2017年10月4日水曜日

4日 水曜日、仏滅










+ CESA-2017:2836 Critical CentOS 7 dnsmasq Security Update
https://lwn.net/Alerts/735342/

+ CESA-2017:2838 Critical CentOS 6 dnsmasq Security Update
https://lwn.net/Alerts/735343/

+ UPDATE: Cisco Integrated Management Controller Remote Code Execution Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170419-cimc3

+ UPDATE: Multiple Vulnerabilities in Apache Struts 2 Affecting Cisco Products: September 2017
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170907-struts2

+ UPDATE: Apache Struts 2 Remote Code Execution Vulnerability Affecting Multiple Cisco Products: September 2017
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170909-struts2-rce

+ UPDATE: Cisco Integrated Management Controller Privilege Escalation Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170419-cimc

+ OpenSSH 7.6 released
http://www.openssh.com/

+ JVNVU#93453933 Dnsmasq に複数の脆弱性
http://jvn.jp/vu/JVNVU93453933/

+ Linux Kernel 4-14-rc1 Denial Of Service
https://cxsecurity.com/issue/WLB-2017100037

+ Microsoft IIS UrlScan Module Bypass
https://cxsecurity.com/issue/WLB-2017100034

+ Tcpdump CVE-2017-12997 Denial of Service Vulnerability
http://www.securityfocus.com/bid/100914
CVE-2017-1541

サイバー レジリエンスに関するマイクロソフトの見解
https://blogs.technet.microsoft.com/jpsecurity/2017/10/04/microsoft-perspective-on-cyber-resilience/

米Yahoo!が起こした2013年の情報流出、全30億ユーザー分漏洩との調査結果
http://itpro.nikkeibp.co.jp/atcl/news/17/100402395/?ST=security&itp_list_theme

Java環境なしでマイナンバーカード利用可能に、内閣府がアドオン提供
http://itpro.nikkeibp.co.jp/atcl/news/17/100302391/?ST=security&itp_list_theme

総務省が「IoTセキュリティ総合対策」発表、認証マークや税制優遇に言及
http://itpro.nikkeibp.co.jp/atcl/news/17/100302386/?ST=security&itp_list_theme

0 件のコメント:

コメントを投稿