Government of the Republic of Trinidad and Tobago
gov.tt

Securing the Nation's Digital Infrastructure

TTCSIRT – 292-030620: TT-CSIRTADVISORY – UPDATE CISCO EMAIL SECURITY APPLIANCES: UNCONTROLLED RESOURCE EXHAUTION VULNERABILITY

A vulnerability in the malware detection functionality in Cisco Advanced Malware Protection (AMP) in Cisco AsyncOS Software for Cisco Email Security Appliances (ESAs) could allow an unauthenticated remote attacker to exhaust resources on an affected device. The vulnerability is due to insufficient control over system memory allocation. An attacker could exploit this vulnerability by sending …

TTCSIRT-291.030620: TT-CSIRT ADVISORY- TOMCAT RELEASES SECURITY UPDATES

Tomcat has released security updates to address vulnerabilities affecting multiple products. This update for tomcat to version 9.0.31 fixes the following three (3) issues: CVE-2019-17569, CVE-2020-1935 and CVE-2020-1938. TT-CSIRT encourages users and administrators to review and apply the necessary updates: https://www.suse.com/support/update/announcement/2020/suse-su-20200598-1

TTCSIRT-290.030520:TT-CSIRT ADVISORY LET’S ENCRYPT REVOKING 3 MILLION TLS CERTIFICATES ISSUED INCORRECTLY DUE TO A BUG

The most popular free certificate signing authority Let’s Encrypt is going to revoke more than 3 million TLS certificates within the next 24 hours that may have been issued wrongfully due to a bug in its Certificate Authority software. The most popular free certificate signing authority Let’s Encrypt is going to revoke more than 3 million TLS certificates within …

TTCSIRT-289.022620: TT-CSIRT ADVISORY- MICROSOFT EXCHANGE SERVER VULNERABILITY

Microsoft Exchange Server Exchange Control Panel Fixed Cryptographic Key Remote Code Execution Vulnerability   This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Exchange Server. Authentication is required to exploit this vulnerability. The specific flaw exists within the Exchange Control Panel web application. The product fails to generate a unique …

TTCSIRT-288.022620: TT-CSIRT ADVISORY- MICROSOFT INTERNET EXPLORER SCRIPTING ENGINE MEMORY CORRUPTION VULNERABILITY.

The Microsoft Internet Explorer Scripting Engine contains a memory corruption vulnerability, which can allow a remote, unauthenticated attacker to execute arbitrary code.   Description Microsoft Internet Explorer contains a scripting engine, which handles execution of scripting languages such as VBScript and JScript. The scripting engine JScript component contains an unspecified memory corruption vulnerability. Any application …

TTCSIRT-287.022620: TT-CSIRT ADVISORY- MULTIPLE ZYXEL DEVICE VULNERABILITIES.

Multiple ZyXEL devices contain a pre-authentication command injection vulnerability, which may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable device.   Description CWE-78: Improper Neutralization of Special Elements used in an OS Command (‘OS Command Injection’) Multiple ZyXEL devices achieve authentication by using the weblogin.cgi CGI executable. This program fails to …

TTCSIRT-286.022620: TT-CSIRT ADVISORY- APACHE TOMCAT VULNERABILITIES

There are three vulnerabilities with Apache Tomcat with varying levels of severity. Kindly see below for a summary of each vulnerability: Operating System            : Windows, UNIX variants (UNIX, Linux, OSX) Impact/Access                  : –      Provide Misleading Information –      Remote/Unauthenticated –      Access Confidential Data –      Remote/Unauthenticated –      Unauthorised Access –      Remote/Unauthenticated Resolution: Patch/Upgrade CVE Names:  CVE-2020-1938 CVE-2020-1935 CVE-2019-17569 Original …

TTCSIRT-285.022620: TT-CSIRT ADVISORY- OPENSMTPD 6.6.4P1 RELEASE ADDRESSES CRITICAL VULNERABILITY

Qualys has found another critical vulnerability in OpenSMTPD. It is very important that you upgrade your setups AS SOON AS POSSIBLE. On OpenBSD: Binary patches are available through syspatch. Just run the syspatch command and make sure that your OpenSMTPD was restarted: $ doas syspatch On other systems the released version 6.6.4p1 of OpenSMTPD addresses …

TTCSIRT-284.022620: TT-CSIRT ADVISORY-GOOGLE RELEASES SECURITY UPDATES FOR CHROME

Google has released Chrome version 80.0.3987.122 for Windows, Mac, and Linux. This version addresses vulnerabilities that an attacker could exploit to take control of an affected system. TT-CSIRT encourages users and administrators to review the Chrome Release and apply the necessary updates. https://chromereleases.googleblog.com/2020/02/stable-channel-update-for-desktop_24.html  

TTCSIRT-283.022620: TT-CSIRT ADVISORY-CISCO RELEASES SECURITY UPDATES

Cisco has released security updates to address vulnerabilities affecting multiple products. A remote attacker could exploit some of these vulnerabilities to take control of an affected system. For updates addressing lower severity vulnerabilities, see the Cisco Security Advisories page. TT-CSIRT encourages users and administrators to review the following Cisco advisories and apply the necessary updates: …