2012年10月2日火曜日

2日 火曜日、赤口


+ HPSBST02818 SSRT100960 rev.1 - HP IBRIX X9000 Storage, Remote Disclosure of Information
https://h20565.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?javax.portlet.tpst=ba847bafb2a2d782fcbb0710b053ce01&javax.portlet.prp_ba847bafb2a2d782fcbb0710b053ce01=wsrp-navigationalState%3DdocId%25253Demr_na-c03510876%25257CdocLocale%25253Dja_JP&javax.portlet.begCacheTok=com.vignette.cachetoken&javax.portlet.endCacheTok=com.vignette.cachetoken
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3266

+ HPSBUX02814 SSRT100930 rev.1 - HP-UX Running OpenSSL, Remote Denial of Service (DoS)
https://h20565.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?javax.portlet.tpst=ba847bafb2a2d782fcbb0710b053ce01&javax.portlet.prp_ba847bafb2a2d782fcbb0710b053ce01=wsrp-navigationalState%3DdocId%25253Demr_na-c03498127%25257CdocLocale%25253Dja_JP&javax.portlet.begCacheTok=com.vignette.cachetoken&javax.portlet.endCacheTok=com.vignette.cachetoken
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2333

Using ProcessLogs.vbs to generate a report of applications affected across multiple endpoints
http://www.sophos.com/en-us/support/knowledgebase/118346.aspx

SNSのサービス連携に注意、アカウントを乗っ取られる恐れあり
IPAが警告、悪質な投稿を勝手に書き込まれる
http://itpro.nikkeibp.co.jp/article/NEWS/20121002/426781/?ST=security

ウイルス感染の簡易手動チェックのすすめ
http://itpro.nikkeibp.co.jp/article/COLUMN/20120930/426341/?ST=security

SNSで身に覚えのない投稿をされる被害、IPAが自衛呼びかけ
http://itpro.nikkeibp.co.jp/article/NEWS/20121001/426721/?ST=security

Cyber Security Awareness Month
http://isc.sans.edu/diary.html?storyid=14200

SUSE update for java-1_6_0-ibm
http://secunia.com/advisories/50828/

IBM Rational Team Concert Cross-Site Request Forgery
http://secunia.com/advisories/50789/

Tivoli Federated Identity Manager XML Signature Validation Bypass
http://secunia.com/advisories/50758/

Rational Business Developer Multiple Vulnerabilities
http://secunia.com/advisories/50755/

Oracle Solaris IMPItool Insecure PID Files Security Issue
http://secunia.com/advisories/50830/

Avaya Communication Server 1000 Apache Tomcat Security Bypass and Denial of Service
http://secunia.com/advisories/50827/

cgit "Author" Field Parsing Denial of Service Vulnerability
http://secunia.com/advisories/50734/

Emerson DeltaV Denial of Service Vulnerability
http://secunia.com/advisories/50823/

IBM WebSphere Commerce User Information Disclosure Vulnerability
http://secunia.com/advisories/50821/

Symantec Enterprise Vault Outside In Technology Outside In Filters Vulnerabilities
http://secunia.com/advisories/50824/

IBM AIX "fuser" Command Denial of Service
http://secunia.com/advisories/50708/

milkshakedesign Cms Cross-Site Scripting Vulnerability
http://cxsecurity.com/issue/WLB-2012100014

jwwebdevelopment Cms Sql Injection Vulnerability
http://cxsecurity.com/issue/WLB-2012100013

Whereincity Cms Cross-Site Scripting Vulnerability
http://cxsecurity.com/issue/WLB-2012100012

wordpressthemesbook Cms Cross-Site Scripting Vulnerability
http://cxsecurity.com/issue/WLB-2012100011

DoS/PoS: Foxit Reader 5.4.3.0920 Crash PoC
http://www.exploit-db.com/exploits/21645/

Open Handset Alliance Android Dailer Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/55708

FreeType TrueType Font 'SHC' Heap Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/29639

VMware Hosted Products 'vmware-vmx' Virtual Network Stack Information Disclosure Vulnerability
http://www.securityfocus.com/bid/39395

VMware Remote Console 'connect' Method Remote Format String Vulnerability
http://www.securityfocus.com/bid/39396

VMware View URL Processing Cross-site Scripting Vulnerability
http://www.securityfocus.com/bid/39949

VMware Hosted Products USB Service Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/39397

VMware 'vmrun' Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/39407

VMware Hosted Products VMware Tools Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/39394

VMware Hosted Products UDF File Systems Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/49942

VMware Hosted Products VMware Tools Library Reference Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/39392

VMware Player and Workstation 'vmware-authd' Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/36630

VMware Products Directory Traversal Vulnerability
http://www.securityfocus.com/bid/36842

