2017年9月28日木曜日

28日 木曜日、仏滅

+ About the security content of iOS 11.0.1
https://support.apple.com/ja-jp/HT208143

+ Cisco IOS XE Software Web UI REST API Authentication Bypass Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-restapi
CVE-2017-12229

+ Cisco IOS XE Software Web UI Privilege Escalation Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-privesc
CVE-2017-12230

+ Cisco IOS and IOS XE Software DHCP Remote Code Execution Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-dhcp
CVE-2017-12240

+ Cisco Mobility Express 1800 Access Point Series Authentication Bypass Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-ap1800
CVE-2017-3831

+ Cisco IOS Software for Cisco Catalyst 6800 Series Switches VPLS Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-vpls
CVE-2017-12238

+ Cisco IOS Software for Cisco Integrated Services Routers Generation 2 Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-rbip-dos
CVE-2017-12232

+ Cisco IOS Software for Cisco Industrial Ethernet Switches PROFINET Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-profinet
CVE-2017-12235

+ Cisco IOS and IOS XE Software Plug-and-Play PKI API Certificate Validation Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-pnp
CVE-2017-12228

+ Cisco IOS XE Software for Cisco 5760 WLC, Cisco Catalyst 4500E Supervisor Engine 8-E, and Cisco NGWC 3850 GUI Privilege Escalation Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-ngwc
CVE-2017-12226

+ Cisco IOS Software Network Address Translation Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-nat
CVE-2017-12231

+ Cisco IOS XE Software Locator/ID Separation Protocol Authentication Bypass Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-lisp
CVE-2017-12236

+ Cisco IOS XE Wireless Controller Manager Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-ios-xe
CVE-2017-12222

+ Cisco IOS and IOS XE Software Internet Key Exchange Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-ike
CVE-2017-12237

+ Cisco IOS Software Common Industrial Protocol Request Denial of Service Vulnerabilities
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-cip
CVE-2017-12233
CVE-2017-12234

+ Cisco IOS XE Software for Cisco ASR 1000 Series and cBR-8 Routers Line Card Console Access Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-cc
CVE-2017-12239

+ Linux kernel 4.13.4, 4.9.52, 4.4.89, 3.18.72 released
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.13.4
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.52
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.89
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.18.72

+ Linux Kernel Stack Corruption Flaw in PIE Executables Lets Local Users Gain Elevated Privileges
http://www.securitytracker.com/id/1039434
CVE-2017-1000253

+ Apple macOS/OS X Unspecified Flaw Lets Local Users View Keychain Passwords
http://www.securitytracker.com/id/1039430

セキュリティ大実験室 2017
会社のパソコンからファイルを持ち出してもバレない?
http://itpro.nikkeibp.co.jp/atcl/column/17/090600370/091100009/?ST=security&itp_list_theme

記者の眼
減少する迷惑メール、でも被害相談が急増している理由
http://itpro.nikkeibp.co.jp/atcl/watcher/14/334361/092600923/?ST=security&itp_list_theme

EMCジャパン、サイバー攻撃調査を効率化する製品の新版を発表
http://itpro.nikkeibp.co.jp/atcl/news/17/092702348/?ST=security&itp_list_theme

メルカリでアクセス障害発生、「短時間だからユーザーに案内しない」
http://itpro.nikkeibp.co.jp/atcl/news/17/092702347/?ST=security&itp_list_theme

!Dios mio! Spain blocks DNS to silence Catalan independence vote sites
http://www.linuxsecurity.com/content/view/175962/169/

0 件のコメント:

コメントを投稿