2014年5月15日木曜日

15日 木曜日、友引

+ HPSBMU03040 rev.1 - HP LoadRunner & HP Performance Center, running OpenSSL, Remote Disclosure of Information
https://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?spf_p.tpst=kbDocDisplay&spf_p.prp_kbDocDisplay=wsrp-navigationalState%3DdocId%253Demr_na-c04286049-1%257CdocLocale%253Dja_JP%257CcalledBy%253D&javax.portlet.begCacheTok=com.vignette.cachetoken&javax.portlet.endCacheTok=com.vignette.cachetoken
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0160

+ UPDATE: HPSBMU02995 rev.7 - HP Software HP Service Manager, Asset Manager, UCMDB Browser, UCMDB Configuration Manager, Executive Scorecard, Server Automation, Diagnostics, LoadRunner, and Performance Center, running OpenSSL, Remote Disclosure of Information
https://h20566.www2.hp.com/portal/site/hpsc/template.PAGE/public/kb/docDisplay/?spf_p.tpst=kbDocDisplay&spf_p.prp_kbDocDisplay=wsrp-navigationalState%3DdocId%253Demr_na-c04236102-7%257CdocLocale%253Dja_JP%257CcalledBy%253D&javax.portlet.begCacheTok=com.vignette.cachetoken&javax.portlet.endCacheTok=com.vignette.cachetoken

+ HS14-012 Multiple Vulnerabilities about SSL Client Authentication in Cosminexus HTTP Server
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/HS14-012/index.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0628
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0636

+ HS14-012 Cosminexus HTTP ServerのSSLクライアント認証における複数の脆弱性
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/HS14-012/index.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0628
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0636

+ Apache Ant 1.9.4 Released
http://ant.apache.org/bindownload.cgi

+ Google Chrome Multiple Bugs Let Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1030240
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1740
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1741
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1742

+ SA58439 FileZilla Server OpenSSL TLS/DTLS Heartbeat Two Information Disclosure Vulnerabilities
http://secunia.com/advisories/58439/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0160

+ SA58298 Linux Kernel "nfqnl_zcopy()" Information Disclosure Vulnerability
http://secunia.com/advisories/58298/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-2568

+ Microsoft Debug Interface Access SDK 'msdia.dll' Memory Corruption Vulnerability
http://www.securityfocus.com/bid/67398

+ Linux Kernel 'futex.c' Function Denial of Service Vulnerability
http://www.securityfocus.com/bid/67395
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6647

InterScan Web Security Virtual Appliance 5.6 Patch 3 (Build 1152) 公開のお知らせ
http://app.trendmicro.co.jp/support/news.asp?id=2125

JVN#90519014 サイボウズ ガルーンの電話メモ機能におけるサービス運用妨害 (DoS) の脆弱性
http://jvn.jp/jp/JVN90519014/

JVNVU#98181377 CENTUM を含む複数の YOKOGAWA 製品に複数のバッファオーバーフローの脆弱性
http://jvn.jp/vu/JVNVU98181377/

F5ネットワークス、社外へのWebアクセスを検査できるWebゲートウェイ製品
http://itpro.nikkeibp.co.jp/article/NEWS/20140515/556842/?ST=security

WindowsやIEの危険な脆弱性を修正するパッチ公開、XPは対象外
http://itpro.nikkeibp.co.jp/article/NEWS/20140514/556714/?ST=security

マカフィー、「Intel Security」ブランドを国内でも展開
http://itpro.nikkeibp.co.jp/article/NEWS/20140514/556623/?ST=security

REMOTE: Easy File Sharing Web Server 6.8 - Stack Buffer Overflow
http://www.exploit-db.com/exploits/33352

DoS/PoC: TFTPD32 4.5 / TFTPD64 4.5 - DoS PoC
http://www.exploit-db.com/exploits/33348

0 件のコメント:

コメントを投稿