2014年9月17日水曜日

17日 水曜日、先勝

+ RHSA-2014:1243 Low: automake security update
https://rhn.redhat.com/errata/RHSA-2014-1243.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3386

+ RHSA-2014:1245 Moderate: krb5 security and bug fix update
https://rhn.redhat.com/errata/RHSA-2014-1245.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1418
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6800
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4341
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4344

+ RHSA-2014:1244 Moderate: bind97 security and bug fix update
https://rhn.redhat.com/errata/RHSA-2014-1244.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0591

+ RHSA-2014:1246 Moderate: nss and nspr security, bug fix, and enhancement update
https://rhn.redhat.com/errata/RHSA-2014-1246.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1740
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1490
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1491
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1492
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1545

+ nginx 1.7.5, 1.6.2 released
http://nginx.org/en/CHANGES
http://nginx.org/en/CHANGES-1.6

+ nginx: SSL session reuse vulnerability
http://nginx.org/en/security_advisories.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3616

+ APSB14-20 Security Updates available for Adobe Reader and Acrobat
http://helpx.adobe.com/security/products/reader/apsb14-20.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0560
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0561
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0562
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0563
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0565
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0566
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0567
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0568

+ CESA-2014:1193 Important CentOS 6 axis Security Update
http://lwn.net/Alerts/612077/

+ CESA-2014:1193 Important CentOS 5 axis Security Update
http://lwn.net/Alerts/612078/

+ Wireshark 1.12.1, 1.10.10 released
https://www.wireshark.org/docs/relnotes/wireshark-1.12.1.html
https://www.wireshark.org/docs/relnotes/wireshark-1.10.10.html

+ FreeBSD-SA-14:19.tcp Denial of Service in TCP packet processing
https://www.freebsd.org/security/advisories/FreeBSD-SA-14:19.tcp.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0230

+ Adobe Acrobat/Reader Multiple Flaws Let Remote Users Execute Arbitrary Code, Deny Service, and Conduct Cross-Site Scripting Attacks
http://www.securitytracker.com/id/1030853
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0560
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0561
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0562
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0563
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0565
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0566
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0567
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0568

+ Juniper Junos Pulse Secure Access Service (SSL VPN) Input Validation Flaw Permits Cross-Site Scripting Attacks
http://www.securitytracker.com/id/1030852
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3820

+ SA61138 Linux Kernel "assoc_array_gc()" NULL Pointer Dereference Vulnerability
http://secunia.com/advisories/61138/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3631

+ MantisBT Null Byte Poisoning LDAP Authentication Bypass Vulnerability
http://www.securityfocus.com/bid/69780
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6387

【「ソーシャル新人類」の不夜城?10代は何を考えているのか】
理由は「過去を消すため」、SNSに入退会を繰り返す10代の事情
http://itpro.nikkeibp.co.jp/atcl/column/14/537662/091000008/?ST=security

【被害最小化の切り札「CSIRT」】
個人では限界、公認チームが不可欠
http://itpro.nikkeibp.co.jp/atcl/column/14/090500060/090500002/?ST=security

0 件のコメント:

コメントを投稿