CISA Active Exploits – June 2023


by Artie Kaye

The Cybersecurity and Infrastructure Agency (CISA) added a host of new exploits over the last two months which are must patch issues. While these instructions are meant for governmental agencies, it would be prudent to address them if they apply. Below are the CVE numbers, what products are affected, and official links the various companies have provided highlighting the problem or their solutions.

All links will open in a new browser tab or window.

CompanyAffectsPatch or WorkaroundCVE
ApacheTomcathttps://tomcat.apache.org/security-9.htmlCVE-2016-8735
AppleiOS 15.7.6, iPadOS 15.7.6https://support.apple.com/HT213765CVE-2023-32409 CVE-2023-28204 CVE-2023-32373
iOS 16.5 iPadOS 16.5https://support.apple.com/HT213757
macOS Ventura 13.4https://support.apple.com/HT213758
Safari 16.5https://support.apple.com/HT213762
tvOS 16.5https://support.apple.com/HT213761
watchOS 9.5https://support.apple.com/HT213764
Barracuda NetworksEmail Security Gateway Appliancehttps://status.barracuda.com/incidents/34kx82j5n4q9CVE-2023-2868
CiscoIOShttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20040827-telnetCVE-2004-1464
Multiple Productshttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160916-ikev1CVE-2016-6415
JenkinsJenkins User Interfacehttps://www.jenkins.io/security/advisory/2015-11-11/CVE-2015-5317
LinuxLinux Kernelhttps://lkml.iu.edu/hypermail/linux/kernel/1609.1/02103.html
https://lkml.iu.edu/hypermail/linux/kernel/1601.3/06474.html
CVE-2014-0196 CVE-2010-3904
OracleJava SE, JRockithttps://www.oracle.com/security-alerts/cpuapr2016v3.htmlCVE-2016-3427
ProgressMOVEit Transferhttps://community.progress.com/s/article/MOVEit-Transfer-Critical-Vulnerability-31May2023CVE-2023-34362
Red HatPolkithttps://bugzilla.redhat.com/show_bug.cgi?id=1961710CVE-2021-3560
Ruckus WirelessMultiple Productshttps://support.ruckuswireless.com/security_bulletins/315CVE-2023-25717
SamsungMobile Deviceshttps://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=05CVE-2023-21492
ZyxelMultiple Productshttps://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-remote-command-injection-vulnerability-of-firewallsCVE-2023-28771
All links open in new tab or window.