3 Private Equity Firms Kick the Tires, But Proposed Price Wasn't to Snyk's Liking Slowing growth, continued losses and increased competition have turned a Snyk IPO into an increasingly unlikely prospect. The Information reported this month that Snyk has spoken with at least three private equity firms about a potential deal, but has been unable to reach an agreement on price.
Medusa Group Tied to Attack on SimonMed and Threats to Leak Stolen Data Two radiology practices are notifying nearly 1.5 million people of separate hacking incidents compromising their sensitive health information. Cybercrime gang Medusa claimed credit for attacking Arizona-based SimonMed Imaging in January and threatened to leak the stolen data of nearly 1.3 million patients on the darkweb.
Dutch Ministry Invokes National Security Law to Impose Domestic Control The Dutch government said it is severing semiconductor chipmaker Nexperia from control by its Chinese parent after invoking a national security law allowing it to impose domestic control. Partially Chinese state-controlled Wingtech Technologies acquired a three quarters stake in Nexperia in 2018.
Today's Hapless Hackers Are Tomorrow's Threat, Warns Forescout A pro-Russian hacktivist group boasted on Telegram that it hacked a Western water treatment plant - but actually succeeded in attacking a honeypot left by security researchers at Forescout, the firm said. TwoNet appears to have ceased operations on Sept. 30.
EU Justice and Home Affairs Council Halts Voting, Sees Opposition A European content scanning proposal intended to enhance online child safety stalled after German lawmakers voiced opposition and member states canceled a planned vote on the measure's adoption. The EU Justice and Home Affairs Council was set to vote Tuesday on Chat Control.
A vulnerability marked as problematic has been reported in Linux Kernel up to 6.12.1. Affected is the function device_for_each_child. The manipulation leads to improper update of reference count.
This vulnerability is referenced as CVE-2024-53237. The attack needs to be initiated within the local network. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.11.10/6.12.1. It has been rated as problematic. This affects the function usb_kill_anchored_urbs of the component btmtk. Performing manipulation results in null pointer dereference.
This vulnerability is identified as CVE-2024-53238. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability classified as problematic was found in Linux Kernel up to 6.11.10/6.12.1. This issue affects the function xsk_build_skb. Such manipulation leads to excessive iteration.
This vulnerability is documented as CVE-2024-53236. The attack requires being on the local network. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability identified as problematic has been detected in Linux Kernel up to 6.6.63/6.11.10/6.12.1. This affects the function iomap_iter_done of the component erofs. Performing manipulation results in privilege escalation.
This vulnerability was named CVE-2024-53234. The attack needs to be approached within the local network. There is no available exploit.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.12.1. This impacts the function fuse_read_args_fill of the component erofs. Executing manipulation can lead to null pointer dereference.
The identification of this vulnerability is CVE-2024-53235. The attack needs to be done within the local network. There is no exploit available.
The affected component should be upgraded.
A vulnerability categorized as problematic has been discovered in Linux Kernel up to 6.1.119/6.6.63/6.11.10/6.12.1. The impacted element is the function utf8_load of the file kernel/module/main.c of the component unicode. Such manipulation leads to privilege escalation.
This vulnerability is uniquely identified as CVE-2024-53233. The attack can only be initiated within the local network. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.1.119/6.6.63/6.11.10/6.12.1. It has been declared as critical. Impacted is the function cpufreq_cpu_get_raw. The manipulation results in null pointer dereference.
This vulnerability is known as CVE-2024-53231. Access to the local network is required for this attack. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.11.10/6.12.1. It has been rated as problematic. The affected element is the function __iommu_group_set_domain_nofail of the component s390. This manipulation causes state issue.
This vulnerability is handled as CVE-2024-53232. The attack can only be done within the local network. There is not any exploit available.
Upgrading the affected component is advised.