2015年7月31日金曜日

31日 金曜日、先負

+ UPDATE: マイクロソフト セキュリティ アドバイザリ (2755801) Internet Explorer 上の Adobe Flash Player の脆弱性に対応する更新プログラム
https://technet.microsoft.com/ja-jp/library/security/2755801

+ RHSA-2015:1526 Important: java-1.6.0-openjdk security update
https://rhn.redhat.com/errata/RHSA-2015-1526.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2590
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2601
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2621
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2625
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2628
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2632
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2808
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4000
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4731
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4732
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4733
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4748
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4749
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4760

+ Selenium Standalone Server 2.47.0 released
http://docs.seleniumhq.org/download/

+ Selenium IE Driver Server 2.47.0 released
https://raw.githubusercontent.com/SeleniumHQ/selenium/master/cpp/iedriverserver/CHANGELOG

+ Selenium Client & WebDriver 2.47.0 released
http://docs.seleniumhq.org/download/

+ UPDATE: Multiple Vulnerabilities in OpenSSL (June 2015) Affecting Cisco Products
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150612-openssl

+ Cisco ASR 1000 Series Aggregation Services Routers Fragmented Packet Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150730-asr1k
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4291

+ HPSBGN03372 rev.1 - HP Business Process Monitor using RC4, Remote Disclosure of Information
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04739254&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2808

+ HPSBGN03367 rev.1 - HP TransactionVision with RC4 Stream Cipher, Remote Disclosure of Information
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c04727082&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2808

+ Linux kernel 3.12.45 released
https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.12.45

+ UPDATE: Oracle Critical Patch Update Advisory - July 2015
http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html

+ SYM15-007 Security Advisories Relating to Symantec Products - Symantec Endpoint Protection Multiple Issues
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20150730_00
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1486
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1487
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1488
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1489
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1490
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1491
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1492

+ OpenBSD patch Lets Remote Users Execute Arbitrary Commands on the Target System
http://www.securitytracker.com/id/1033126

+ Internet Explorer 11 Remote Crash POC
http://cxsecurity.com/issue/WLB-2015070140

News & Trend
緊急対応依頼が急増、サイバー攻撃対策の理想と現実のギャップが浮き彫りに
http://itpro.nikkeibp.co.jp/atcl/column/14/346926/072900309/?ST=security

チェックしておきたい脆弱性情報<2015.07.31>
http://itpro.nikkeibp.co.jp/atcl/column/14/268561/072700069/?ST=security

シャトレーゼにSQLインジェクション攻撃、Web会員情報約21万人分流出の可能性
http://itpro.nikkeibp.co.jp/atcl/news/15/073002537/?ST=security

日立ソリューションズ、Salesforceの利用状況を見える化するダッシュボードを提供
http://itpro.nikkeibp.co.jp/atcl/news/15/073002526/?ST=security

メッセージ受信だけでスマホ遠隔操作の恐れ、ほぼ全てのAndroidに脆弱性
http://itpro.nikkeibp.co.jp/atcl/news/15/073002520/?ST=security

「日本市場は追い風」、セキュリティベンダーのデジタルガーディアンが日本で攻勢に
http://itpro.nikkeibp.co.jp/atcl/news/15/073002519/?ST=security

VU#577140 BIOS implementations fail to properly set UEFI write protections after waking from sleep mode
http://www.kb.cert.org/vuls/id/577140

0 件のコメント:

コメントを投稿