by Scott Muniz | Jan 21, 2021 | Security, Technology
This article is contributed. See the original author and article here.
Original release date: January 21, 2021
Drupal has released security updates to address a vulnerability affecting Drupal. An attacker could exploit this vulnerability to take control of an affected system.
CISA encourages users and administrators to review Drupal Advisory SA-CORE-2021-001 and apply the necessary updates or mitigations.
This product is provided subject to this Notification and this Privacy & Use policy.
by Scott Muniz | Jan 21, 2021 | Security, Technology
This article is contributed. See the original author and article here.
Original release date: January 21, 2021
CISA and the CERT Coordination Center (CERT/CC) are aware of multiple vulnerabilities affecting Dnsmasq version 2.82 and prior. Dnsmasq is a widely-used, open-source software that provides Domain Name Service forwarding and caching and is common in Internet-of-Things (IoT) and other embedded devices. A remote attacker could exploit some of these vulnerabilities to take control of an affected system.
CISA encourages users and vendors of IoT and embedded devices that use Dnsmasq to review CERT/CC VU#434904 and CISA ICSA-21-019-01 21 for more information and to apply the necessary update. Refer to vendors for appropriate patches, when available.
This product is provided subject to this Notification and this Privacy & Use policy.
by Scott Muniz | Jan 21, 2021 | Security, Technology
This article is contributed. See the original author and article here.
Original release date: January 21, 2021
Google has released Chrome version 88.0.4324.96 for Windows, Mac, and Linux. This version addresses vulnerabilities that an attacker could exploit to take control of an affected system.
CISA encourages users and administrators to review the Chrome Release and apply the necessary updates.
This product is provided subject to this Notification and this Privacy & Use policy.
by Scott Muniz | Jan 21, 2021 | Security, Technology
This article is contributed. See the original author and article here.
Original release date: January 21, 2021
Oracle has released its Critical Patch Update for January 2021 to address 329 vulnerabilities across multiple products. A remote attacker could exploit some of these vulnerabilities to take control of an affected system.
CISA encourages users and administrators to review the Oracle January 2021 Critical Patch Update and apply the necessary updates.
This product is provided subject to this Notification and this Privacy & Use policy.
by Contributed | Jan 21, 2021 | Technology
This article is contributed. See the original author and article here.
Final Update: Thursday, 21 January 2021 10:55 UTC
We’ve confirmed that all systems are back to normal with no customer impact as of 01/21, 10:25 UTC. Our logs show the incident started on 01/21, 08:45 UTC and that during the 1hours 40 minutes that it took to resolve the issue some customers may have experienced missed alerts across regions.
Root Cause: We determined that a backend service responsible for processing alerts became unhealthy after a recent configuration change following a deployment.
Incident Timeline: 1 Hours & 40 minutes – 01/21, 08:45 UTC through 01/21, 10:25 UTC
We understand that customers rely on Azure Alerts as a critical service and apologize for any impact this incident caused.
-Deepika
Recent Comments