2026年9月7日星期一

Aruba 產品多個漏洞

Aruba 產品多個漏洞

發佈日期: 2026年09月07日

在Aruba產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發繞過保安限制、阻斷服務狀況、跨網站指令碼、敏感資料洩露、權限提升及遠端執行任意程式碼。


影響

  • 遠端執行程式碼
  • 繞過保安限制
  • 阻斷服務
  • 跨網站指令碼
  • 資料洩露
  • 權限提升

受影響之系統或技術

  • AOS-CX 10.18.0001
  • AOS-CX 10.17.1021 及以下版本
  • AOS-CX 10.16.1051 及以下版本
  • AOS-CX 10.13.1180 及以下版本
  • AOS-CX 10.10.1180 及以下版本 (EOM)

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

Aruba Products Multiple Vulnerabilities

Aruba Products Multiple Vulnerabilities

Release Date: 7 Sep 2026 

Multiple vulnerabilities were identified in Aruba Products. A remote attacker could exploit these vulnerabilities to trigger security restriction bypass, denial of service condition, cross-site scripting, sensitive information disclosure, elevation of privilege and remote code execution on the targeted system.


Impact

  • Remote Code Execution
  • Security Restriction Bypass
  • Denial of Service
  • Cross-Site Scripting
  • Information Disclosure
  • Elevation of Privilege

System / Technologies affected

  • AOS-CX 10.18.0001
  • AOS-CX 10.17.1021 and below
  • AOS-CX 10.16.1051 and below
  • AOS-CX 10.13.1180 and below
  • AOS-CX 10.10.1180 and below (EOM)

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

Ubuntu Linux 核心多個漏洞

Ubuntu Linux 核心多個漏洞

發佈日期: 2026年09月07日

於 Ubuntu Linux 內核 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、繞過保安限制及敏感資料洩露。


影響

  • 阻斷服務
  • 繞過保安限制
  • 資料洩露

受影響之系統或技術

  • Ubuntu 14.04 LTS
  • Ubuntu 16.04 LTS
  • Ubuntu 18.04 LTS
  • Ubuntu 20.04 LTS

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

Ubuntu Linux Kernel Multiple Vulnerabilities

Ubuntu Linux Kernel Multiple Vulnerabilities

Release Date: 7 Sep 2026

Multiple vulnerabilities were identified in Ubuntu Linux Kernel. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, security restriction bypass and sensitive information disclosure on the targeted system.


Impact

  • Denial of Service
  • Security Restriction Bypass
  • Information Disclosure

System / Technologies affected

  • Ubuntu 14.04 LTS
  • Ubuntu 16.04 LTS
  • Ubuntu 18.04 LTS
  • Ubuntu 20.04 LTS

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

2026年9月4日星期五

Google Chrome 多個漏洞

Google Chrome 多個漏洞

發佈日期: 2026年09月04日

於 Google Chrome 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、權限提升、繞過保安限制、敏感資料洩露及遠端執行任意程式碼。

 

注意:

CVE-2026-85046 正在被廣泛利用。遠端攻擊者可以利用此漏洞,透過特製的 HTML 頁面在沙箱環境中執行任意程式碼。因此,此漏洞的風險等級被評為極高度風險。


影響

  • 遠端執行程式碼
  • 阻斷服務
  • 資料洩露
  • 繞過保安限制
  • 權限提升

受影響之系統或技術

  • Google Chrome 152.0.7977.82 (Linux) 之前的版本
  • Google Chrome 152.0.7977.82/.83 (Mac) 之前的版本
  • Google Chrome 152.0.7977.82/.83 (Windows) 之前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝軟件供應商提供的修補程式:

  • Google Chrome 152.0.7977.82 (Linux) 或之後版本
  • Google Chrome 152.0.7977.82/.83 (Mac) 或之後版本
  • Google Chrome 152.0.7977.82/.83 (Windows) 或之後版本

漏洞識別碼


資料來源


相關連結

Google Chrome Multiple Vulnerabilities

Google Chrome Multiple Vulnerabilities

Release Date: 4 Sep 2026

Multiple vulnerabilities were identified in Google Chrome. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, security restriction bypass, sensitive information disclosure and remote code execution on the targeted system.

 

Note: 

CVE-2026-85046 is being exploited in the wild. A remote attacker could exploit this vulnerability to execute arbitrary code inside a sandbox via a crafted HTML page. Hence, the risk level is rated as Extremely High Risk.


Impact

  • Remote Code Execution
  • Denial of Service
  • Information Disclosure
  • Security Restriction Bypass
  • Elevation of Privilege

System / Technologies affected

  • Google Chrome prior to 152.0.7977.82 (Linux)
  • Google Chrome prior to 152.0.7977.82/.83 (Mac)
  • Google Chrome prior to 152.0.7977.82/.83 (Windows)

Solutions

Before installation of the software, please visit the software vendor web-site for more details.

Apply fixes issued by the vendor:

  • Google Chrome 152.0.7977.82 (Linux) or later
  • Google Chrome 152.0.7977.82/.83 (Mac) or later
  • Google Chrome 152.0.7977.82/.83 (Windows) or later

Vulnerability Identifier


Source


Related Link

Microsoft Edge 多個漏洞

Microsoft Edge 多個漏洞

發佈日期: 2026年09月04日

於 Microsoft Edge 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、權限提升、繞過保安限制、敏感資料洩露、彷冒、遠端執行任意程式碼及資料篡改。


影響

  • 遠端執行程式碼
  • 阻斷服務
  • 繞過保安限制
  • 資料洩露
  • 權限提升
  • 篡改
  • 仿冒

受影響之系統或技術

  • Microsoft Edge 152.0.4191.62 之前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝軟件供應商提供的修補程式:

  • 更新至 152.0.4191.62 或之後版本

漏洞識別碼


資料來源


相關連結

Aruba 產品多個漏洞

Aruba 產品多個漏洞 發佈日期: 2026年09月07日 在Aruba產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發繞過保安限制、阻斷服務狀況、跨網站指令碼、敏感資料洩露、權限提升及遠端執行任意程式碼。 影響 遠端執行程式碼 繞過保安限制 阻斷服務 跨網站指令碼 ...