2017年3月17日金曜日

17日 金曜日、先負










+ CESA-2017:0498 Important CentOS 5 thunderbird Security Update
https://lwn.net/Alerts/717357/

+ CESA-2017:0498 Important CentOS 6 thunderbird Security Update
https://lwn.net/Alerts/717356/

+ CESA-2017:0498 Important CentOS 7 thunderbird Security Update
https://lwn.net/Alerts/717355/

+ Linux kernel 3.16.42, 3.2.87 released
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.16.42
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.87

+ Samba 4.4.11 Available for Download
https://www.samba.org/samba/history/samba-4.4.11.html

+ PHP 7.1.3, 7.0.17 Released
http://www.php.net/ChangeLog-7.php#7.1.3
http://www.php.net/ChangeLog-7.php#7.0.17

+ Microsoft Windows 'LoadUvsTable()' Heap-based Buffer Overflow
https://cxsecurity.com/issue/WLB-2017030152
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7274

+ Microsoft Edge 38.14393.0.0 JavaScript Engine Use-After-Free
https://cxsecurity.com/issue/WLB-2017030151
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-0070

+ Windows DVD Maker XML External Entity File Disclosure
https://cxsecurity.com/issue/WLB-2017030149

VU#214283 Commvault Edge contains a buffer overflow vulnerability
https://www.kb.cert.org/vuls/id/214283

JVNDB-2017-000047 安全なウェブサイト運営入門における OS コマンドインジェクションの脆弱性
http://jvndb.jvn.jp/ja/contents/2017/JVNDB-2017-000047.html

JVNVU#96964526 D-Link DIR-130 および DIR-330 に複数の脆弱性
http://jvn.jp/vu/JVNVU96964526/index.html

沖縄電力のStruts2稼動サイトに不正アクセス、約6500件のメールアドレス流出か
http://itpro.nikkeibp.co.jp/atcl/news/17/031600847/?ST=security&itp_list_theme

米政府、Yahoo!大量データ流出でロシア当局者らを起訴
http://itpro.nikkeibp.co.jp/atcl/news/17/031600841/?ST=security&itp_list_theme

In-the-wild exploits ramp up against high-impact sites using Apache Struts
http://www.linuxsecurity.com/content/view/171061/169/

Inside the Russian hack of Yahoo: How they did it
http://www.linuxsecurity.com/content/view/171060/169/

0 件のコメント:

コメントを投稿