2010年2月22日月曜日

22日 月曜日、先負

GCC 4.5 Status Report (2010-02-21)
http://gcc.gnu.org/ml/gcc/2010-02/msg00270.html
http://gcc.gnu.org/gcc-4.5/changes.html

JVNDB-2010-001068 Microsoft Internet Explorer における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001068.html

JVNDB-2010-001067 Microsoft Internet Explorer における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001067.html

JVNDB-2010-001066 Microsoft Internet Explorer の URL 検証における任意のローカルプログラムを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001066.html

JVNDB-2010-001065 Microsoft Internet Explorer における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001065.html

JVNDB-2010-001064 Microsoft Internet Explorer における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001064.html

JVNDB-2010-001063 Microsoft Internet Explorer における任意のコードを実行される脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001063.html

JVNDB-2009-002503 Microsoft Internet Explorer の XSS フィルタにおけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002503.html

JVNDB-2010-001062 ISC BIND における DNS キャッシュ汚染の脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001062.html

JVNDB-2010-001061 Microsoft Windows の kernel における権限昇格の脆弱性
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001061.html

Joomla! 'com_recipe' Component Multiple SQL Injection Vulnerabilities
http://www.securityfocus.com/bid/38336







+ SA38558: ActivePerl UTF-8 Denial of Service Vulnerability
http://secunia.com/advisories/38558/
http://www.securityfocus.com/bid/36812

+ Samba 'client/mount.cifs.c' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/38326

[ANNOUNCE] MyFaces Core v2.0.0-beta-2 Release
http://myfaces.apache.org/download.html

- A Security Vulnerability in Solaris Pidgin (see pidgin(1)) May Allow Remote Unprivileged Users to Access Arbitrary Files
http://sunsolve.sun.com/search/document.do?assetkey=1-66-277450-1

Samba 3.5.0rc3 Available for Download
http://news.samba.org/releases/3.5.0rc3/

Samba 3.5.0RC3がリリースされました
http://samba.org/samba/ftp/rc/WHATSNEW-3-5-0rc3.txt

OSC 2010 Tokyo/Springにて、Samba活用テクニック&Windows 7対応状況 というセミナーを行います。
http://www.ospn.jp/osc2010-spring/modules/eguide/event.php?eid=26

Dovecot 2.0.beta3 released
http://www.dovecot.org/list/dovecot-news/2010-February/000151.html

Dovecot blog
http://www.dovecot.org/list/dovecot-news/2010-February/000150.html

Kernel release: 2.6.32.9-rc1
http://www.linux.org/news/2010/02/19/0001.html

Devel-NYTProf-3.01_91 released
http://search.cpan.org/~timb/Devel-NYTProf-3.01_91/

Ariko-Security : SQL injection vulnerability in Amelia CMS
http://www.criticalwatch.com/support/security-advisories.aspx?AID=31825

Debian : New php5 packages fix multiple vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=31820

Asterisk : Dialplan injection vulnerability
http://www.criticalwatch.com/support/security-advisories.aspx?AID=31824

Debian : New xulrunner packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=31818

Debian : New ffmpeg packages fix several vulnerabilities
http://www.criticalwatch.com/support/security-advisories.aspx?AID=31819

[ MDVSA-2010:042 ] firefox
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00187.html

[SECURITY] [DSA-2002-1] New polipo packages fix denial of service
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00186.html

[SECURITY] [DSA-2001-1] New php5 packages fix multiple vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00184.html

SQL injection vulnerability in Amelia CMS
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00183.html

AST-2010-002: Dialplan injection vulnerability
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00182.html

[USN-890-5] XML-RPC for C and C++ vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00181.html

[SECURITY] [DSA 2000-1] New ffmpeg packages fix several vulnerabilities
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2010-02/msg00180.html

Looking for "more useful" malware information? Help develop the format.
http://isc.sans.org/diary.html?storyid=8275

TCP Port 12174 Request For Packets
http://isc.sans.org/diary.html?storyid=8281

Is "Green IT" Defeating Security?
http://isc.sans.org/diary.html?storyid=8269

Cyber Shockwave
http://isc.sans.org/diary.html?storyid=8272

phpAutoVideo Cross-Site Request Forgery
http://secunia.com/advisories/38646/

LiteSpeed Web Server Cross-Site Request Forgery
http://secunia.com/advisories/38645/

Asterisk Dialplan Wildcard Pattern Weakness
http://secunia.com/advisories/38641/

Kusaba X Cross-Site Request Forgery
http://secunia.com/advisories/38685/

Kusaba X "reportreason" Script Insertion Vulnerability
http://secunia.com/advisories/38674/

FileApp FTP Request Processing Denial of Service
http://secunia.com/advisories/38632/

OCS Inventory NG Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/38684/

OCS Inventory NG "login" SQL Injection Vulnerability
http://secunia.com/advisories/38665/

OCS Inventory NG Cross-Site Scripting Vulnerabilities
http://secunia.com/advisories/38615/

Ubuntu update for xmlrpc-c
http://secunia.com/advisories/38642/

Red Hat update for pidgin
http://secunia.com/advisories/38640/

Red Hat update for acroread
http://secunia.com/advisories/38639/

Huawei HG510 Security Bypass and Cross-Site Request Forgery Vulnerabilities
http://secunia.com/advisories/38591/

