2016年3月18日金曜日

18日 金曜日、大安

+ CESA-2016:0459 Important CentOS 6 bind Security Update
http://lwn.net/Alerts/680418/

+ CESA-2016:0459 Important CentOS 7 bind Security Update
http://lwn.net/Alerts/680419/

+ CESA-2016:0460 Important CentOS 5 thunderbird Security Update
http://lwn.net/Alerts/680422/

+ CESA-2016:0450 Important CentOS 5 kernel Security Update
http://lwn.net/Alerts/680421/

+ CESA-2016:0460 Important CentOS 6 thunderbird Security Update
http://lwn.net/Alerts/680423/

+ CESA-2016:0459 Important CentOS 5 bind Security Update
http://lwn.net/Alerts/680417/

+ CESA-2016:0460 Important CentOS 7 thunderbird Security Update
http://lwn.net/Alerts/680424/

+ CESA-2016:0458 Important CentOS 5 bind97 Security Update
http://lwn.net/Alerts/680420/

+ HPSBGN03438 rev.1 - HP Support Assistant, Local Authentication Bypass
https://h20566.www2.hp.com/hpsc/doc/public/display?calledBy=&docId=emr_na-c05031674&docLocale=ja_JP
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2245

+ Linux kernel 4.1.20, 3.18.29 released
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.20
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.18.29

+ SYM16-003 Security Advisories Relating to Symantec Products - Symantec Endpoint Protection Multiple Security Issues
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20160317_00

+ Apache Tomcat 9.0.0.M4 (alpha) Released
http://tomcat.apache.org/tomcat-9.0-doc/changelog.html#Tomcat_9.0.0.M4_(markt)

+ UPDATE: JVNVU#91475438 Internet Key Exchange (IKEv1, IKEv2) が DoS 攻撃の踏み台として使用される問題
http://jvn.jp/vu/JVNVU91475438/

+ FreeBSD sysarch(2) Input Validation Flaw Lets Local Users Cause Denial of Service Conditions on the Target System
http://www.securitytracker.com/id/1035309
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1885

+ FreeBSD Kernel amd64_set_ldt Heap Overflow
https://cxsecurity.com/issue/WLB-2016030093
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1885

+ Linux Kernel Xen PV EFLAGS.IOPL Security Bypass Security Issue
https://secunia.com/advisories/69625/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3157

VU#897144 Solarwinds Dameware Remote Mini Controller Windows service is vulnerable to stack buffer overflow
https://www.kb.cert.org/vuls/id/897144

「パスワードの強制定期変更」は時代遅れ、企業に再考促す
http://itpro.nikkeibp.co.jp/atcl/column/14/346926/031600480/?ST=security

統計&調査
[データは語る]標的型攻撃対応が最優先の企業は23.7%、過去3年間で最高―JIPDECとITR
http://itpro.nikkeibp.co.jp/atcl/news/14/110601779/031700544/?ST=security

Appleが「iCloud」の暗号強化を計画中、ユーザー以外アクセス不可能に
http://itpro.nikkeibp.co.jp/atcl/news/16/031700810/?ST=security

0 件のコメント:

コメントを投稿