Microsoft provides protections from vulnerability Spectre Variant 4

As part of the planned June 2018 Patch Tuesday Microsoft added protections from an additional subclass of speculative execution side channel vulnerability known as Speculative Store Bypass (CVE-2018-3639).

Critical vulnerability in Microsoft Malware Protection Engine

Microsoft has released a security update for Malware Protection Engine, including a patch for the remote code execution vulnerability

Two critical vulnerabilities were patched: update Samba servers immediately

Two critical vulnerabilities that could allow unprivileged remote attackers to launch DoS attacks against servers and change any other users’ passwords, including admin’s, were detected and addressed by maintainers of Samba.

New security flaw in Windows 10

Google Project Zero discovered a new security issue that was tested on Windows 10 Version 1709.

Cisco released a second fix for a critical vulnerability in its ASA

Cisco engineers found other attack vectors and features that are affected by CVE-2018-0101 vulnerability that were not originally identified by the NCC Group and subsequently updated the security advisory.

ISC has released security updates for BIND

Vulnerability CVE-2017-3145 affects all versions of BIND since 9.9.0, released in 2000, and can lead to denial-of-service and crash.

No more Windows security updates for devices with incompatible antiviruses

Microsoft has added important note on the support page describing incompatibilities between antivirus (AV) products and the recent Windows Meltdown and Spectre patches.

Performance impact of Spectre and Meltdown patching on Windows Systems

Windows 7 and Windows 8 users running older processors will be most affected by performance issues.

VMware released patches for three critical vulnerabilities

Vulnerabilities affected vSphere Data Protection (VDP) and allowed authentication bypass, arbitrary file upload and path traversal.

Intel identified several security vulnerabilities in Management Engine, Server Platform Services and Trusted Execution Engine

In response to issues identified by external researchers, Intel performed a security review of Management Engine (ME), Server Platform Services (SPS) and Trusted Execution Engine (TXE) and identified several security vulnerabilities.