2018年3月1日木曜日

1日 木曜日、友引

+ RHSA-2018:0378 Important: ruby security update
https://access.redhat.com/errata/RHSA-2018:0378
CVE-2017-0898
CVE-2017-0899
CVE-2017-0900
CVE-2017-0901
CVE-2017-0902
CVE-2017-0903
CVE-2017-10784
CVE-2017-14033
CVE-2017-14064
CVE-2017-17405
CVE-2017-17790

+ RHSA-2018:0377 Important: quagga security updat
https://access.redhat.com/errata/RHSA-2018:0377
CVE-2018-5379

+ CESA-2018:0350 Important CentOS 7 gcab Security Update
https://lwn.net/Articles/748243/

+ CESA-2018:0349 Important CentOS 7 java-1.7.0-openjdk Security Update
https://lwn.net/Articles/748245/

+ CESA-2018:0349 Important CentOS 6 java-1.7.0-openjdk Security Update
https://lwn.net/Articles/748244/

+ Linux kernel 4.15.7, 4.14.23, 4.9.85, 4.4.119, 3.18.97 released
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.15.7
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.23
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.85
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.119
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.18.97

+ NTP 4.2.8p11 released
https://www.eecis.udel.edu/~ntp/ntp_spool/ntp4/ChangeLog-stable

+ Apple iOS 11.2.5 / watchOS 4.2.2 / tvOS 11.2.5 - 'bluetoothd' Memory Corruption
https://cxsecurity.com/issue/WLB-2018020318
CVE-2018-4087

+ Microsoft Windows Windows 8.1/2012 R2 SMB Denial of Service
https://cxsecurity.com/issue/WLB-2018020307
CVE-2018-0833

AWS Certificate Manager (ACM) が Certificate Transparency (CT) をサポートするための準備
https://aws.amazon.com/jp/blogs/news/securityhow-to-get-ready-for-certificate-transparency/

【速報】AWS Partner Network (APN) Award 2017 受賞パートナーの発表
https://aws.amazon.com/jp/blogs/news/aws-apn-award-2017/

UPDATE: JVNVU#92438713 複数の TLS 実装において Bleichenbacher 攻撃対策が不十分である問題
https://jvn.jp/vu/JVNVU92438713/

東芝のメールサーバーに不正アクセス、グループ100人のメール流出の可能性
http://tech.nikkeibp.co.jp/atcl/nxt/news/18/00284/?ST=nxt_thmit_security

0 件のコメント:

コメントを投稿