2015年12月15日火曜日

15日 火曜日、先負















+ RHSA-2015:2616 Moderate: openssl security update
https://rhn.redhat.com/errata/RHSA-2015-2616.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3195

+ RHSA-2015:2617 Moderate: openssl security update
https://rhn.redhat.com/errata/RHSA-2015-2617.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3194
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3195
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3196

+ RHSA-2015:2619 Moderate: libreoffice security update
https://rhn.redhat.com/errata/RHSA-2015-2619.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4551
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5212
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5213
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5214

+ Cisco IOS XE Software IPv6 Neighbor Discovery Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151214-ios
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6359

+ UPDATE: Cisco IOS XE 3S Platforms Series root Shell License Bypass Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151130-iosxe3s

+ Cisco Unified Communications Manager Web Management Interface Cross-Site Scripting Filter Bypass Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151214-ucm
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4206

+ SYM15-012 Security Advisories Relating to Symantec Products - Symantec Endpoint Encryption Client Memory Dump Information Disclosure
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20151214_00
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6556

+ Apache HTTP Server 2.4.18 Released
http://www.apache.org/dist/httpd/Announcement2.4.html
http://www.apache.org/dist/httpd/CHANGES_2.4.18

+ UPDATE: JVNVU#94276522 Apache Commons Collections ライブラリのデシリアライズ処理に脆弱性
http://jvn.jp/vu/JVNVU94276522/

+ HP Network Switch Unspecified Flaws Let Local Users Bypass Security Restrictions and Gain Elevated Privileges
http://www.securitytracker.com/id/1034410
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6859
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6860

+ Windows Authentication UI DLL side loading vulnerability
https://cxsecurity.com/issue/WLB-2015120139
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6132
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6133

気になるキーワード
最新事情を踏まえて知りたいセキュリティキーワード「脆弱性」
http://itpro.nikkeibp.co.jp/atcl/column/15/121400285/121400001/?ST=security

仕事で勝てる!ビジネス文章治療室
第4回 事の軽重が分かってない~上位職宛説明力欠乏症~
http://itpro.nikkeibp.co.jp/atcl/column/15/102600247/120900004/?ST=security

FinTechの旗手たち
「顧客ニーズとのギャップを埋める」、三井住友フィナンシャルグループの中山氏に聞く
http://itpro.nikkeibp.co.jp/atcl/column/15/121000283/121000003/?ST=security

堺市が全有権者約68万人分の外部流出を確認、持ち出した職員を懲戒免職処分
http://itpro.nikkeibp.co.jp/atcl/news/15/121404073/?ST=security

0 件のコメント:

コメントを投稿