2009年3月25日水曜日

水曜日、赤口

Java 2 Standard Edition Version 1.3.1_25 Released
http://java.sun.com/j2se/1.3/ReleaseNotes.html#131_25

+ Java 2 SDK, Standard Edition Version 1.4.2_19 Released
http://java.sun.com/j2se/1.4.2/ReleaseNotes.html#142_19

+ Java 2 Platform Standard Edition Development Kit 5.0 Update 18 Released
http://java.sun.com/j2se/1.5.0/ReleaseNotes.html#150_18

+ JavaTM SE 6 Released
http://java.sun.com/javase/6/webnotes/6u13.html

Devel-NYTProf-2.08_91 DEVELOPER RELEASE
http://search.cpan.org/~timb/Devel-NYTProf-2.08_91/

+ iptables 1.4.3.1 released
http://www.iptables.org/news.html#2009-03-24

+ RHSA-2009:0336-01: Moderate: glib2 security update
http://www.criticalwatch.com/support/security-advisories.aspx?AID=28739

RHSA-2009:0258-01: Moderate: thunderbird security update
http://www.criticalwatch.com/support/security-advisories.aspx?AID=28738

Idea cellular-SA-03/24/2009: Idea cellular (ideacellular.com) SQL Injection vulnerability in Corporate Account Login
http://www.criticalwatch.com/support/security-advisories.aspx?AID=28741

Adobe Reader and Acrobat JBIG2 Encoded Stream Heap Overflow Vulnerability
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=776

[ GLSA 200903-35 ] Muttprint: Insecure temporary file usage
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00217.html

[ GLSA 200903-36 ] MLDonkey: Information disclosure
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00218.html

[ GLSA 200903-37 ] Ghostscript: User-assisted execution of arbitrary code
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00219.html

PHPizabi v0.848b C1 HFP1 proc.inc.php remote privilege escalation (php.ini independent)
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00220.html

[security bulletin] HPSBMA02416 SSRT090008 rev.1 - HP OpenView Network Node Manager (OV NNM), Remote Execution of Arbitrary Code
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00221.html

ZDI-09-014: Adobe Acrobat getIcon() Stack Overflow Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00222.html

[security bulletin] HPSBUX02409 SSRT080171 rev.1 - HP-UX Running VERITAS File System (VRTSvxfs) or VERITAS Oracle Disk Manager (VRTSodm), Local Escalation of Privilege
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00223.html

iDefense Security Advisory 03.24.09: Adobe Reader and Acrobat JBIG2 Encoded Stream Heap Overflow Vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00224.html

[SECURITY] [DSA 1753-1] End-of-life announcement for Iceweasel in oldstable
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2009-03/msg00225.html

VU#340420 IBM Access Support ActiveX control stack buffer overflow
http://www.kb.cert.org/vuls/id/340420

Yamaha RT Series Routers MD5 Collision Security Issue
http://secunia.com/advisories/34446/

HP-UX VRTSvxfs and VRTSodm Local Privilege Escalation Vulnerability
http://www.vupen.com/english/advisories/2009/0823

Autonomy KeyView Word Perfect File Parsing Buffer Overflow Vulnerability
http://www.securiteam.com/windowsntfocus/5WP0M15QKO.html

Adobe Acrobat and Reader JBIG2 Image Processing Multiple Remote Code Execution Vulnerabilities
http://www.securityfocus.com/bid/34229

Adobe Acrobat and Reader PDF File Handling JBIG2 Image Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/33751

Acritum Femitter Server 'RETR' Command Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/28973

Tor Multiple Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/33713

IBM Access Support ActiveX Control 'GetXMLValue()' Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34228

PADL nss_ldap '/etc/nss_ldapd.conf' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/34211

Microsoft GDI+ EMF Image Processing Memory Corruption Vulnerability
http://www.securityfocus.com/bid/31019

Free Arcade Script SQL Injection and Arbitrary File Upload Vulnerabilities
http://www.securityfocus.com/bid/34212

Codice CMS 'index.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/34208

Pluck 'module_pages_site.php' Parameter Local File Include Vulnerability
http://www.securityfocus.com/bid/34207

Nucleus CMS Media Manager Unspecified Directory Traversal Vulnerability
http://www.securityfocus.com/bid/34040

Ghostscript Multiple Input Validation and Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34184

Horde IMP Webmail Client Cross Site Scripting And HTML Injection Vulnerabilities
http://www.securityfocus.com/bid/33492

Horde XSS Filter Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/33367

Horde IMP and Groupware Webmail Edition Multiple Input Validation Vulnerabilities
http://www.securityfocus.com/bid/27223

Horde Products Local File Include and Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/33491

Moodle Forum Unspecified Cross-Site Request Forgery Vulnerability
http://www.securityfocus.com/bid/33615

