2017年10月17日火曜日

17日 火曜日、大安

+ Mozilla Foundation Security Advisory 2017-23 Security vulnerabilities fixed in Thunderbird 52.4
https://www.mozilla.org/en-US/security/advisories/mfsa2017-23/
CVE-2017-7793
CVE-2017-7818
CVE-2017-7819
CVE-2017-7824
CVE-2017-7805
CVE-2017-7814
CVE-2017-7825
CVE-2017-7823
CVE-2017-7810

+ UPDATE: Multiple Vulnerabilities in Wi-Fi Protected Access and Wi-Fi Protected Access II
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171016-wpa

+ hitachi-sec-2017-130 Information Disclosure Vulnerability in Hitachi Global Link Manager
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/hitachi-sec-2017-130/index.html
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/hitachi-sec-2017-130/index.html

+ hitachi-sec-2017-129 RMI Vulnerability in Hitachi Tuning Manager
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/hitachi-sec-2017-129/index.html
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/hitachi-sec-2017-129/index.html

+ hitachi-sec-2017-128 XXE Vulnerability in Hitachi Command Suite
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/hitachi-sec-2017-128/index.html
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/hitachi-sec-2017-128/index.html

+ hitachi-sec-2017-127 Remote Code Execution Vulnerability in Hitachi Command Suite
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/hitachi-sec-2017-127/index.html
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/hitachi-sec-2017-127/index.html
CVE-2017-5641

+ hitachi-sec-2017-126 Information Disclosure Vulnerability in Hitachi Automation Director
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/hitachi-sec-2017-126/index.html
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/hitachi-sec-2017-126/index.html

+ hitachi-sec-2017-125 Multiple Vulnerabilities in Hitachi Infrastructure Analytics Advisor
http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/hitachi-sec-2017-125/index.html
http://www.hitachi.co.jp/Prod/comp/soft1/security/info/vuls/hitachi-sec-2017-125/index.html

+ WiFi WPA2 Key Reinstallation Attacks
https://cxsecurity.com/issue/WLB-2017100118

VU#307015 Infineon RSA library does not properly generate RSA key pairs
https://www.kb.cert.org/vuls/id/307015

VU#228519 Wi-Fi Protected Access II (WPA2) handshake traffic can be manipulated to induce nonce and session key reuse
https://www.kb.cert.org/vuls/id/228519

やばいパスワード
破られにくくて忘れにくいパスワード、賢く使い分ける方法
http://itpro.nikkeibp.co.jp/atcl/column/17/092800400/101500003/?ST=security&itp_list_theme

[続報]東日本銀行のATM障害は夕方時点で継続中、「今日中の復旧目指す」
http://itpro.nikkeibp.co.jp/atcl/news/17/101602445/?ST=security&itp_list_theme

東日本銀行でシステム障害、窓口・ネットは回復もATMは依然使えず
http://itpro.nikkeibp.co.jp/atcl/news/17/101602441/?ST=security&itp_list_theme

JVNVU#91625548 AssetView および AssetView PLATINUM に複数の脆弱性
http://jvn.jp/vu/JVNVU91625548/

0 件のコメント:

コメントを投稿