CEMView 4.0 Security Update Bulletin (CVE-2021-26414)

Microsoft has a security update fixing a vulnerability related to a DCOM Server security feature bypassing CVE-2021-26414. The Microsoft fix for this vulnerability addresses the authentication used between DCOM clients and servers.  All classic OPC Servers and OPC Client applications are affected by this vulnerability. Microsoft has released an update to Windows which will be forced in June of 2022 to address this security vulnerability.  This patch will be part of Windows update KB5004442. When the Microsoft Windows update patch is installed, the [...]

Read more...

CEMView 4.0 Security Update Bulletin

On January 3, 2018 a team of security researchers disclosed several software analysis methods that, when used for malicious purposes, have the potential to improperly gather sensitive data from many types of computing devices with many different vendors’ processors and operating systems. https://security.googleblog.com/2018/01/todays-cpu-vulnerability-what-you-need.html An overview of the security vulnerability issue is available at the link below: https://www.intel.com/content/www/us/en/architecture-and-technology/facts-about-side-channel-analysis-and-intel-products.html?cid=em-elq-33470&utm_source=elq&utm_medium=email&utm_campaign=33470&elq_cid=124017 Microsoft released a series of Security Updates on the same day, January 3, 2018 to patch the disclosed security vulnerability. However, the released Security Updates were [...]

Read more...