2018年5月17日木曜日

17日 木曜日、赤口

+ Mozilla Firefox 60.0.1 released
https://www.mozilla.org/en-US/firefox/60.0.1/releasenotes/

+ CESA-2018:1454 Critical CentOS 6 dhcp Security Update
https://lwn.net/Articles/754603/

+ CESA-2018:1453 Critical CentOS 7 dhcp Security Update
https://lwn.net/Articles/754602/

+ Cisco Digital Network Architecture Center Static Credentials Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-dnac
CVE-2018-0222

+ Cisco Digital Network Architecture Center Authentication Bypass Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-dna2
CVE-2018-0271

+ Cisco Digital Network Architecture Center Unauthorized Access Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-dna
CVE-2018-0268

+ Cisco Enterprise NFV Infrastructure Software Linux Shell Access Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-nfvis
CVE-2018-0279

+ Cisco Meeting Server Media Services Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-msms
CVE-2018-0280

+ Cisco Identity Services Engine EAP TLS Certificate Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-iseeap
CVE-2018-0277

+ Cisco IoT Field Network Director Cross-Site Request Forgery Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-fnd
CVE-2018-0270

+ Cisco Enterprise NFV Infrastructure Software Web Management Interface Path Traversal Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-nfvis-path-traversal
CVE-2018-0323

+ Cisco Enterprise NFV Infrastructure Software CLI Command Injection Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-nfvis-cli-command-injection
CVE-2018-0324

+ Cisco TelePresence Server Cross-Frame Scripting Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-telepres-xfs
CVE-2018-0326

+ Cisco SocialMiner Notification System Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-socmin-dos
CVE-2018-0290

+ Cisco Identity Services Engine Logs Cross-Site Scripting Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-ise-xss
CVE-2018-0289

+ Cisco IP Phone 7800 Series and 8800 Series Denial of Service Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-ip-phone-dos
CVE-2018-0325

+ Cisco Identity Services Engine Cross-Site Scripting Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-ident-se-xss
CVE-2018-0327

+ Cisco Firepower Threat Defense Software Policy Bypass Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-firepwr-pb
CVE-2018-0297

+ Cisco Unified Communications Manager and Cisco Unified Presence Cross-Site Scripting Vulnerability
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180516-cucm-cup-xss
CVE-2018-0328

+ Linux kernel 4.16.9, 4.14.41, 4.9.100, 4.4.132, 3.18.109 released
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.16.9
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.41
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.100
https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.132
https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.18.109

Amazon RDS for PostgreSQL バージョン: 9.3.x リタイアメントのお知らせ
https://aws.amazon.com/jp/blogs/news/amazon-rds-for-postgresql-93x-retirement/

NEW!! AWS Launch 動画が始まりました
https://aws.amazon.com/jp/blogs/news/aws-launch-jp-20180516/

オンプレミスの AWS Elemental Live から クラウド上の AWS Media Services への接続
https://aws.amazon.com/jp/blogs/news/connecting-aws-elemental-live-on-premises-to-aws-media-services-in-the-cloud/

狙われるニッポン 先端技術で守れ
テロ対策の死角、海からの不審者侵入を防ぐ最新センサー
http://tech.nikkeibp.co.jp/atcl/nxt/column/18/00233/00019/?ST=nxt_thmit_security

カスペルスキー、データセンターや顧客データをスイスに移転
http://tech.nikkeibp.co.jp/atcl/nxt/news/18/01256/?ST=nxt_thmit_security

メール狙うサイバー攻撃演習を手軽に、ソフォスが「Phish Threat」日本語版を提供開始
http://tech.nikkeibp.co.jp/atcl/nxt/news/18/01253/?ST=nxt_thmit_security

IoT普及促進税制など、総務省がセキュリティ政策を説明
http://tech.nikkeibp.co.jp/atcl/nxt/news/18/01252/?ST=nxt_thmit_security

ニュース解説
カドカワ川上量生社長が語る、サイトブロッキングの必要性
http://tech.nikkeibp.co.jp/atcl/nxt/column/18/00001/00469/?ST=nxt_thmit_security

0 件のコメント:

コメントを投稿