VMware WebAccess Virtual Machine Name Cross-site Scripting Vulnerability
http://www.securityfocus.com/bid/39104

VMware Products Page Fault Exception Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/36841

Mozilla Firefox/Thunderbird/SeaMonkey MFSA 2009 -07 -08 -09 and -11 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/33990

Libpng Library Uninitialized Pointer Arrays Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/33827

VMware Multiple Hosted Products Display Function Code Execution Vulnerability
http://www.securityfocus.com/bid/34471

VMware Hosted Products VMSA-2009-0005 Multiple Remote Vulnerabilities
http://www.securityfocus.com/bid/34373

VMware Products Unspecified Host Memory Corruption Vulnerability
http://www.securityfocus.com/bid/32597

VMware Consolidated Backup (VCB) User Password Information Disclosure Vulnerability
http://www.securityfocus.com/bid/30937

VMware Products Trap Flag In-Guest Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/32168

Multiple Vendor DNS Protocol Insufficient Transaction ID Randomization DNS Spoofing Vulnerability
http://www.securityfocus.com/bid/30131

FreeType2 Printer Font Binary Remote Code Exeuction Vulnerability
http://www.securityfocus.com/bid/29641

FreeType2 Printer Font Binary Private Dictionary Table Integer Overflow Vulnerability
http://www.securityfocus.com/bid/29640

VMware Products Multiple Vulnerabilities
http://www.securityfocus.com/bid/28289

FreeType Printer Font Binary Heap Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/29637

VMware VIX API Multiple Unspecified Buffer Overflow Vulnerabilities
http://www.securityfocus.com/bid/29552

VMware vmware-authd Daemon Local Privilege Escalation Vulnerability
http://www.securityfocus.com/bid/29557

VMware Host Guest File System Heap Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/29444

VMware Server 1.0.5 and Workstation 6.0.3 Multiple Vulnerabilities
http://www.securityfocus.com/bid/28276

Cairo PNG Image Processing Remote Integer Overflow Vulnerability
http://www.securityfocus.com/bid/26650

Libpng Library Multiple Remote Denial of Service Vulnerabilities
http://www.securityfocus.com/bid/25956

Apache HTTP Server 'LD_LIBRARY_PATH' Insecure Library Loading Arbitrary Code Execution Vulnerability
http://www.securityfocus.com/bid/53046

Google Chrome Prior to 21.0.1180.89 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/55331

Google Chrome Prior to 20.0.1132.43 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/54203

Google Chrome Prior to 17.0.963.46 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/51911

libxslt 'generate-id()' Function Information Disclosure Vulnerability
http://www.securityfocus.com/bid/47668

libxml2 CVE-2012-2807 Multiple Integer Overflow Vulnerabilities
http://www.securityfocus.com/bid/54718

libxml2 Unspecified Out-of-Bounds Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/51084

Google Chrome Prior to 16.0.912.75 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/51300

Google Chrome Prior to 14.0.835.163 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/49658

Google Chrome Prior to 19 Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/53540

libxml2 Hash Collision Denial Of Service Vulnerability
http://www.securityfocus.com/bid/52107

libxml2 Invalid XPath Multiple Memory Corruption Vulnerabilities
http://www.securityfocus.com/bid/48056

Apple Safari 'libxml' (CVE-2011-0216) Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/48832

Moodle Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/55565

ISC BIND 9 DNS Resource Records Handling CVE-2012-4244 Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/55522

ICCLIB CVE-2012-4405 Out-of-Bounds Memory Write Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/55494

Oracle Java SE CVE-2012-1717 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/53952

OptiPNG Use-After-Free Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/55566

Oracle Java SE CVE-2012-1718 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/53951

Oracle Java SE CVE-2012-1719 Remote Java Runtime Environment Vulnerability
http://www.securityfocus.com/bid/53950

Oracle Java SE CVE-2012-1713 Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/53946

IBM Eclipse Help System Multiple Security Vulnerabilities
http://www.securityfocus.com/bid/53884

Apache Tomcat 'sendfile' Request Attributes Information Disclosure Vulnerability
http://www.securityfocus.com/bid/48667

Ubuntu Software Properties PPA GPG Keys Validation Security Bypass Vulnerability
http://www.securityfocus.com/bid/55736

IBM Tivoli Federated Identity Manager XML Signature Validation Security Bypass Vulnerability
http://www.securityfocus.com/bid/55732

IBM Rational Team Concert Cross Site Request Forgery Vulnerability
http://www.securityfocus.com/bid/55730

cgit 'Author' Field Remote Denial of Service Vulnerability
http://www.securityfocus.com/bid/55724

0 件のコメント:

コメントを投稿