Talos discovers denial-of-service vulnerability in Microsoft Audio Bus; Potential remote code execution in popular open-source PLC
ID: 3584e164-5c7b-5cb3-ad2c-3db09525e05e
STIX ID: report--3584e164-5c7b-5cb3-ad2c-3db09525e05e
Feed Name: Cisco Talos
Cisco Talos disclosed multiple patched vulnerabilities affecting Microsoft Windows components and OpenPLC: a Windows HD Audio Bus Driver flaw enabling denial-of-service (CVE-2024-45383), a stale-memory corruption in the Pragmatic General Multicast server (CVE-2024-38140), and three OpenPLC vulnerabilities (including CVE-2024-34026) that can cause DoS or potentially remote code execution on industrial controllers; Talos reported the issues to vendors, Microsoft issued patches, and Snort rules/advisories are available for detection and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
