2016年5月20日金曜日

20日 金曜日、大安

+ Zabbix 3.0.3, 2.2.13, 2.0.18 released
http://www.zabbix.com/rn3.0.3.php
http://www.zabbix.com/rn2.2.13.php
http://www.zabbix.com/rn2.0.18.php

+ UPDATE: APSB16-15 Security updates available for Adobe Flash Player
https://helpx.adobe.com/security/products/flash-player/apsb16-15.html

+ Cisco IOS XR LPTS Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160519-ios-xr
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1407

+ Linux kernel 4.6, 4.5.5, 4.4.11, 3.14.70 released
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/log/?id=refs/tags/v4.6
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.5.5
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.11
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.14.70

+ UPDATE: Oracle Linux Bulletin - April 2016
http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html

+ SA70711 cURL / libcURL Hostname Certificate Validation Vulnerability
https://secunia.com/advisories/70711/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3739

+ SA70520 Linux Kernel Channels Netns Use-After-Free Vulnerability
https://secunia.com/advisories/70520/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4805

+ OpenBSD uvideo(4) IOCTL Handling Flaw Lets Local Users View Portions of System Memory on the Target System
http://www.securitytracker.com/id/1035925

VU#204232 Up.time agent for Linux does not authenticate a user before allowing read access to the file system
https://www.kb.cert.org/vuls/id/204232

JVNDB-2016-000066 Web Mailing List におけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2016/JVNDB-2016-000066.html

IoTデバイスのセキュリティ対策を提示、IPAが手引きを公表
http://itpro.nikkeibp.co.jp/atcl/news/16/051901432/?ST=security

0 件のコメント:

コメントを投稿