2016年8月22日月曜日

22日 月曜日、友引

+ CESA-2016:1626 Moderate CentOS 6 python Security Update
http://lwn.net/Alerts/697696/

+ CESA-2016:1626 Moderate CentOS 7 python Security Update
http://lwn.net/Alerts/697695/

+ phpMyAdmin 4.0.10.17, 4.4.15.8, 4.6.4 released
https://www.phpmyadmin.net/news/2016/8/16/phpmyadmin-401017-44158-and-464-are-released/

+ UPDATE: Cisco Application Policy Infrastructure Controller Enterprise Module Remote Code Execution Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-apic

+ Cisco Connected Streaming Analytics Unauthorized Access Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160810-csa
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1477

+ UPDATE: Cisco Adaptive Security Appliance CLI Remote Code Execution Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-asa-cli

+ UPDATE: Cisco Adaptive Security Appliance SNMP Remote Code Execution Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-asa-snmp

+ UPDATE: Cisco IOS and Cisco IOS XE Software OpenSSH TCP Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160620-isr

+ Linux kernel 4.7.2, 4.4.19, 3.14.77 released
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.7.2
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.19
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.14.77

+ SA72109 Linux Kernel infiniband ABORT_TASK Denial of Service Vulnerability
https://secunia.com/advisories/72109/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6327

+ UPDATE: JVNVU#93163809 OpenSSL に複数の脆弱性
http://jvn.jp/vu/JVNVU93163809/

+ UPDATE: JVNVU#92232364 Microsoft Windows および Samba の認証機能に脆弱性 ("Badlock")
http://jvn.jp/vu/JVNVU92232364/

+ UPDATE: JVNVU#95402108 ISC BIND にサービス運用妨害 (DoS) の脆弱性
http://jvn.jp/vu/JVNVU95402108/

+ UPDATE: JVNVU#97236594 glibc にバッファオーバーフローの脆弱性
http://jvn.jp/vu/JVNVU97236594/

+ UPDATE: JVN#48135658 複数のルータ製品におけるクリックジャッキングの脆弱性
http://jvn.jp/jp/JVN48135658/index.html

+ UPDATE: JVNVU#91445763 OpenSSL に複数の脆弱性
http://jvn.jp/vu/JVNVU91445763/index.html

+ UPDATE: JVNVU#95877131 OpenSSL に複数の脆弱性
http://jvn.jp/vu/JVNVU95877131/index.html

+ PHP Multiple Flaws Let Remote and Local Users Obtain Potentially Sensitive Information, Deny Service, and Execute Arbitrary Code
http://www.securitytracker.com/id/1036680

+ Linux Kernel CVE-2016-6327 Null Pointer Deference Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/92549
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6327

JVNDB-2016-000150 Geeklog IVYWE版におけるクロスサイトスクリプティングの脆弱性
http://jvndb.jvn.jp/ja/contents/2016/JVNDB-2016-000150.html

SSLはもう古い TLSがおもしろい
TLSの安全性は何で決まる?
http://itpro.nikkeibp.co.jp/atcl/column/16/072100153/072100005/?ST=security

百社百様、我が社のCSIRT
[ジャパンネット銀行]詐欺サイトを徹底的にテイクダウン
http://itpro.nikkeibp.co.jp/atcl/column/16/080500167/080500001/?ST=security

UPDATE: JVN#51565015 LINE PC版(Windows版)における DLL 読み込みに関する脆弱性
http://jvn.jp/jp/JVN51565015/

JVN#09836883 Geeklog IVYWE版におけるクロスサイトスクリプティングの脆弱性
http://jvn.jp/jp/JVN09836883/index.html

0 件のコメント:

コメントを投稿