ActivePerl UTF-8 Denial of Service Vulnerability
http://secunia.com/advisories/38558/

Debian update for ffmpeg
http://secunia.com/advisories/38643/

Symantec IM Manager Script Insertion Vulnerability
http://secunia.com/advisories/38672/

Debian update for xulrunner
http://secunia.com/advisories/38644/

Fedora update for systemtap
http://secunia.com/advisories/38680/

SUSE update for kernel
http://secunia.com/advisories/38683/

Fedora update for krb5
http://secunia.com/advisories/38682/

Cisco Firewall Services Module SCCP Denial of Service Vulnerability
http://www.vupen.com/english/advisories/2010/0418

Cisco PIX 500 Authentication Bypass and Denial of Service Issues
http://www.vupen.com/english/advisories/2010/0417

Cisco Security Agent SQL Injection and Directory Traversal Vulnerabilities
http://www.vupen.com/english/advisories/2010/0416

MySQL 'sql/sql_table.cc' CREATE TABLE Security Bypass Vulnerability
http://www.securityfocus.com/bid/38043

Mozilla Firefox and SeaMonkey Theora Video Library Remote Integer Overflow Vulnerability
http://www.securityfocus.com/bid/37368

Mozilla Firefox/Thunderbird/SeaMonkey HTML Parser Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/38287

Mozilla Firefox CVE-2010-0159 Multiple Remote Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/38286

Mozilla Firefox and SeaMonkey SVG Document Cross Domain Scripting Vulnerability
http://www.securityfocus.com/bid/38288

Mozilla Firefox and SeaMonkey 'showModalDialog' method Cross Domain Scripting Vulnerability
http://www.securityfocus.com/bid/38289

Mozilla Firefox and SeaMonkey Web Workers Array Data Type Remote Memory Corruption Vulnerability
http://www.securityfocus.com/bid/38285

Polipo Multiple Remote Denial Of Service Vulnerabilities
http://www.securityfocus.com/bid/37463

SoftArtisans XFile FileManager ActiveX Control Multiple Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/30826

PHP 'htmlspecialcharacters()' Malformed Multibyte Character Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/37389

PHP 'session.save_path()' Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/37390

Symantec Client Proxy ActiveX Control Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/38222

LiteSpeed Web Server Cross Site Scripting and Request Forgery Vulnerabilities
http://www.securityfocus.com/bid/38317

Linux e1000e Driver 'Jumbo Frame' Handling Remote Security Bypass Vulnerability
http://www.securityfocus.com/bid/37523

Linux e1000 Driver 'Jumbo Frame' Handling Remote Security Bypass Vulnerability
http://www.securityfocus.com/bid/37519

Linux Kernel KVM Multiple Privilege Escalation and Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/38158

Linux Kernel KVM '/dev/port' Device Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/38086

Red Hat Linux Kernel Routing Implementation Multiple Remote Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/37875

Linux Kernel RTL8169 NIC 'RxMaxSize' Frame Size Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/37521

Linux Kernel IPv6 Hop-By-Hop Header Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/26943

OCS Inventory NG Multiple Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/38315

SAP J2EE Engine Core Unspecified Phishing Vulnerability
http://www.securityfocus.com/bid/38183

Adobe Acrobat and Reader CVE-2010-0188 Unspecified Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/38195

Mozilla Firefox Unspecified Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/38298

FFmpeg Version 0.5 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/36465

Battery Life Toolkit 'bltk_sudo' Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/37996

MIT Kerberos KDC 'handle_tgt_authdata()' Denial Of Service Vulnerability
http://www.securityfocus.com/bid/38260

Perl UTF-8 Regular Expression Processing Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/36812

SystemTap 'stat-server' Remote Arbitrary Command Injection Vulnerability
http://www.securityfocus.com/bid/37842

SystemTap '__get_argv()' and '__get_compat_argv()' Local Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/38120

Coppermine Photo Gallery Multiple Remote Command Execution Vulnerabilities
http://www.securityfocus.com/bid/27512

New-CMS Multiple Local File Include and HTML-Injection Vulnerabilities
http://www.securityfocus.com/bid/38307

Infragistics NetAdvantage for Web Client Directory Traversal Vulnerability
http://www.securityfocus.com/bid/38333

IBM WebSphere Service Registry and Repository Configuration Property Security Bypass
http://www.securityfocus.com/bid/38332

Demo Auktionshaus 'news.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/38331

Core Joomla Community Polls Component 'controller' Parameter Local File Include Vulnerability
http://www.securityfocus.com/bid/38330

Social Web CMS 'index.php' Cross Site Scripting Vulnerability
http://www.securityfocus.com/bid/38329

IBM WebSphere Commerce Encryption Key Remote Security Vulnerability
http://www.securityfocus.com/bid/38327

Samba 'client/mount.cifs.c' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/38326

PHPKIT 'include.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/38324

Fonality trixbox 'PhoneDirectory.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/38323

Amelia CMS 'index.php' SQL Injection Vulnerability
http://www.securityfocus.com/bid/38322

Easy FTP Server 'Path' Parameter Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/38321

0 件のコメント:

コメントを投稿