2015年12月4日金曜日

4日 金曜日、友引

+ CESA-2015:2521 Important CentOS 6 jakarta-commons-collections Security Update
http://lwn.net/Alerts/666720/

+ CESA-2015:2504 Moderate CentOS 6 libreport Security Update
http://lwn.net/Alerts/666721/

+ UPDATE: Cisco IOS XE 3S Platforms Series root Shell License Bypass Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151130-iosxe3s

+ UPDATE: Cisco Networking Services Sensitive Information Disclosure Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151120-ns

+ cURL 7.46.0 released
http://curl.haxx.se/changes.html#7_46_0

+ PHP 7.0.0 Released
http://php.net/archive/2015.php#id2015-12-03-1

+ MySQL 5.6.28 released
http://dev.mysql.com/doc/relnotes/mysql/5.6/en/news-5-6-28.html

+ OpenSSL Security Advisory [3 Dec 2015]
http://www.openssl.org/news/secadv/20151203.txt

+ OpenSSL 1.0.2e, 1.0.1q, 1.0.0t, 0.9.8zh released
http://www.openssl.org/news/openssl-1.0.2-notes.html
http://www.openssl.org/news/openssl-1.0.1-notes.html
http://www.openssl.org/news/openssl-1.0.0-notes.html
http://www.openssl.org/news/openssl-0.9.8-notes.html

+ EMC NetWorker RPC Authentication Message Processing Flaw Lets Remote Users Deny Service
http://www.securitytracker.com/id/1034287
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6849

+ Microsoft Windows Includes Compromised Dell Certificates
http://www.securitytracker.com/id/1034283

JVNDB-2015-000190 EC-CUBE 用プラグイン「管理画面表示制御プラグイン」における SQL インジェクションの脆弱性
http://jvndb.jvn.jp/ja/contents/2015/JVNDB-2015-000190.html

0 件のコメント:

コメントを投稿