Skip to main content

Tag: vulnerability patch

6 articles

Network operations room with rows of computer servers and DNS setup.

BIND 9 Update Fixes 14 Flaws, Including Unauthenticated Crashes

The Internet Systems Consortium has rolled out a crucial BIND 9 update that patches 14 security flaws, including unauthenticated crashes, to keep your DNS server safe and secure. Fortunately, no active exploits have been reported so far, but it's still essential to update to the latest releases: BIND 9.20.29, BIND 9.21.26, or BIND 9.20.29-S1 to fix the vulnerabilities.

Analyst 207
Rows of computer equipment and racks in a calm, indoor-lit server room with a single unoccupied workstation centered in…

PostgreSQL Patches 12-Year-Old Flaw Enabling Code Execution

A 12-year-old flaw in PostgreSQL, just patched, allowed replication users to execute arbitrary code on the database server, posing a significant security risk. The vulnerability, tracked as CVE-2026-6471, was exploitable by accounts with the REPLICATION attribute and has been fixed in releases 18.6, 17.11, 16.15, 15.19, and 14.24.

Analyst 207
Laboratory workstation with laptop and scientific instruments in bright, neutral lighting.

Thermo Fisher Fixes Flaw Enabling Near-Undetectable DNA File Tampering

Thermo Fisher Scientific has patched a high-severity vulnerability in its Applied Biosystems human identification software that could have allowed nearly undetectable DNA file tampering, giving users a false sense of security. The company has implemented digital signatures to ensure data files remain authentic and trustworthy.

Analyst 207
Rows of equipment racks and servers in a modern tech company's server room with technicians walking between them.

Zimbra Fixes Command Injection Flaw, Four XSS Bugs

Zimbra has patched a critical command injection flaw and four cross-site scripting bugs in its latest update, ensuring users are protected from potential security threats. The fixes, part of version 10.1.20, address vulnerabilities that could allow malicious commands to be executed or sensitive data to be compromised.

Analyst 207
Concerned computer user looks at screen amidst paperwork and files.

7-Zip Patches RCE Flaw in XZ-Compressed Data Handling

Don't risk your files! 7-Zip's latest update, version 26.02, patches a critical vulnerability that could let hackers take control when you open a malicious archive.

Analyst 207
Wireless earbuds sit on a neutral surface, one bud slightly askew, in a blurred tech lab setting.

Apple patches Beats Studio Buds flaw that allowed eavesdropping via Bluetooth

Apple just patched a major flaw in its Beats Studio Buds that allowed hackers within Bluetooth range to eavesdrop on conversations through the earbuds' microphone, even if they weren't paired with the device. The company has released a security update, Beats Firmware Update 1B211, to fix the issue.

Analyst 207