Some Siemens Healthineers (belonging to Siemens company that produces medical technique) products affected by BlueKeep…
The first error is related to a heap buffer overflow in the SM2 cryptographic algorithm, which usually leads to crashes, but can also be exploited by attackers to execute arbitrary code. The second issue relates to a read buffer overflow when processing ASN.1 strings, which can be exploited for DoS attacks or gaining access to memory contents such as private keys or other sensitive information.
Although the OpenSSL development team fixed these bugs on August 24, Synology says that the patches for the affected products are not ready yet, and does not give an exact timeline for their release.
It is also worth mentioning that the NAS manufacturer is working on patches for several other vulnerabilities related to the operation of DiskStation Manager (DSM).
These issues have not yet been assigned CVE IDs, but are known to affect DSM 7.0, DSM 6.2, DSM UC, SkyNAS, and VS960HD.
These issues allow remote authenticated attackers to execute arbitrary commands, and remote attackers can write arbitrary files through the vulnerable version of DiskStation Manager (DSM).
Let me remind you that we wrote that Zerologon Problem Threatens Certain Qnap NAS.
News-xheluza.cc is a domain that tries to trick you into subscribing to its browser notifications…
Initiateextremelyoriginalthe-file.top is a site that tries to trick you into subscribing to its browser notifications…
Chernars.com is a domain that tries to force you into subscribing to its browser notifications…
Eclipse-adblocker.pro is a site that tries to trick you into clik to its browser notifications…
Initiateadvancedcompletelythe-file.top is a site that tries to force you into subscribing to its browser notifications…
Pbmsoultions.com is a domain that tries to trick you into clik to its browser notifications…