Advisory VMSA-2020-0015 and apply the necessary updates or workarounds.

 

This product is provided subject to this Notification and this Privacy & Use policy.