Moodle Calendar Export Unspecified Information Disclosure Vulnerability
http://www.securityfocus.com/bid/33612

Moodle 'Login As' Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/33617

Moodle Log Table HTML Injection Vulnerability
http://www.securityfocus.com/bid/33610

Linux Kernel 'inotify_read()' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/33624

Opera Web Browser prior to 9.64 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/33961

Apache 'mod_proxy_http' Interim Response Denial of Service Vulnerability
http://www.securityfocus.com/bid/29653

Little CMS Memory Leak and Multiple Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/34185

Netrw Vim Script Multiple Command Execution Vulnerabilities
http://www.securityfocus.com/bid/30115

Netrw Vim Script Information Disclosure Vulnerability
http://www.securityfocus.com/bid/30670

Vim Vim Script Multiple Command Execution Vulnerabilities
http://www.securityfocus.com/bid/29715

Adobe Acrobat and Reader Collab 'getIcon()' JavaScript Method Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/34169

Vim 'zip.vim' Plugin Arbitrary Command Execution Vulnerability
http://www.securityfocus.com/bid/32463

Vim 'tar.vim' Plugin Arbitrary Command Execution Vulnerability
http://www.securityfocus.com/bid/32462

HP-UX VERITAS File System and VERITAS Oracle Disk Manager Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/34226

RETIRED: Apple Mac OS X 2008-007 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/31681

Blogator-script 'init_pass2.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/28636

Rittal CMC-TC Processing Unit II Cross Site Scripting And HTML Injection Vulnerabilities
http://www.securityfocus.com/bid/34215

Rittal CMC-TC Processing Unit II Administrator Session ID Security Bypass Vulnerability
http://www.securityfocus.com/bid/34217

ClanSphere Multiple Information Disclosure Vulnerabilities
http://www.securityfocus.com/bid/31293

PHPizabi 'notepad_body' Parameter SQL Injection Vulnerability
http://www.securityfocus.com/bid/34223

PHPizabi 'modules/chat/dac.php' Local File Include Vulnerability
http://www.securityfocus.com/bid/34213

6rbScript 'section.php' Local File Include Vulnerability
http://www.securityfocus.com/bid/31299

MLdonkey HTTP Request Arbitrary File Download Vulnerability
http://www.securityfocus.com/bid/33865

PHP Classifieds Arbitrary File Upload and Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/34222
GNOME glib Base64 Encoding and Decoding Multiple Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/34100

POP Peeper 'From' Mail Header Remote Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/34192

PostgreSQL Conversion Encoding Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/34090

Mozilla Firefox/Thunderbird/SeaMonkey MFSA 2009 -07 -08 -09 and -11 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/33990

Mozilla Firefox/Thunderbird/SeaMonkey MFSA 2009 -01 to -06 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/33598

IETF RFC 3279 X.509 Certificate MD5 Signature Collision Vulnerability
http://www.securityfocus.com/bid/33065

ZyXEL G570S Crafted HTTP Requests Multiple Vulnerabilities
http://www.securityfocus.com/bid/34221

Siemens Gigaset SE461 WiMAX router Request Denial of Service Vulnerability
http://www.securityfocus.com/bid/34220

Sun Solaris Keysock Kernel Module Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/34118

Sun Solaris NFS Daemon (nfsd(1M)) Security Bypass Vulnerability
http://www.securityfocus.com/bid/34062

Sun Solaris Crypto Driver Local Denial Of Service Vulnerability
http://www.securityfocus.com/bid/34000

SurfMyTv Script 'view.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/34230

Jinzora 'name' Parameter Local File Include Vulnerability
http://www.securityfocus.com/bid/34224

RHSA-2009:0258-1 Moderate: thunderbird security update
http://rhn.redhat.com/errata/RHSA-2009-0258.html

ModSecurity Denial of Service
http://www.securiteam.com/unixfocus/5VP0L15QKS.html

Autonomy KeyView Word Perfect File Parsing Buffer Overflow Vulnerability
http://www.securiteam.com/windowsntfocus/5WP0M15QKO.html

RHSA-2009:0258 Moderate: thunderbird security update
http://rhn.redhat.com/errata/RHSA-2009-0258.html


Changes in MySQL 5.1.33 (Not yet released)
http://dev.mysql.com/doc/refman/5.1/en/news-5-1-33.html

Thinking about Row Level Security, part 1
http://it.toolbox.com/blogs/database-soup/thinking-about-row-level-security-part-1-30732?rss=1

Changes in MySQL 5.0.80 (Not yet released)
http://dev.mysql.com/doc/refman/5.0/en/releasenotes-es-5-0-80.html

Trend Micro Client/Server Security 2.0サポート終了に伴う後継製品へのアップグレードのお願い
http://www.trendmicro.co.jp/support/news.asp?id=1230

0 件のコメント:

コメントを投稿