2013年7月12日金曜日

12日 金曜日、仏滅

+ CESA-2013:1034 Low CentOS 5 kernel Update
http://lwn.net/Alerts/558569/

+ Squid 3.3.7, 3.2.12 released
http://www.squid-cache.org/Versions/v3/3.3/RELEASENOTES.html
http://www.squid-cache.org/Versions/v3/3.2/RELEASENOTES.html

+ HPSBMU02870 SSRT101012 rev.1 - HP Network Node Manager I (NNMi) for HP-UX, Linux, Solaris, and Windows, Remote Unauthorized Access
https://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?spf_p.tpst=kbDocDisplay&spf_p.prp_kbDocDisplay=wsrp-navigationalState%3DdocId%253Demr_na-c03747342-1%257CdocLocale%253Dja_JP%257CcalledBy%253D&javax.portlet.begCacheTok=com.vignette.cachetoken&javax.portlet.endCacheTok=com.vignette.cachetoken
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2351

+ HPSBST02896 rev.1 - HP StoreVirtual Storage, Remote Unauthorized Access
https://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?spf_p.tpst=kbDocDisplay&spf_p.prp_kbDocDisplay=wsrp-navigationalState%3DdocId%253Demr_na-c03825537-1%257CdocLocale%253Dja_JP%257CcalledBy%253D&javax.portlet.begCacheTok=com.vignette.cachetoken&javax.portlet.endCacheTok=com.vignette.cachetoken
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2352

+ Oracle Critical Patch Update Pre-Release Announcement - July 2013
http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html

+ UPDATE: Advisory: MacBook Air (June 2013 release only) freezes following installation of Sophos Disk Encryption for Mac, version 6.x
http://www.sophos.com/en-us/support/knowledgebase/119581.aspx

+ PHP 5.3.27 Released - PHP 5.3 Reaching End of Life
http://php.net/archive/2013.php#id2013-07-11-1
http://www.php.net/ChangeLog-5.php#5.3.27

+ php 5.3.26 heap corruption in the XML parser
http://cxsecurity.com/issue/WLB-2013070090

+ nginx 1.3.9 / 1.4.0 x86 Brute Force Proof Of Concept
http://cxsecurity.com/issue/WLB-2013070087

+ SQUID 3.3.6 buffer overflow in HTTP request handling
http://cxsecurity.com/issue/WLB-2013070089

+ Internet Explorer 9 Status Bar Obfuscation Clickjacking
http://cxsecurity.com/issue/WLB-2013070088

+ Adobe Reader 11.0.03 Insecure Third Party Components
http://cxsecurity.com/issue/WLB-2013070086

+ REMOTE: nginx 1.3.9/1.4.0 x86 Brute Force Remote Exploit
http://www.exploit-db.com/exploits/26737

JVNDB-2013-000068 AQUOSフォトプレーヤー HN-PP150 におけるサービス運用妨害 (DoS) の脆弱性
http://jvndb.jvn.jp/ja/contents/2013/JVNDB-2013-000068.html

チェックしておきたい脆弱性情報<2013.07.12>
http://itpro.nikkeibp.co.jp/article/COLUMN/20130709/490382/?ST=security

ネット選挙、ここが危ない!ITpro
第4回 「選挙運動」と「政治活動」は違う?自身の“行動”の確認を
http://itpro.nikkeibp.co.jp/article/COLUMN/20130709/490188/?ST=security

複数のOSに対応したマルウエアが出回る、Javaアプレットで動くトロイの木馬
http://itpro.nikkeibp.co.jp/article/NEWS/20130711/490686/?ST=security

Android端末の99%に影響する脆弱性、意図せず使うアプリが多数発見される
http://itpro.nikkeibp.co.jp/article/NEWS/20130711/490685/?ST=security

チェックしておきたい脆弱性情報<2013.07.11>
http://itpro.nikkeibp.co.jp/article/COLUMN/20130709/490022/?ST=security

UPDATE: JVNTA13-190A Microsoft 製品の複数の脆弱性に対するアップデート
http://jvn.jp/cert/JVNTA13-190A/index.html

SA54076 Squid "idnsALookup()" DNS Name Handling Buffer Overflow Vulnerability
http://secunia.com/advisories/54076/

+ REMOTE: Ultra Mini HTTPD 1.21 - Stack Buffer Overflow
http://www.exploit-db.com/exploits/26739

0 件のコメント:

コメントを投稿