2017年4月26日水曜日

26日 水曜日、仏滅











+ Android-x86 6.0-r3 released
http://www.android-x86.org/releases/releasenote-6-0-r3

+ UPDATE: Oracle Critical Patch Update Advisory - April 2017
http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html

+ Samba 4.6.3 Available for Download
https://www.samba.org/samba/history/samba-4.6.3.html

+ Microsoft Windows Dolby Audio X2 Service Privilege Escalation
https://cxsecurity.com/issue/WLB-2017040166
CVE-2017-7293

+ Microsoft Office Word Malicious Hta Execution
https://cxsecurity.com/issue/WLB-2017040167
CVE-2017-0199

+ Windows 7/ALL/8/8.1 x86/x64 BlueScreen ShellCode Exploit *youtube
https://cxsecurity.com/issue/WLB-2017040168
https://youtu.be/kGypH5dyUuw

+ Linux Kernel 'drivers/net/usb/catc.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/98011
CVE-2017-8070

+ Linux Kernel CVE-2007-6761 Local Information Disclosure Vulnerability
http://www.securityfocus.com/bid/98001
CVE-2007-6761

+ Linux Kernel 'drivers/hid/hid-cp2112.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/98010
CVE-2017-8072

+ Linux Kernel 'drivers/net/usb/rtl8150.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/98008
CVE-2017-8068

+ Trend Micro OfficeScan Multiple Privilege Escalation and Cross Site Scripting Vulnerabilities
http://www.securityfocus.com/bid/98007

+ Linux Kernel 'drivers/net/usb/pegasus.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/98000
CVE-2017-8068

+ Linux Kernel CVE-2017-8066 Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/97992
CVE-2017-8066

+ Linux Kernel 'drivers/char/virtio_console.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/97997
CVE-2017-8067

+ Linux Kernel 'crypto/ccm.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/97994
CVE-2017-8065

+ Linux Kernel 'drivers/hid/hid-cp2112.c' Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/97991
CVE-2017-8071

VU#219739 Portrait Displays SDK applications are vulnerable to arbitrary code execution and privilege escalation
https://www.kb.cert.org/vuls/id/219739

JVNDB-2017-000077 Windows 版 Vivaldi のインストーラにおける実行ファイル読み込みの脆弱性
http://jvndb.jvn.jp/ja/contents/2017/JVNDB-2017-000077.html

日経ITイノベーターズ白熱議論&講演
事件を契機にセキュリティ強化、それで得られた意外な果実
http://itpro.nikkeibp.co.jp/atcl/column/17/040500122/041800012/?ST=security&itp_list_theme

ニュース解説
プライバシー保護とデータ活用の両立支援、NECが新組織で課題解決急ぐ
http://itpro.nikkeibp.co.jp/atcl/column/14/346926/042400945/?ST=security&itp_list_theme

辻伸弘の裏読みセキュリティ事件簿
大学関係者をだます攻撃の調査で見つかった、複数の外交文書
http://itpro.nikkeibp.co.jp/atcl/column/16/012900025/042100039/?ST=security&itp_list_theme

ニュース解説
ぴあ運営サイト不正アクセス、Struts2の脆弱性は「S2-045」
http://itpro.nikkeibp.co.jp/atcl/column/14/346926/042500950/?ST=security&itp_list_theme

PwCサイバー、運用委託先を踏み台に機密情報を盗む攻撃を報告
http://itpro.nikkeibp.co.jp/atcl/news/17/042501277/?ST=security&itp_list_theme

またもStruts2で漏洩、ぴあ運営のB.LEAGUEサイトから流出したカード番号で被害
http://itpro.nikkeibp.co.jp/atcl/news/17/042501271/?ST=security&itp_list_theme

FIN7 Evolution and the Phishing LNK
http://www.linuxsecurity.com/content/view/171308/169/

Phishing with Unicode Domains
http://www.linuxsecurity.com/content/view/171307/169/

0 件のコメント:

コメントを投稿