Critical Patches, Updates Report - October 2016


Cyber criminals take over user computers by writing computer programs that “exploit” vulnerabilities in operating systems (Windows, Apple OS, etc) and application programs (Adobe Acrobat, Office, Flash, Java, etc). When software companies find a vulnerability, they usually issue an update patch to fix the code running in their customer’s computers.

It is strongly recomended you to update your Systems with following latest patches and updates:

Important Updates

7-Zip


7-Zip.org has released version 16.03 (32-bit and 64-bit). Updates are available from 7-Zip’s website.

Adobe Shockwave Player


Adobe has released version 12.2.5.195 of Shockwave Player running on Windows and Macintosh. Updates are available through the program or from Adobe’s Shockwave Web Site.

Comodo Free Firewall, Internet Security



Comodo has released version 8.4.0.5165 of its free firewall. Updates are available from Comodo’s website.

Comodo has released version 8.4.0.5165 of its free security suite. Updates are available from Comodo’s website.

Dropbox



Dropbox has released version 11.4.21 for its file hosting program. Updates are available at Dropbox’s website.

Evernote 



Evernote has released version 6.3.3.3502. Updates are available on Evernote’s website.

Google Chrome


Google has released Google Chrome version 53.0.2785.143. Updates are available from within the browser or from Google Chrome’s website.

Mozilla Firefox


Mozilla has released 49.0.1. Updates are available within the browser or from Mozilla’s website.


Cisco


Cisco reports patched vulnerabilities in its Cisco IOS Software, IOS XE Software, Firepower Management Center and products with OpenSSL. 

Cisco also reports an unpatched vulnerabilities in its Cisco Email Security Appliance (ESA), Content Security Management Appliance (SMA), Web Security Appliance (WSA), Firepower Management Center (Cross-Site Request Forgery Vulnerability), FireSIGHT System Software, IOS XR Software and Videoscape Distribution Suite Service Manager. Additional details are available at Cisco’s website.


Novell Open Enterprise Server 
  

Novell has released an updates to fix multiple vulnerabilities in its Open Enterprise Server versions 11.2, 11.3, 2015 and 2015.1 (OES 11 SP2, OES 11 SP3, OES 2015 and OES 2015 SP1). 

For version 11.2 apply patches oes11sp2-wget-10983, oes11sp2-openssh-10980, oes11sp2-bind-11003 and oes11sp2-September-2016-Scheduled-Maintenance-10989. 

For version 11.3 apply patches For version 2015 apply patches oes11sp3-September-2016-Scheduled-Maintenance-10991. 

For version OES 2015 apply patches oes2015-wget-10984, oes2015-openssh-10982, oes2015-bind-11004 and oes2015-September-2016-Scheduled-Maintenance-10990. 

For version 2015.1 (SP1) apply patches oes2015sp1-September-2016-Scheduled-Maintenance-10992. Additional details are available at Novell’s website.

OpenSSL


OpenSSL has released versions 1.0.2j and 1.1.0b to fix at least 2 vulnerabilities, some of which are highly critical, reported in previous versions. Updates are available at OpenSSL’s website.

No comments:

Post a Comment