2016年1月14日木曜日

14日 木曜日、仏滅

+ Google Chrome 47.0.2526.111 released
http://googlechromereleases.blogspot.jp/2016/01/stable-channel-update.html

+ ISC DHCP 4.3.3-P1, 4.1-ESV-R12-P1 released
https://kb.isc.org/article/AA-01329
https://kb.isc.org/article/AA-01330

+ CVE-2015-8605: UDP payload length not properly checked
https://kb.isc.org/article/AA-01334
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8605

+ UPDATE: Cisco IOS Software and IOS XE Software Internet Key Exchange Version 2 Denial of Service Vulnerabilities
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150325-ikev2

+ UPDATE: Multiple Vulnerabilities in Cisco IOS Software Common Industrial Protocol
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150325-cip

+ UPDATE: Multiple Vulnerabilities in OpenSSL (December 2015) Affecting Cisco Products
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151204-openssl

+ Cisco Identity Services Engine Unauthorized Access Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160113-ise
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6323

+ Cisco Aironet 1800 Series Access Point Default Static Account Credentials Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160113-air
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6336

+ Cisco Wireless LAN Controller Unauthorized Access Vulnerabilit
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160113-wlc
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6314

+ Cisco Identity Services Engine Unauthorized Access Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160113-ise2
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6317

+ 2016年1月 Microsoft セキュリティ情報 (緊急 6件含) に関する注意喚起
http://www.jpcert.or.jp/at/2016/at160004.html

+ Adobe Reader および Acrobat の脆弱性 (APSB16-02) に関する注意喚起
http://www.jpcert.or.jp/at/2016/at160003.html

+ JVNVU#99390211 ISC DHCP にサービス運用妨害 (DoS) の脆弱性
http://jvn.jp/vu/JVNVU99390211/

+ JVNVU#97593732 Samsung 製ネットワークビデオレコーダーに複数の脆弱性
http://jvn.jp/vu/JVNVU97593732/

+ Fortinet FortiGate/FortiOS Undocumented SSH Access Lets Remote Users Access the Target System
http://www.securitytracker.com/id/1034663

+ DHCP UDP Length Processing Flaw Lets Remote Users Cause the Target Service to Crash
http://www.securitytracker.com/id/1034657
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8605

+ Linux Kernel overlayfs - Local Privilege Escalation
https://cxsecurity.com/issue/WLB-2016010075

+ FortiGate OS 5.0.7 SSH Backdoor
https://cxsecurity.com/issue/WLB-2016010072

Navicat for PostgreSQL version 11.2 - introducing Navicat Cloud Collaboration & support PostgreSQL 9.5
http://www.postgresql.org/about/news/1640/

セキュリティ対策製品のアークンに不正アクセスで、顧客情報3859社分漏洩
http://itpro.nikkeibp.co.jp/atcl/news/16/011300091/?ST=security

日産グループのサイトがDDoSで全面停止、「アノニマス」のサイバー攻撃か
http://itpro.nikkeibp.co.jp/atcl/news/16/011300089/?ST=security

0 件のコメント:

コメントを投稿