2015年4月2日木曜日

2日 木曜日、先負

+ RHSA-2015:0771 Important: thunderbird security update
https://rhn.redhat.com/errata/RHSA-2015-0771.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0801
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0807
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0813
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0815
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0816

+ Google Chrome 41.0.2272.118 released
http://googlechromereleases.blogspot.jp/2015/04/stable-channel-update.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1233
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1234

+ CESA-2015:0672 Moderate CentOS 7 bind Security Update
http://lwn.net/Alerts/638681/

+ CESA-2015:0766 Critical CentOS 5 firefox Security Update
http://lwn.net/Alerts/638683/

+ CESA-2015:0718 Critical CentOS 7 firefox Security Update
http://lwn.net/Alerts/638684/

+ CESA-2015:0766 Critical CentOS 7 xulrunner Security Update
http://lwn.net/Alerts/638685/

+ CESA-2015:0766 Critical CentOS 7 firefox Security Update
http://lwn.net/Alerts/638686/

+ CESA-2015:0767 Important CentOS 7 flac Security Update
http://lwn.net/Alerts/638688/

+ CESA-2015:0696 Important CentOS 7 freetype Security Update
http://lwn.net/Alerts/638689/

+ CESA-2015:0728 Moderte CentOS 7 ipa Security Update
http://lwn.net/Alerts/638690/

+ CESA-2015:0728 Moderate CentOS 7 slapi-nis Security Update
http://lwn.net/Alerts/638691/

+ CESA-2015:0726 Important CentOS 7 kernel Security Update
http://lwn.net/Alerts/638692/

+ CESA-2015:0749 Moderate CentOS 7 libxml2 Security Update
http://lwn.net/Alerts/638693/

+ CESA-2015:0716 Moderte CentOS 7 openssl Security Update
http://lwn.net/Alerts/638694/

+ CESA-2015:0750 Moderate CentOS 7 postgresql Security Update
http://lwn.net/Alerts/638695/

+ CESA-2015:0729 Important CentOS 7 setroubleshoot Security Update
http://lwn.net/Alerts/638696/

+ CESA-2015:0642 Important CentOS 7 thunderbird Security Update
http://lwn.net/Alerts/638697/

+ CESA-2015:0771 Important CentOS 7 thunderbird Security Update
http://lwn.net/Alerts/638698/

+ CESA-2015:0700 Moderate CentOS 7 unzip Security Update
http://lwn.net/Alerts/638699/

+ CESA-2015:0766 Critical CentOS 6 firefox Security Update
http://lwn.net/Alerts/638682/

+ CESA-2015:0767 Important CentOS 6 flac Security Update
http://lwn.net/Alerts/638687/

+ CESA-2015:0750 Moderate CentOS 6 postgresql Security Update
http://lwn.net/Alerts/638493/

+ phpMyAdmin 4.4.0 released
http://sourceforge.net/projects/phpmyadmin/files/phpMyAdmin/4.4.0/phpMyAdmin-4.4.0-notes.html/view

+ UPDATE: Multiple Vulnerabilities in OpenSSL (March 2015) Affecting Cisco Products
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150320-openssl

+ UPDATE: GNU Bash Environment Variable Command Injection Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash

+ Cisco Prime Data Center Network Manager File Information Disclosure Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150401-dcnm
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0666

+ Multiple Vulnerabilities in Cisco Unity Connection
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150401-cuc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0612
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0613
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0614
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0615
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0616

+ UPDATE: Multiple Vulnerabilities in Cisco IOS XE Software for Cisco ASR 1000 Series, Cisco ISR 4400 Series, and Cisco Cloud Services 1000v Series Routers
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150325-iosxe

+ HPSBGN03307 rev.1 - HP Intelligent Provisioning, Disclosure of Information
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04626732&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2111

+ HPSBHF03271 rev.1 - HP PCs and Workstations Running Windows 7 with NVidia Graphics Driver, Elevation of Privileges
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04577892&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1170

+ HPSBMU03304 rev.1 - HP Insight Control server deployment on Linux and Windows, Remote Disclosure of Information
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04624296&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3508
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3509
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3511
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3513
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3566
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3567
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3568
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-5139

+ Mozilla Thunderbird Flaws Let Remote Users Execute Arbitrary Code and Conduct Cross-Site Request Forgery Attacks
http://www.securitytracker.com/id/1032000
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0801
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0807
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0813
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0814
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0815
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0816

+ Java.com Cross Site Scripting
http://cxsecurity.com/issue/WLB-2015040001

+ SA63783 McAfee Data Loss Prevention Endpoint Multiple Vulnerabilities
http://secunia.com/advisories/63783/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2757
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2758
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2759
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2760

JVNVU#98589419 マルチキャスト DNS (mDNS) 実装が外部からのユニキャストクエリに応答する問題
http://jvn.jp/vu/JVNVU98589419/

青天井のセキュリティ対策、どこまでするか
PART4 拡大するセキュリティ対策と費用
http://itpro.nikkeibp.co.jp/atcl/column/15/032600052/032600004/?ST=security

BadUSBの次は「BadHDD」、検出も駆除もできない「ウイルスの隠れ家」が明らかに
http://itpro.nikkeibp.co.jp/atcl/column/14/346926/033100211/?ST=security

原子力規制庁が核燃料関連資料のネット流出で説明、「公知の内容で問題はない」
http://itpro.nikkeibp.co.jp/atcl/news/15/040101151/?ST=security

0 件のコメント:

コメントを投稿