2015年4月23日木曜日

23日 木曜日、先勝











+ Zabbix 2.4.5 released
http://www.zabbix.com/rn2.4.5.php

+ CESA-2015:0864 Important CentOS 6 kernel Security Update
http://lwn.net/Alerts/641374/

+ CESA-2015:0869 Important CentOS 5 kvm Security Update
http://lwn.net/Alerts/641375/

+ CESA-2015:0867 Important CentOS 6 qemu-kvm Security Update
http://lwn.net/Alerts/641376/

+ HPSBGN03305 rev.1 - HP Business Service Management (BSM) products running SSLv3, Remote Disclosure of Information
https://h20565.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04626982&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3566

+ Linux kernel 3.18.12 released
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.18.12

+ Citrix XenServer Multiple Security Updates
http://support.citrix.com/article/CTX200892
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8106
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7815
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3615

+ GCC 5.1 release
https://gcc.gnu.org/gcc-5/

+ SA64250 Linux Kernel AESNI Buffer Overflow Denial of Service Vulnerability
http://secunia.com/advisories/64250/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3331

+ SA64247 Linux Kernel TCP Fast Open Denial of Service Vulnerability
http://secunia.com/advisories/64247/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3332

+ SA64003 Net-SNMP "snmp_pdu_parse()" Vulnerability
http://secunia.com/advisories/64003/

+ SA64242 Linux Kernel Netfilter Connection Tracking Extension Loading Integer Overflow Denial of Service Vulnerability
http://secunia.com/advisories/64242/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9715

+ SA64234 Linux Kernel int80 32-Bit Emulation Security Bypass Vulnerability
http://secunia.com/advisories/64234/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2830

+ SA64284 cURL / libcURL Two Security Bypass Security Issues and Two Memory Corruption Vulnerabilities
http://secunia.com/advisories/64284/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3143
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3144
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3145
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3148

+ curl and libcurl 7.42.0 released
http://curl.haxx.se/changes.html#7_42_0

+ Apple iOS 8.0 - 8.0.2 Controls Re Auth Bypass Vulnerability
http://cxsecurity.com/issue/WLB-2015040145

+ Mac OS X 10.10.2 Local Denial of Service
http://cxsecurity.com/issue/WLB-2015040142
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1100

+ OpenBSD <= 5.6 - Multiple Local Kernel Panics
http://cxsecurity.com/issue/WLB-2015040141

+ ProFTPd 1.3.5 Remote Command Execution
http://cxsecurity.com/issue/WLB-2015040130

+ ProFTPd CPFR / CPTO Proof Of Concept
http://cxsecurity.com/issue/WLB-2015040129

記者の眼
身代金ウイルスがあなたを狙う、今年はワードからの感染に注意せよ
http://itpro.nikkeibp.co.jp/atcl/watcher/14/334361/042100255/?ST=security

要件定義・基本設計で役立つ、安全なWebアプリ&インフラ構築術
第7回 アプリ開発者やSE、PMも必見!インフラのセキュリティ対策
http://itpro.nikkeibp.co.jp/atcl/column/15/021900028/042100009/?ST=security

小規模企業はセキュリティ投資を減らしている、IDC Japanの調査
http://itpro.nikkeibp.co.jp/atcl/news/15/042201413/?ST=security

0 件のコメント:

コメントを投稿