VMware Rolls a Fix for Formerly Critical Zero-Day Bug

VMware has issued a full patch and revised the severity level of the NSA-reported vulnerability to “important.” Continue reading VMware Rolls a Fix for Formerly Critical Zero-Day Bug

Adobe Fixes 16 Critical Code-Execution Bugs Across Portfolio

The out-of-band patches follow a lighter-than-usual Patch Tuesday update earlier this month. Continue reading Adobe Fixes 16 Critical Code-Execution Bugs Across Portfolio

October Patch Tuesday: Microsoft Patches Critical, Wormable RCE Bug

There were 11 critical bugs and six that were unpatched but publicly known in this month’s regularly scheduled Microsoft updates. Continue reading October Patch Tuesday: Microsoft Patches Critical, Wormable RCE Bug

Authentication Bug Opens Android Smart-TV Box to Data Theft

The streaming box allows arbitrary code execution as root, paving the way to pilfering social-media tokens, passwords, messaging history and more. Continue reading Authentication Bug Opens Android Smart-TV Box to Data Theft

Critical Bugs in Utilities VPNs Could Cause Physical Damage

Gear from Secomea, Moxa and HMS Networks are affected by remote code-execution flaws, researchers warn. Continue reading Critical Bugs in Utilities VPNs Could Cause Physical Damage

Max-Severity Bug in Infusion Pump Gateway Puts Lives at Risk

The critical bug in a connected medical device can allow an attacker to remotely manipulate hospital pumps, either to withhold meds or dispense too much. Continue reading Max-Severity Bug in Infusion Pump Gateway Puts Lives at Risk