2017年5月24日水曜日

24日 水曜日、友引

+ RHSA-2017:1268 Important: libtirpc security update
https://access.redhat.com/errata/RHSA-2017:1268
CVE-2017-8779

+ RHSA-2017:1267 Important: rpcbind security update
https://access.redhat.com/errata/RHSA-2017:1267
CVE-2017-8779

+ CESA-2017:1262 Important CentOS 7 rpcbind Security Update
https://lwn.net/Alerts/723537/

+ CESA-2017:1263 Important CentOS 7 libtirpc Security Update
https://lwn.net/Alerts/723536/

+ CESA-2017:1264 Important CentOS 7 kdelibs Security Update
https://lwn.net/Alerts/723535/

+ CESA-2017:1265 Moderate CentOS 7 samba Security Update
https://lwn.net/Alerts/723538/

+ Fortinet FortiOS Input Validation Flaw in 'global-label' Configuration Setting Lets Remote Authenticated Administrative Users Conduct Cross-Site Scripting Attacks
http://www.securitytracker.com/id/1038541
CVE-2017-3128

+ MantisBT Input Validation Flaws Let Remote Users Conduct Cross-Site Request Forgery and Open Redirect Attacks
http://www.securitytracker.com/id/1038538
CVE-2017-7620

+ VMware Workstation for Linux 12.5.2 build-4638234 ALSA Config Host Root Privilege Escalation
https://cxsecurity.com/issue/WLB-2017050165
CVE-2017-4915

+ VMWare Workstation On Linux Privilege Escalation
https://cxsecurity.com/issue/WLB-2017050160
CVE-2017-4915

+ VMWare Horizon 5.4 DLL Hijacking
https://cxsecurity.com/issue/WLB-2017050154

ニュース解説
2万人不足のセキュリティ人材、育成にあの手この手
http://itpro.nikkeibp.co.jp/atcl/column/14/346926/052200984/?ST=security&itp_list_theme

「ログインの3割がなりすまし」、アカマイが最新の攻撃動向と対策を解説
http://itpro.nikkeibp.co.jp/atcl/news/17/052301479/?ST=security&itp_list_theme

Sn1per ? Penetration Testing Automation Scanner
http://www.linuxsecurity.com/content/view/171540/169/

Hackers Unlock Samsung Galaxy S8 With Fake Iris
http://www.linuxsecurity.com/content/view/171539/169/

0 件のコメント:

コメントを投稿