2015年5月1日金曜日

1日 金曜日、先負

+ UPDATE: Multiple Vulnerabilities in OpenSSL (January 2015) Affecting Cisco Products
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150310-ssl

+ UPDATE: Multiple Vulnerabilities in ntpd (April 2015) Affecting Cisco Products
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150408-ntpd

+ gawk 4.1.2 released
http://ftp.gnu.org/gnu/gawk/?C=M;O=D

+ HPSBGN03323 rev.1 - HP Business Service Automation Essentials Core with JBOSS, Remote Disclosure of Information
https://h20565.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04649560&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4810

+ HPSBMU03241 rev.1 - HP Network Automation running SSLv3, Remote Disclosure of Information
https://h20565.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04539690&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3566

+ HPSBUX03320 SSRT101952 rev.1 - HP-UX CIFS Server (Samba), Remote Denial of Service (DoS), Execution of Arbitrary Code, Unauthorized Access
https://h20565.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04636672&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0240

+ Linux kernel 3.12.41 released
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.12.41

+ RSA Identity Management and Governance Password Reset Weakness Lets Remote Users Gain Privileged Access
http://www.securitytracker.com/id/1032218
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0532

+ MySQL '--ssl' Client Option Lets Remote Users Downgrade SSL/TLS Connections
http://www.securitytracker.com/id/1032216
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3152

+ MacOS X 0day fontd buffer overflow
http://cxsecurity.com/issue/WLB-2015050001

+ SA64315 ClamAV Multiple Denial of Service Vulnerabilities
http://secunia.com/advisories/64315/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2170
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2221
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2222
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2668

FreeBSD: January?March, 2015 Status Report
https://www.freebsd.org/news/status/report-2015-01-2015-03.html

アスタリスク・リサーチ、米Cigitalと提携し開発者向けセキュリティ・サービスを国内で提供
http://itpro.nikkeibp.co.jp/atcl/news/15/043001486/?ST=security

JVNVU#99597998 Barracuda Web Filter にサーバ証明書を適切に検証しない脆弱性
http://jvn.jp/vu/JVNVU99597998/

VU#581276 EMC AutoStart is vulnerable to remote code execution via specially crafted packets
http://www.kb.cert.org/vuls/id/581276

0 件のコメント:

コメントを投稿