Adobe has released a security update to fix a vulnerability in their Creative Cloud Desktop Application for Windows. Successful exploitation could lead to arbitrary file system write and privilege escalation in the context of the current user (CVE-2020-9682, CVE-2020-9669, CVE-2020-9670, CVE-2020-9671).
Affected versions:
Creative Cloud Desktop Application 5.1 and earlier versions for Windows
More information can be read from Adobe's security bulletin.
Wednesday, July 22, 2020
Microsoft Security Updates For July 2020
Microsoft have released security updates for July 2020.
Summary of the updates (filter by inserting 06/10/2020 to the From field and 07/14/2020 to the To field) here.
Summary of the updates (filter by inserting 06/10/2020 to the From field and 07/14/2020 to the To field) here.
Labels:
Microsoft,
security,
security threat,
update,
vulnerability
Google Chrome Updated
Google have released a version 84.0.4147.89 of their Chrome web browser. Updated version contains fixes to 38 security vulnerabilities. More information about changes can be viewed in Google Chrome release blog.
Labels:
chrome,
google,
security,
security threat,
update,
vulnerability
Thursday, July 9, 2020
Kernel Data Protection (KDP) Coming To Windows 10
Microsoft is bringing Kernel Data Protection (KDP) to Windows 10. Currently it's being tested with Windows 10 Insider builds.
Kernel Data Protection (KDP) is a new technology that prevents data corruption attacks by protecting parts of the Windows kernel and drivers through virtualization-based security (VBS). KDP is a set of APIs that provide the ability to mark some kernel memory as read-only, preventing attackers from ever modifying protected memory.
More information and technical details about KDP can be read from Microsoft security blog.
Kernel Data Protection (KDP) is a new technology that prevents data corruption attacks by protecting parts of the Windows kernel and drivers through virtualization-based security (VBS). KDP is a set of APIs that provide the ability to mark some kernel memory as read-only, preventing attackers from ever modifying protected memory.
More information and technical details about KDP can be read from Microsoft security blog.
NVIDIA GeForce Experience Fixed
NVIDIA has released a new version of GeForce Experience software. The new version fixes a vulnerability (CVE‑2020‑5964) that may lead to code execution, denial of service or escalation of privileges.
Affected versions
GeForce Experience for Windows versions earlier than 3.20.4
More information and instructions for updating can be read from the NVIDIA security bulletin.
Affected versions
GeForce Experience for Windows versions earlier than 3.20.4
More information and instructions for updating can be read from the NVIDIA security bulletin.
Labels:
geforce experience,
nvidia,
security,
security threat,
update,
vulnerability,
Windows
Mozilla Thunderbird Updated
Mozilla have released an updated version of their Thunderbird email client containing fixes to security vulnerabilities.
Affected versions:
Mozilla Thunderbird versions earlier than 68.10.0
Fresh version can be obtained via inbuilt updater or by downloading from the product site.
Affected versions:
Mozilla Thunderbird versions earlier than 68.10.0
Fresh version can be obtained via inbuilt updater or by downloading from the product site.
Labels:
Mozilla,
security,
security threat,
thunderbird,
update,
vulnerability
Thursday, July 2, 2020
Mozilla Firefox New Version Released
Mozilla have released updated versions of their Firefox web browser. New versions fix security vulnerabilities.
Affected versions:
-Mozilla Firefox earlier than 78 (advisory)
-Mozilla Firefox ESR 68.x earlier than 68.10 (advisory)
Fresh version can be obtained via inbuilt updater or by downloading (latest version) from the product site.
Affected versions:
-Mozilla Firefox earlier than 78 (advisory)
-Mozilla Firefox ESR 68.x earlier than 68.10 (advisory)
Fresh version can be obtained via inbuilt updater or by downloading (latest version) from the product site.
Labels:
Firefox,
Mozilla,
security,
security threat,
update,
vulnerability,
Windows
Subscribe to:
Posts (Atom)