2023年5月17日水曜日

17日 水曜日、赤口

+ RHSA-2023:3109 Important: apr-util security update
https://access.redhat.com/errata/RHSA-2023:3109
CVE-2022-25147

+ RHSA-2023:3108 Important: webkit2gtk3 security update
https://access.redhat.com/errata/RHSA-2023:3108
CVE-2023-2203

+ RHSA-2023:3107 Important: libreswan security update
https://access.redhat.com/errata/RHSA-2023:3107
CVE-2023-2295

+ RHSA-2023:3083 Moderate: go-toolset:rhel8 security and bug fix update
https://access.redhat.com/errata/RHSA-2023:3083
CVE-2022-41724
CVE-2022-41725

+ RHSA-2023:2898 Moderate: libtar security update
https://access.redhat.com/errata/RHSA-2023:2898
CVE-2021-33643
CVE-2021-33644
CVE-2021-33645
CVE-2021-33646

+ RHSA-2023:2893 Moderate: python-mako security update
https://access.redhat.com/errata/RHSA-2023:2893
CVE-2022-40023

+ RHSA-2023:2863 Moderate: ctags security update
https://access.redhat.com/errata/RHSA-2023:2863
CVE-2022-4515

+ RHSA-2023:2860 Moderate: python27:2.7 security update
https://access.redhat.com/errata/RHSA-2023:2860
CVE-2022-45061

+ RHSA-2023:2859 Moderate: git security and bug fix update
https://access.redhat.com/errata/RHSA-2023:2859
CVE-2022-24765
CVE-2022-29187
CVE-2022-39253
CVE-2022-39260

+ RHSA-2023:2810 Moderate: poppler security update
https://access.redhat.com/errata/RHSA-2023:2810
CVE-2022-38784

+ RHSA-2023:2802 Moderate: container-tools:4.0 security and bug fix update
https://access.redhat.com/errata/RHSA-2023:2802
CVE-2022-1705
CVE-2022-1962
CVE-2022-2989
CVE-2022-27664
CVE-2022-28131
CVE-2022-30630
CVE-2022-30631
CVE-2022-30632
CVE-2022-30633
CVE-2022-30635
CVE-2022-32148
CVE-2022-32189
CVE-2022-41717
CVE-2023-0778

+ RHSA-2023:2800 Moderate: sysstat security and bug fix update
https://access.redhat.com/errata/RHSA-2023:2800
CVE-2022-39377

+ RHSA-2023:2792 Moderate: bind9.16 security and bug fix update
https://access.redhat.com/errata/RHSA-2023:2792
CVE-2022-2795
CVE-2022-3094
CVE-2022-3736
CVE-2022-3924

+ RHSA-2023:2786 Moderate: wayland security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2023:2786
CVE-2021-3782

+ RHSA-2023:2785 Moderate: grafana-pcp security update
https://access.redhat.com/errata/RHSA-2023:2785
CVE-2022-27664

+ RHSA-2023:2784 Moderate: grafana security update
https://access.redhat.com/errata/RHSA-2023:2784
CVE-2022-2880
CVE-2022-27664
CVE-2022-39229
CVE-2022-41715

+ RHSA-2023:2780 Moderate: Image Builder security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2023:2780
CVE-2022-2879
CVE-2022-2880
CVE-2022-27664
CVE-2022-41715
CVE-2022-41717

+ RHSA-2023:2763 Moderate: python38:3.8 and python38-devel:3.8 security update
https://access.redhat.com/errata/RHSA-2023:2763
CVE-2020-10735
CVE-2021-28861
CVE-2022-45061

+ RHSA-2023:2758 Moderate: container-tools:rhel8 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2023:2758
CVE-2022-1705
CVE-2022-1962
CVE-2022-27664
CVE-2022-28131
CVE-2022-30629
CVE-2022-30630
CVE-2022-30631
CVE-2022-30632
CVE-2022-30633
CVE-2022-30635
CVE-2022-32148
CVE-2022-32189
CVE-2022-41717
CVE-2023-0778

+ RHSA-2023:2757 Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2023:2757
CVE-2021-46790
CVE-2022-3165
CVE-2022-30784
CVE-2022-30786
CVE-2022-30788
CVE-2022-30789
CVE-2023-1018

+ Google Chrome 113.0.5672.126, 112.0.5615.204 released
https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_16.html
https://chromereleases.googleblog.com/2023/05/extended-stable-channel-update-for_16.html

ITセキュリティー対策最前線
DevSecOpsを成功に導く ツールだけではないポイント
https://xtech.nikkei.com/atcl/nxt/mag/nc/18/012300337/051500005/?ST=nxt_thmit_security

勝村幸博の「今日も誰かが狙われる」
ダークウェブの闇市場でもChatGPT祭り、怪しすぎる「生涯アカウント」まで販売
https://xtech.nikkei.com/atcl/nxt/column/18/00676/051200133/?ST=nxt_thmit_security

ニュース解説
オープンハウスがセキュリティー対策強化、XDRやSWGによる多層防御を目指す
https://xtech.nikkei.com/atcl/nxt/column/18/00001/08020/?ST=nxt_thmit_security

さいたま市と熊本市のコンビニ交付でも誤発行、富士通Japan製システムで計7自治体に
https://xtech.nikkei.com/atcl/nxt/news/18/15207/?ST=nxt_thmit_security

UPDATE: JVN#76257155 ウイルスバスター クラウドにおける DLL 読み込みに関する脆弱性
http://jvn.jp/jp/JVN76257155/index.html

JVNVU#98968780 因幡電機産業製Wi-Fi AP UNITにおけるOSコマンドインジェクションの脆弱性
http://jvn.jp/vu/JVNVU98968780/index.html

0 件のコメント:

コメントを投稿