CISA has ordered U.S. federal agencies to immediately apply updates to fix three Citrix NetScaler and Google Chrome vulnerabilities that have been used in attacks. The agency specifically focused on a Citrix vulnerability that allows attackers to execute code remotely.

The cybersecurity agency added the three zero-day vulnerabilities to the List of Known Exploitable Vulnerabilities, saying such vulnerabilities are frequently used by cybercriminals and pose "significant risks to federal business."
On Tuesday, Citrix urged customers to immediately patch their Internet-exposed Netscaler ADC and Gateway appliances against vulnerabilities CVE-2023-6548 and CVE-2023-6549 that could be used for remote code execution and denial-of-service attacks , respectively
See also: Atlassian: Critical vulnerability affects older versions of Confluence
Those who cannot install the security should block network traffic to affected instances and ensure they are not accessible to the internet. According to threat monitoring platform Shadowserver, more than 51,000 Netscaler appliances are currently exposed to the internet, with 1,500 having their management interfaces accessible over the internet.
In addition to the two Citrix vulnerabilities, CISA asked federal agencies to immediately patch Chrome vulnerability CVE-2024-0519, the first zero-day vulnerability that Google patched this year.
US Federal Civilian Executive Branch Agencies (FCEB) must patch vulnerable devices on their networks within a specific timeframe.
Of the three vulnerabilities now fixed, CVE-2023-6548 affecting NetScaler ADC and Gateway management interfaces must be patched by January 24.
See also: GitHub: Key rotation due to vulnerability that exposed credentials

The other two vulnerabilities , CVE-2023-6549 (NetScaler) and bug CVE-2024-0519 (Google Chrome), must be fixed by February 7.
Although CISA's mandates only apply to US federal agencies , all organizations (including private companies) should prioritize fixing these flaws as soon as possible.
CISA's KEV list is very useful for organizations around the world who want to learn about new threats and are interested in better vulnerability management and prioritization.
Overall, CISA is a great help in protecting and threats cybersecurity. This organization works with various sectors, such as private businesses, state governments, and local authorities, to improve the security of digital systems.
See also: Ivanti Connect Secure: Mass exploitation of zero-day vulnerabilities
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
It provides information and tools to help organizations protect their networks from cyberattacks and deal with any attacks that may occur.
In addition, it informs the public about any vulnerabilities in widely used systems and applications. Overall, CISA's role is vital to protecting the digital infrastructure of the United States and other regions.
Source: www.bleepingcomputer.com
