2023年3月24日金曜日

24日 金曜日、仏滅

+ CVE-2023-27538: SSH connection too eager reuse still
https://curl.se/docs/CVE-2023-27538.html

+ CVE-2023-27537: HSTS double-free
https://curl.se/docs/CVE-2023-27537.html

+ CVE-2023-27536: GSS delegation too eager connection re-use
https://curl.se/docs/CVE-2023-27536.html

+ CVE-2023-27535: FTP too eager connection reuse
https://curl.se/docs/CVE-2023-27535.html

+ CVE-2023-27534: SFTP path ~ resolving discrepancy
https://curl.se/docs/CVE-2023-27534.html

+ CVE-2023-27533: TELNET option IAC injection
https://curl.se/docs/CVE-2023-27533.html

+ ■Windows DNSサーバーの脆弱性情報が公開されました(CVE-2023-23400)
https://jprs.jp/tech/security/2023-03-17-windowsdns.html

+ RHSA-2023:1407 Important: thunderbird security update
https://access.redhat.com/errata/RHSA-2023:1407

+ RHSA-2023:1403 Important: thunderbird security update
https://access.redhat.com/errata/RHSA-2023:1403

+ RHSA-2023:1336 Important: firefox security update
https://access.redhat.com/errata/RHSA-2023:1336

+ Mozilla Firefox 111.0.1 released
https://www.mozilla.org/en-US/firefox/111.0.1/releasenotes/

+ CESA-2023:1333 Important CentOS 7 firefox Security Update
https://lwn.net/Articles/926942/

+ CESA-2023:1332 Important CentOS 7 nss Security Update
https://lwn.net/Articles/926943/

+ CESA-2023:1335 Important CentOS 7 openssl Security Update
https://lwn.net/Articles/926944/

+ ClamAV EOL of 0.104.x versions
https://blog.clamav.net/2023/03/clamav-eol-of-0104x-versions.html

+ Excessive Resource Usage Verifying X.509 Policy Constraints (CVE-2023-0464)
https://www.openssl.org/news/secadv/20230322.txt

+ JVNVU#90635957 Apache Tomcatにおける保護されていない認証情報の送信の脆弱性
http://jvn.jp/vu/JVNVU90635957/index.html

+ JVNVU#94632906 OpenSSLのX.509ポリシー制限の検証における過剰なリソース消費の問題
http://jvn.jp/vu/JVNVU94632906/index.html

+ Linux Kernelの脆弱性(Important: CVE-2023-0386)
https://security.sios.jp/vulnerability/kernel-security-vulnerability-20230323/

+ OpenSSLの脆弱性情報(Low: CVE-2023-0464)
https://security.sios.jp/vulnerability/openssl-security-vulnerability-20230323/

+ Apache Tomcatの脆弱性(Important: CVE-2023-28708)
https://security.sios.jp/vulnerability/tomcat-security-vulnerability-20230323/

0 件のコメント:

コメントを投稿