2015年7月29日水曜日

29日 水曜日、先勝

+ RHSA-2015:1514 Important: bind security update
https://rhn.redhat.com/errata/RHSA-2015-1514.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5477

+ RHSA-2015:1515 Important: bind97 security update
https://rhn.redhat.com/errata/RHSA-2015-1515.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5477

+ RHSA-2015:1513 Important: bind security update
https://rhn.redhat.com/errata/RHSA-2015-1513.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5477

+ Google Chrome 44.0.2403.125 released
http://googlechromereleases.blogspot.jp/2015/07/stable-channel-update_28.html

+ CESA-2015:1510 Moderate CentOS 7 clutter Security Update
http://lwn.net/Alerts/652630/

+ CESA-2015:1507 Important CentOS 7 qemu-kvm Security Update
http://lwn.net/Alerts/652631/

+ BIND 9.10.2-P3, 9.9.7-P2 released
http://ftp.isc.org/isc/bind9/9.10.2-P3/RELEASE-NOTES-9.10.2-P3.html
http://ftp.isc.org/isc/bind9/9.9.7-P2/RELEASE-NOTES-9.9.7-P2.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5477

+ CVE-2015-5477: An error in handling TKEY queries can cause named to exit with a REQUIRE assertion failure
https://kb.isc.org/article/AA-01272
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5477

+ UPDATE: OpenSSL Alternative Chains Certificate Forgery Vulnerability (July 2015) Affecting Cisco Products
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150710-openssl

+ FreeBSD-SA-15:17.bind BIND remote denial of service vulnerability
https://www.freebsd.org/security/advisories/FreeBSD-SA-15:17.bind.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5477

+ FreeBSD-SA-15:16.openssh OpenSSH multiple vulnerabilities
https://www.freebsd.org/security/advisories/FreeBSD-SA-15:16.openssh.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-2653
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5600

+ FreeBSD-SA-15:15.tcp Resource exhaustion in TCP reassembly
https://www.freebsd.org/security/advisories/FreeBSD-SA-15:15.tcp.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1417

+ FreeBSD-SA-15:14.bsdpatch shell injection vulnerability in patch(1)
https://www.freebsd.org/security/advisories/FreeBSD-SA-15:14.bsdpatch.asc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1416

+ VU#924951 Android Stagefright contains multiple vulnerabilities
http://www.kb.cert.org/vuls/id/924951
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1538
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1539
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3824
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3826
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3827
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3828
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3829

+ Google Android MMS Media Processing Flaw Lets Remote Users Execute Arbitrary Code on the Target System
http://www.securitytracker.com/id/1033094
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1538
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1539
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3824
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3826
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3827
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3828
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3829

pgCluu release 2.4 is out
http://www.postgresql.org/about/news/1600/

JVNDB-2015-000106 画像掲示板plus のファイルアップロード処理における脆弱性
http://jvndb.jvn.jp/ja/contents/2015/JVNDB-2015-000106.html

News & Trend
Flash Playerは賞味期限切れか? 相次ぐ脆弱性を突くサイバー攻撃が国内で発生
http://itpro.nikkeibp.co.jp/atcl/column/14/346926/072700308/?ST=security

チェックしておきたい脆弱性情報<2015.07.29>
http://itpro.nikkeibp.co.jp/atcl/column/14/268561/072700068/?ST=security

勝手にTポイントへ交換、オリコ会員サイトがリスト型攻撃被害
IDとパスワードを使い回さないように注意喚起
http://itpro.nikkeibp.co.jp/atcl/news/15/072802495/?ST=security

標的型攻撃対策の「虎の巻」、ラックが無償公開
対象企業・団体を絞った個別指南書も8月に
http://itpro.nikkeibp.co.jp/atcl/news/15/072802491/?ST=security

三菱東京UFJ銀行から「こんにちは!」、実は偽メール
フィッシング対策協議会が注意喚起
http://itpro.nikkeibp.co.jp/atcl/news/15/072802489/?ST=security

0 件のコメント:

コメントを投稿