2017年10月24日火曜日

24日 火曜日、先勝

+ CESA-2017:2998 Critical CentOS 6 java-1.8.0-openjdk Security Update
https://lwn.net/Alerts/737176/

+ CESA-2017:2972 Moderate CentOS 6 httpd Security Update
https://lwn.net/Alerts/737175/

+ CESA-2017:2998 Critical CentOS 7 java-1.8.0-openjdk Security Update
https://lwn.net/Alerts/737177/

+ phpMyAdmin 4.7.5 is released
https://www.phpmyadmin.net/news/2017/10/23/phpmyadmin-475-released/

+ UPDATE: Multiple Vulnerabilities in Apache Struts 2 Affecting Cisco Products: September 2017
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170907-struts2

+ UPDATE: Apache Struts 2 Remote Code Execution Vulnerability Affecting Multiple Cisco Products: September 2017
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170909-struts2-rce

+ UPDATE: Multiple Vulnerabilities in Wi-Fi Protected Access and Wi-Fi Protected Access II
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171016-wpa

+ UPDATE: Cisco NX-OS Software TCP Netstack Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160302-netstack

+ Cisco Spark Hybrid Calendar Service Information Disclosure Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171023-spark
CVE-2017-12310

+ curl 7.56.1 released
https://curl.haxx.se/changes.html#7_56_1

+ Apache HTTP Server 2.4.29 Released
http://www.apache.org/dist/httpd/Announcement2.4.html
http://www.apache.org/dist/httpd/CHANGES_2.4.29

+ UPDATE: JVNVU#90609033 Wi-Fi Protected Access II (WPA2) ハンドシェイクにおいて Nonce およびセッション鍵が再利用される問題
http://jvn.jp/vu/JVNVU90609033/index.html

+ cURL/libcURL CVE-2017-1000257 Buffer Overflow Vulnerability
http://www.securityfocus.com/bid/101519
CVE-2017-1000257

+ GNU glibc CVE-2017-15671 Local Denial of Service Vulnerability
http://www.securityfocus.com/bid/101517
CVE-2017-15671

0 件のコメント:

コメントを投稿