2014年2月17日月曜日

17日 月曜日、赤口

+ Android-x86 4.4-RC1 (KitKat-x86) released
http://www.android-x86.org/releases/releasenote-4-4-rc1

+ MantisTouch 1.3.1 released
http://www.mantisbt.org/blog/?p=282

+ CESA-2014:0175 Important CentOS 6 piranha Update
http://lwn.net/Alerts/586270/

+ CESA-2014:0174 Important CentOS 5 piranha Update
http://lwn.net/Alerts/586272/

+ CESA-2014:0163 Important CentOS 5 kvm Update
http://lwn.net/Alerts/586268/

+ CESA-2014:0164 Moderate CentOS 6 mysql Update
http://lwn.net/Alerts/586269/

+ PMASA-2014-1 Self-XSS due to unescaped HTML output in import
http://www.phpmyadmin.net/home_page/security/PMASA-2014-1.php
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1879

+ Linux kernel 3.2.55 released
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.55

+ VU#732479 Internet Explorer CMarkup use-after-free vulnerability
http://www.kb.cert.org/vuls/id/732479
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0322

+ PHP Heap Overflow in imagecrop() Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1029767
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-7226

+ Microsoft Internet Explorer Use-After-Free Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1029765
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0322

+ REMOTE: HP Data Protector EXEC_BAR Remote Command Execution
http://www.exploit-db.com/exploits/31689

+ ImageMagick 6.8.8-4 - Local Buffer Overflow (SEH)
http://www.exploit-db.com/exploits/31688

+ SA56829 PHP "imagecrop()" Buffer Overflow Vulnerabilities
http://secunia.com/advisories/56829/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-7226

+ Linux kernel 3.2.23 net/ipv4 kernel resource consumption
http://cxsecurity.com/issue/WLB-2014020130
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6638

+ Linux kernel 3.x QuIC bypass intended access restrictions
http://cxsecurity.com/issue/WLB-2014020129
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4737

+ Microsoft Internet Explorer 10 remote code execution exploit
http://cxsecurity.com/issue/WLB-2014020123
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0322

+ Firefox 27/Chrome 28 document.cookie DoS vulnerability
http://cxsecurity.com/issue/WLB-2013040027
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6166
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6167

+ Microsoft Internet Explorer CVE-2014-0322 Use-After-Free Remote Code Execution Vulnerability
http://www.securityfocus.com/bid/65551
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0322

InterScan for Lotus Dominoにおけるパターンアップデートの問題について
http://app.trendmicro.co.jp/support/news.asp?id=2076

定期サーバメンテナンスのお知らせ(2014/2/21)
http://app.trendmicro.co.jp/support/news.asp?id=2073

資金調達サイトのKickstarterに不正アクセス、一部ユーザー情報が流出
http://itpro.nikkeibp.co.jp/article/NEWS/20140217/537003/?ST=security

止まらないTwitterスパム!今度は「この画像分かる?」で1万5000人が被害
三上洋の「ネットで起きるサイバー事件の手口と対策」
http://itpro.nikkeibp.co.jp/article/COLUMN/20140213/536387/?ST=security

REMOTE: Linksys E-series Unauthenticated Remote Code Execution Exploit
http://www.exploit-db.com/exploits/31683

REMOTE: Dexter (CasinoLoader) SQL Injection
http://www.exploit-db.com/exploits/31695

0 件のコメント:

コメントを投稿