2014年6月25日水曜日

25日 水曜日、友引










+ FreeBSD-SA-14:16.file Multiple vulnerabilities in file(1) and libmagic(3)
http://www.freebsd.org/security/advisories/FreeBSD-SA-14:16.file.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1571
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-7345
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1943
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-2270

+ FreeBSD-SA-14:15.iconv iconv(3) NULL pointer dereference and out-of-bounds array access
http://www.freebsd.org/security/advisories/FreeBSD-SA-14:15.iconv.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3951

+ FreeBSD Memory Errors in iconv(3) Let Remote Users Deny Service
http://www.securitytracker.com/id/1030458
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3951

+ SA59421 Symantec Encryption Desktop Professional Insecure Temporary Files Security Issue
http://secunia.com/advisories/59421/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3431

+ SA59162 McAfee Multiple Products OpenSSL Multiple Vulnerabilities
http://secunia.com/advisories/59162/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0076
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0195
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0198
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0221
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0224
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3470

+ SA59066 JustSystems JUST Online Update Signature Verification Vulnerability
http://secunia.com/advisories/59066/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-2003

+ Linux Kernel '/fs/aio.c' Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/68176
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0206

+ Linux Kernel 'control.c' Local Memory Corruption Vulnerabilit
http://www.securityfocus.com/bid/68165

Advisory: Issue with Sophos Disk Encryption when managed from Sophos Enterprise Console ? potentially missing authentication step when resuming a laptop from sleep mode
http://www.sophos.com/en-us/support/knowledgebase/121066.aspx

JVNDB-2014-000061 Sophos Disk Encryption における認証不備の脆弱性
http://jvndb.jvn.jp/ja/contents/2014/JVNDB-2014-000061.html

JVNDB-2014-000062 WordPress 用プラグイン Login rebuilder におけるクロスサイトリクエストフォージェリの脆弱性
http://jvndb.jvn.jp/ja/contents/2014/JVNDB-2014-000062.html

【企業内のネット接続機器、不適切な情報公開とその対策】
第3回 SHODANを自組織の検査で活用する手順
http://itpro.nikkeibp.co.jp/article/COLUMN/20140610/562888/?ST=security

REMOTE: D-Link authentication.cgi Buffer Overflow
http://www.exploit-db.com/exploits/33862

REMOTE: D-Link hedwig.cgi Buffer Overflow in Cookie Header
http://www.exploit-db.com/exploits/33863

REMOTE: AlienVault OSSIM av-centerd Command Injection
http://www.exploit-db.com/exploits/33865

OpenSSL: Team status changes including six new development team members
http://www.openssl.org/about/

0 件のコメント:

コメントを投稿