2013年9月17日火曜日

17日 火曜日、友引

+ Selenium IDE 2.4.0 released
https://code.google.com/p/selenium/wiki/SeIDEReleaseNotes

+ libpng 1.6.5 released
http://www.libpng.org/pub/png/src/libpng-1.6.5-README.txt

+ OpenSSH 6.3 released
http://www.openssh.com/txt/release-6.3

+ Sysstat 10.1.7 released (development version)
http://sebastien.godard.pagesperso-orange.fr/

+ Cisco Unified MeetingPlace Input Validation Hole Permits Cross-Site Scripting Attacks
http://www.securitytracker.com/id/1029038
VE-2013-5495

+ Cisco SocialMiner 'administration.jsp' Lets Remote Users Obtain Potentially Sensitive Information
http://www.securitytracker.com/id/1029033
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-5492

+ Cisco Virtualization Experience Client Input Validation Flaw in Diagnostic Module Lets Local Users Gain Elevated Privileges
http://www.securitytracker.com/id/1029032
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-5493

+ Cisco Prime LAN Management Solution Input Validation Flaw Permits Cross-Frame Scripting Attacks
http://www.securitytracker.com/id/1029031
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-5482

+ Juniper Junos Pulse Secure Access Service (SSL VPN) Input Validation Flaw Permits Cross-Site Scripting Attacks
http://www.securitytracker.com/id/1029029
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-5649

+ Apple OS X Multiple Bugs Let Remote Users Obtain Information, Execute Arbitrary Code, and Deny Service and Let Local Users View Passwords and Bypass Access Controls
http://www.securitytracker.com/id/1029028
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1025
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1026
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1027
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1028
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1029
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1030
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1031
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1032
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1033

+ REMOTE: Mitsubishi MC-WorkX 8.02 ActiveX Control (IcoLaunch) File Execution
http://www.exploit-db.com/exploits/28284
http://cxsecurity.com/issue/WLB-2013090115

+ Linux kernel 3.6.32/2.6.18 net/sctp ipv6 ipsec encryption bug
http://cxsecurity.com/issue/WLB-2013090108

+ ProFTPd mod_sftp/mod_sftp_pam invalid pool allocation during kbdint authentication
http://cxsecurity.com/issue/WLB-2013090109

+ OpenSSL,OpenSSH ecdsa authentication code inconsistent return values
http://cxsecurity.com/issue/WLB-2013090100

+ MS13-053 Win32k Memory Allocation Vulnerability
http://cxsecurity.com/issue/WLB-2013090099

ウイルス検索エンジン VSAPI 9.750 公開のお知らせ
http://www.trendmicro.co.jp/support/news.asp?id=2006

JVNVU#97033473 Apple OS X における複数の脆弱性に対するアップデート
http://jvn.jp/cert/JVNVU97033473/

JVN#77455005 ChamaCargo におけるクロスサイトスクリプティングの脆弱性
http://jvn.jp/jp/JVN77455005/

VU#800094 Dahua Security DVRs contain multiple vulnerabilities
http://www.kb.cert.org/vuls/id/800094

0 件のコメント:

コメントを投稿