2017年1月4日水曜日

4日 水曜日、赤口

+ MantisBT 1.3.5 Released
https://www.mantisbt.org/bugs/changelog_page.php?version_id=261

+ MantisBT 2.0.0 (stable) Released ? Happy New Year!!!
http://www.mantisbt.org/blog/?p=489#more-489

+ RHSA-2017:0001 Moderate: ipa security update
https://rhn.redhat.com/errata/RHSA-2017-0001.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7030
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9575

+ CESA-2017:0001 Moderate CentOS 7 ipa Security Update
https://lwn.net/Alerts/710522/

+ Mozilla Thunderbird 45.6.0 released
https://www.mozilla.org/en-US/thunderbird/45.6.0/releasenotes/

+ MFSA2016-96 Security vulnerabilities fixed in Thunderbird 45.6
https://www.mozilla.org/en-US/security/advisories/mfsa2016-96/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9899
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9895
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9897
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9898
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9900
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9904
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9905
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9893

+ VU#475907 Shoretel Mobility Client iOS application does not verify SSL certificates
https://www.kb.cert.org/vuls/id/475907
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6562

+ SA74483 libpng "png_set_text_2()" NULL Pointer Dereference Vulnerability
https://secunia.com/advisories/74483/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10087

+ SA74290 Mozilla Thunderbird Multiple Vulnerabilities
https://secunia.com/advisories/74290/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9893
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9895
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9897
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9898
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9899
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9900
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9904
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-9905

+ HS16-032 Vulnerability in JP1/Cm2/Network Node Manager i
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/HS16-032/index.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4397

+ HS16-032 JP1/Cm2/Network Node Manager iにおける脆弱性
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/HS16-032/index.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4397

+ Apache Ant 1.9.8 and 1.10.0 Released
http://ant.apache.org/

+ libpng 1.6.27 released
http://www.libpng.org/pub/png/src/libpng-1.6.27-README.txt

+ Postfix 3.1.4, 3.0.8, 2.11.9 released
http://www.postfix.org/announcements/postfix-3.1.4.html
http://mirror.postfix.jp/postfix-release/official/postfix-3.1.4.HISTORY
http://mirror.postfix.jp/postfix-release/official/postfix-3.0.8.HISTORY
http://mirror.postfix.jp/postfix-release/official/postfix-2.11.9.HISTORY

+ zlib 1.2.10 released
http://www.zlib.net/ChangeLog.txt

+ Kaspersky Internet Security Bugs Let Remote Users Bypass Certificate Validation and Access SSL Data and Let Local Users Access an SSL Private Key
http://www.securitytracker.com/id/1037546

+ Kaspersky Anti-Virus Bugs Let Remote Users Bypass Certificate Validation and Access SSL Data and Let Local Users Access an SSL Private Key
http://www.securitytracker.com/id/1037545

+ Apple iOS VCF Processing Flaw in Messages App Lets Remote Users Cause the Target Application to Crash
http://www.securitytracker.com/id/1037540

+ Linux Kernel sg_write() and bsg_write() Functions Let Local Users Obtain Root Privileges
http://www.securitytracker.com/id/1037538
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10088

JVNVU#99931177 PHPMailer に OS コマンドインジェクションの脆弱性
http://jvn.jp/vu/JVNVU99931177/

新ITキーワード2017
「IDDoS攻撃」、IoT機器から超弩級のサイバー攻撃
http://itpro.nikkeibp.co.jp/atcl/column/16/120900297/121500001/?ST=security&itp_list_theme

インタビュー&トーク
アカマイ幹部「2017年からIoT向けインフラサービス強化、先駆けは自動車サービス」
http://itpro.nikkeibp.co.jp/atcl/interview/14/262522/122700307/?ST=security&itp_list_theme

0 件のコメント:

コメントを投稿