2016年9月1日木曜日

1日 木曜日、友引

+ Google Chrome 53.0.2785.89 released
http://googlechromereleases.blogspot.jp/2016/08/stable-channel-update-for-desktop_31.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5147
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5148
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5149
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5150
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5151
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5152
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5153
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5154
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5155
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5156
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5157
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5158
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5159
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5161
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5162
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5163
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5164
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5165
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5166
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5160
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5167

+ Mozilla Thunderbird 45.3.0 released
https://www.mozilla.org/en-US/thunderbird/45.3.0/releasenotes/

+ Wireshark 2.0.5, 1.12.13 released
https://www.wireshark.org/docs/relnotes/wireshark-2.0.5.html
https://www.wireshark.org/docs/relnotes/wireshark-1.12.13.html

+ Cisco Wireless LAN Controller wIPS Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-wlc-2
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6376

+ Cisco Wireless LAN Controller TSM SNMP Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-wlc-1
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6375

+ Cisco WebEx Meetings Player Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-webex
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1415

+ Cisco Virtual Media Packager PAM API Unauthorized Access Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-vmp
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6377

+ Cisco Small Business 220 Series Smart Plus Switches SNMP Unauthorized Access Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-sps3
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1473

+ Cisco Small Business 220 Series Smart Plus Switches Web Interface Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-sps2
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1472

+ Cisco Small Business 220 Series Smart Plus Switches Web Interface Cross-Site Scripting Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-sps1
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1471

+ Cisco Small Business 220 Series Smart Plus Switches Web Interface Cross-Site Request Forgery Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-sps
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1470

+ Cisco Small Business SPA3x/5x Series Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-spa
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1469

+ Cisco WebEx Meetings Player Arbitrary Code Execution Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-meetings-player
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1464

+ Cisco Hosted Collaboration Mediation Fulfillment Directory Traversal File System Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-hcmf
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6371

+ Cisco Hosted Collaboration Mediation Fulfillment Authenticated Directory Traversal Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-hcm
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6370

+ SA72310 Hitachi Multiple Cosminexus / uCosminexus Products File Upload Request Handling Denial of Service Vulnerability
https://secunia.com/advisories/72310/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3092

+ SA72338 McAfee ePolicy Orchestrator Oracle Java Multiple Vulnerabilities
https://secunia.com/advisories/72338/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3485
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3500
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3508

+ HS16-022 DoS Vulnerability in Cosminexus
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/HS16-022/index.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3092

+ HS16-021 Information Disclosure Vulnerability in Hitachi Automation Director and JP1/Automatic Operation
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/HS16-021/index.html

+ HS16-022 CosminexusにおけるDoS脆弱性
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/HS16-022/index.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3092

+ HS16-021 Hitachi Automation Director, JP1/Automatic Operationにおける情報露出の脆弱性
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/HS16-021/index.html

+ UPDATE: JVNVU#91485132 CGI ウェブサーバがヘッダ Proxy の値を環境変数 HTTP_PROXY に設定する脆弱性
http://jvn.jp/vu/JVNVU91485132/index.html

+ Linux Kernel 'fs/fcntl.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/92697
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7118

JVNDB-2016-000154 有限会社AKABEi SOFT2 製の複数のゲーム製品における OS コマンドインジェクションの脆弱性
http://jvndb.jvn.jp/ja/contents/2016/JVNDB-2016-000154.html

サイバーインテリジェンスの探し方
サイバーインテリジェンスのためにネットニュースを整理
http://itpro.nikkeibp.co.jp/atcl/column/16/081200173/082500008/?ST=security

ランサムウエアへの対策を強化、トレンドマイクロがウイルスバスター新製品を発表
http://itpro.nikkeibp.co.jp/atcl/news/16/083102539/?ST=security

0 件のコメント:

コメントを投稿