2015年2月5日木曜日

5日 木曜日、仏滅

+ UPDATE: GNU glibc gethostbyname Function Buffer Overflow Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150128-ghost

+ Cisco WebEx Meetings Server Command Injection Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150204-wbx

+ HPSBGN03247 rev.1 - HP IceWall SSO Dfw using glibc, Remote Execution of Abitrary Code
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04560440&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0235

+ HPSBGN03237 rev.1 - HP Insight Remote Support v7 Clients running SSLv3, Remote Disclosure of Information
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04553458&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3566

+ HPSBGN03250 rev.1 - HP Cloudsystem Foundation and HP CloudSystem Enterprise Software running Bash Shell and OpenSSL, Multiple Vulnerabilities
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04561445&docLocale=ja_JP

+ HPSBMU03239 rev.1 - HP UCMDB, Remote Disclosure of Information
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04553906&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7883

+ HPSBMU03246 rev.1 - HP Insight Control for Linux Central Management Server Pre-boot Execution Environment running Bash Shell, Multiple Vulnerabilities
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04558068&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6271
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6277
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6278
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7169
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7186
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7187
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7196

+ NTP 4.2.8p1 released
http://archive.ntp.org/ntp4/ChangeLog-stable

+ LOCAL: AVG Internet Security 2015 Arbitrary Write Privilege Escalation
http://www.exploit-db.com/exploits/35993

+ Microsoft Internet Explorer Same Origin Policy Bypass Vulnerability
http://secunia.com/advisories/62658/

+ Kerberos Multiple Vulnerabilities
http://secunia.com/advisories/62770/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-5352
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9421
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9422
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9423

+ Microsoft Internet Explorer Same Origin Policy Security Bypass Vulnerability
http://www.securityfocus.com/bid/72489

インサイダー情報を盗み出す脅威グループ「FIN4」に注意
http://itpro.nikkeibp.co.jp/atcl/news/15/020400416/?ST=security

ベネッセが全身検査装置を導入、情報漏洩対策で
http://itpro.nikkeibp.co.jp/atcl/news/15/020400421/?ST=security

Flash Playerに危険な脆弱性が相次ぐ、動画サイト経由の「ゼロデイ攻撃」も
http://itpro.nikkeibp.co.jp/atcl/news/15/020400420/?ST=security

LOCAL: BullGuard Multiple Products Arbitrary Write Privilege Escalation
http://www.exploit-db.com/exploits/35994

LOCAL: K7 Computing Multiple Products Arbitrary Write Privilege Escalation
http://www.exploit-db.com/exploits/35992

0 件のコメント:

コメントを投稿