Marc Newlin

Researcher fromSkySafe
#960of 53,633
215.7Total CVSS
Vulnerabilities · 31
Low
1
Medium
15
High
11
Critical
4
PT-2023-1008
8.3
2023-08-01
Apple · Ios · CVE-2023-45866
**Name of the Vulnerable Software and Affected Versions** BlueZ versions prior to the fixed version Android versions prior to 11 Linux versions with vulnerable Bluetooth stacks macOS versions with vulnerable Bluetooth stacks iOS versions with vulnerable Bluetooth stacks **Description** A critical Bluetooth security flaw could be exploited by threat actors to take control of Android, Linux, macOS, and iOS devices. The issue relates to a case of authentication bypass that enables attackers to connect to susceptible devices and inject keystrokes to achieve code execution as the victim. This could lead to remote escalation of privilege with no additional execution privileges needed, and user interaction is not required for exploitation. The estimated number of potentially affected devices worldwide is not specified, but the flaw affects multiple operating systems, including Android, Linux, macOS, and iOS. **Recommendations** For BlueZ: Update to a version that includes the fix for the authentication bypass vulnerability. For Android versions prior to 11: No solution is available yet, consider disabling Bluetooth when not in use as a temporary workaround. For Linux versions with vulnerable Bluetooth stacks: Update to a version that includes the fix for the authentication bypass vulnerability. For macOS versions with vulnerable Bluetooth stacks: Update to a version that includes the fix for the authentication bypass vulnerability. For iOS versions with vulnerable Bluetooth stacks: Update to a version that includes the fix for the authentication bypass vulnerability, such as iOS and iPadOS 17.2.
PT-2017-18961
5.3
2017-07-31
Cisco · Cisco Dpc3939B · CVE-2017-9491
**Name of the Vulnerable Software and Affected Versions** Cisco DPC3939 version dpc3939-P20-18-v303r20421733-160420a-CMCST Cisco DPC3939 version dpc3939-P20-18-v303r20421746-170221a-CMCST Cisco DPC3939B version dpc3939b-v303r204217-150321a-CMCST Cisco DPC3941T version DPC3941 2.5s3 PROD sey Arris TG1682G version 10.0.132.SIP.PC20.CT, software version TG1682 2.2p7s2 PROD sey **Description** The Comcast firmware on the affected devices does not set the secure flag for cookies in an https session to an administration application. This makes it easier for remote attackers to capture these cookies by intercepting their transmission within an http session. **Recommendations** For Cisco DPC3939 version dpc3939-P20-18-v303r20421733-160420a-CMCST, consider disabling access to the administration application until a patch is available. For Cisco DPC3939 version dpc3939-P20-18-v303r20421746-170221a-CMCST, consider disabling access to the administration application until a patch is available. For Cisco DPC3939B version dpc3939b-v303r204217-150321a-CMCST, consider disabling access to the administration application until a patch is available. For Cisco DPC3941T version DPC3941 2.5s3 PROD sey, consider disabling access to the administration application until a patch is available. For Arris TG1682G version 10.0.132.SIP.PC20.CT, software version TG1682 2.2p7s2 PROD sey, consider disabling access to the administration application until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.