2020年12月17日木曜日

17日 木曜日、先勝

+ RHSA-2020:5586 Moderate: java-1.7.1-ibm security update
https://access.redhat.com/errata/RHSA-2020:5586
CVE-2020-14779
CVE-2020-14781
CVE-2020-14782
CVE-2020-14796
CVE-2020-14797

+ RHSA-2020:5561 Important: firefox security update
https://access.redhat.com/errata/RHSA-2020:5561
CVE-2020-16042
CVE-2020-26971
CVE-2020-26973
CVE-2020-26974
CVE-2020-26978
CVE-2020-35111
CVE-2020-35113

+ RHSA-2020:5443 Moderate: gd security update
https://access.redhat.com/errata/RHSA-2020:5443
CVE-2016-5766

+ RHSA-2020:5439 Moderate: samba security and bug fix update
https://access.redhat.com/errata/RHSA-2020:5439
CVE-2020-1472
CVE-2020-14318
CVE-2020-14323

+ RHSA-2020:5437 Important: kernel security and bug fix update
https://access.redhat.com/errata/RHSA-2020:5437
CVE-2019-18282
CVE-2020-10769
CVE-2020-14314
CVE-2020-14385
CVE-2020-24394
CVE-2020-25212
CVE-2020-25643

+ RHSA-2020:5435 Moderate: python-rtslib security update
https://access.redhat.com/errata/RHSA-2020:5435
CVE-2020-14019

+ RHSA-2020:5434 Moderate: targetcli security update
https://access.redhat.com/errata/RHSA-2020:5434
CVE-2020-13867

+ RHSA-2020:5567 Important: postgresql:10 security update
https://access.redhat.com/errata/RHSA-2020:5567
CVE-2020-25694
CVE-2020-25695
CVE-2020-25696

+ RHSA-2020:5562 Important: firefox security update
https://access.redhat.com/errata/RHSA-2020:5562
CVE-2020-16042
CVE-2020-26971
CVE-2020-26973
CVE-2020-26974
CVE-2020-26978
CVE-2020-35111
CVE-2020-35113

+ Announcing transition of Red Hat Enterprise Linux 6 to extended life phase
https://access.redhat.com/announcements/5620181

+ ISC BIND 9.17.8, 9.16.10, 9.11.26 relesed
https://downloads.isc.org/isc/bind9/9.17.8/doc/arm/html/notes.html
https://downloads.isc.org/isc/bind9/9.16.10/doc/arm/html/notes.html
https://downloads.isc.org/isc/bind9/9.11.26/RELEASE-NOTES-bind-9.11.26.html

+ Linux kernel 5.9.15, 5.4.84 released
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.9.15
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.84

+ UPDATE: JVNVU#95288122 複数の Apple 製品における脆弱性に対するアップデート
http://jvn.jp/vu/JVNVU95288122/index.html

+ Microsoft Windows DrawIconEx Local Privilege Escalation
https://cxsecurity.com/issue/WLB-2020120117
CVE-2020-1054

UPDATE: JVNVU#99899290 WAGO 製の 750-88x および 750-352 シリーズにリソース枯渇の脆弱性
http://jvn.jp/vu/JVNVU99899290/index.html

敵のわなに飛び込み攻撃を遮断、bitFlyerが「積極的防御」で成果
https://xtech.nikkei.com/atcl/nxt/column/18/00001/04977/?ST=nxt_thmit_security

0 件のコメント:

コメントを投稿