2016年2月18日木曜日

18日 木曜日、大安

+ Selenium Standard Server 2.52.0 released
http://docs.seleniumhq.org/download/

+ Selenium IE Driver Server 2.52.0 released
https://raw.githubusercontent.com/SeleniumHQ/selenium/master/cpp/iedriverserver/CHANGELOG

+ Selenium Client & WebDriver 2.52.0 released
https://raw.githubusercontent.com/SeleniumHQ/selenium/master/java/CHANGELOG

+ CESA-2016:0185 Important CentOS 7 kernel Security Update
http://lwn.net/Alerts/676015/

+ CESA-2016:0175 Critical CentOS 6 glibc Security Update
http://lwn.net/Alerts/676013/

+ CESA-2016:0204 Important CentOS 7 389-ds-base Security Update
http://lwn.net/Alerts/676009/

+ CESA-2016:0197 Critical CentOS 5 firefox Security Update
http://lwn.net/Alerts/676010/

+ CESA-2016:0197 Critical CentOS 7 firefox Security Update
http://lwn.net/Alerts/676012/

+ CESA-2016:0176 Critical CentOS 7 glibc Security Update
http://lwn.net/Alerts/676014/

+ CESA-2016:0188 Moderate CentOS 7 sos Security Update
http://lwn.net/Alerts/676017/

+ CESA-2016:0197 Critical CentOS 6 firefox Security Update
http://lwn.net/Alerts/676011/

+ CESA-2016:0189 Moderate CentOS 7 polkit Security Update
http://lwn.net/Alerts/676016/

+ VU#457759 glibc vulnerable to stack buffer overflow in DNS resolver
https://www.kb.cert.org/vuls/id/457759
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-7547

+ Linux kernel 4.4.2, 3.14.61 released
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.2
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.14.61

+ Apache Tomcat 7.0.68 Released
http://tomcat.apache.org/tomcat-7.0-doc/changelog.html

+ [PATCH] CVE-2015-7547 --- glibc getaddrinfo() stack-based buffer overflow
https://www.sourceware.org/ml/libc-alpha/2016-02/msg00416.html

+ JVNVU#97236594 glibc にバッファオーバーフローの脆弱性
http://jvn.jp/vu/JVNVU97236594/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-7547

+ LibreOffice LWP File Processing Flaw Lets Remote Users Execute Arbitrary Code
http://www.securitytracker.com/id/1035022
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0794
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0795

+ glibc - getaddrinfo Stack-Based Buffer Overflow
https://cxsecurity.com/issue/WLB-2016020159
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-7547

VU#899080 Zhuhai Raysharp firmware for DVRs from multiple vendors contains hard-coded credentials
https://www.kb.cert.org/vuls/id/899080

VU#923388 Swann SRNVW-470 allows unauthorized access to video stream and contains a hard-coded password
https://www.kb.cert.org/vuls/id/923388

JVNVU#99862126 Hirschmann Classic Platform スイッチの管理者パスワードが SNMP コミュニティ名を通じて漏えいする問題
http://jvn.jp/vu/JVNVU99862126/

チェックしておきたい脆弱性情報<2016.02.18>
http://itpro.nikkeibp.co.jp/atcl/column/14/268561/021000100/?ST=security

[第4回]インターネットに直結されるIoT機器(後編)
http://itpro.nikkeibp.co.jp/atcl/column/16/020200028/020200004/?ST=security

こうすれば秘密は漏れない!LINEのセキュリティ
[4] 「友だち」からLINEの会話が漏れるリスク
http://itpro.nikkeibp.co.jp/atcl/column/16/021000034/021000005/?ST=security

0 件のコメント:

コメントを投稿