2025年2月21日金曜日

21日 金曜日、赤口

+ Elevated API Errors
https://jira-service-management.status.atlassian.com/incidents/c474nxfp8xlv

+ RHSA-2025:1740 Important: postgresql:16 security update
https://access.redhat.com/errata/RHSA-2025:1740
CVE-2025-1094

+ RHSA-2025:1739 Important: postgresql:15 security update
https://access.redhat.com/errata/RHSA-2025:1739
CVE-2025-1094

+ RHSA-2025:1737 Important: libpq security update
https://access.redhat.com/errata/RHSA-2025:1737
CVE-2025-1094

+ RHSA-2025:1736 Important: postgresql:13 security update
https://access.redhat.com/errata/RHSA-2025:1736
CVE-2025-1094

+ RHSA-2025:1676 Important: bind9.16 security update
https://access.redhat.com/errata/RHSA-2025:1676
CVE-2024-11187

+ RHSA-2025:1675 Important: bind security update
https://access.redhat.com/errata/RHSA-2025:1675
CVE-2024-11187

+ RHSA-2025:1673 Important: mysql:8.0 security update
https://access.redhat.com/errata/RHSA-2025:1673
CVE-2024-5535
CVE-2024-7264
CVE-2024-11053
CVE-2024-21193
CVE-2024-21194
CVE-2024-21196
CVE-2024-21197
CVE-2024-21198
CVE-2024-21199
CVE-2024-21201
CVE-2024-21203
CVE-2024-21212
CVE-2024-21213
CVE-2024-21218
CVE-2024-21219
CVE-2024-21230
CVE-2024-21231
CVE-2024-21236
CVE-2024-21237
CVE-2024-21238
CVE-2024-21239
CVE-2024-21241
CVE-2024-21247
CVE-2024-37371
CVE-2025-21490
CVE-2025-21491
CVE-2025-21494
CVE-2025-21497
CVE-2025-21500
CVE-2025-21501
CVE-2025-21503
CVE-2025-21504
CVE-2025-21505
CVE-2025-21518
CVE-2025-21519
CVE-2025-21520
CVE-2025-21521
CVE-2025-21522
CVE-2025-21523
CVE-2025-21525
CVE-2025-21529
CVE-2025-21531
CVE-2025-21534
CVE-2025-21536
CVE-2025-21540
CVE-2025-21543
CVE-2025-21546
CVE-2025-21555
CVE-2025-21559

+ RHSA-2025:1743 Important: postgresql:16 security update
https://access.redhat.com/errata/RHSA-2025:1743
CVE-2025-1094

+ RHSA-2025:1742 Important: postgresql security update
https://access.redhat.com/errata/RHSA-2025:1742
CVE-2025-1094

+ RHSA-2025:1741 Important: postgresql:15 security update
https://access.redhat.com/errata/RHSA-2025:1741
CVE-2025-1094

+ RHSA-2025:1738 Important: libpq security update
https://access.redhat.com/errata/RHSA-2025:1738
CVE-2025-1094

+ RHSA-2025:1681 Important: bind security update
https://access.redhat.com/errata/RHSA-2025:1681
CVE-2024-11187

+ RHSA-2025:1671 Important: mysql security update
https://access.redhat.com/errata/RHSA-2025:1671
CVE-2024-5535
CVE-2024-7264
CVE-2024-11053
CVE-2024-21193
CVE-2024-21194
CVE-2024-21196
CVE-2024-21197
CVE-2024-21198
CVE-2024-21199
CVE-2024-21201
CVE-2024-21203
CVE-2024-21212
CVE-2024-21213
CVE-2024-21218
CVE-2024-21219
CVE-2024-21230
CVE-2024-21231
CVE-2024-21236
CVE-2024-21237
CVE-2024-21238
CVE-2024-21239
CVE-2024-21241
CVE-2024-21247
CVE-2024-37371
CVE-2025-21490
CVE-2025-21491
CVE-2025-21494
CVE-2025-21497
CVE-2025-21500
CVE-2025-21501
CVE-2025-21503
CVE-2025-21504
CVE-2025-21505
CVE-2025-21518
CVE-2025-21519
CVE-2025-21520
CVE-2025-21521
CVE-2025-21522
CVE-2025-21523
CVE-2025-21525
CVE-2025-21529
CVE-2025-21531
CVE-2025-21534
CVE-2025-21536
CVE-2025-21540
CVE-2025-21543
CVE-2025-21546
CVE-2025-21555
CVE-2025-21559

+ RHSA-2025:1670 Important: bind9.18 security update
https://access.redhat.com/errata/RHSA-2025:1670
CVE-2024-11187
CVE-2024-12705

+ RHSA-2025:1659 Moderate: kernel security update
https://access.redhat.com/errata/RHSA-2025:1659
CVE-2023-52490

+ ISC BIND 9.20.6, 9.18.34 released
https://downloads.isc.org/isc/bind9/9.20.6/doc/arm/html/notes.html
https://downloads.isc.org/isc/bind9/9.18.34/doc/arm/html/notes.html

+ PostgreSQL 17.4, 16.8, 15.12, 14.17, and 13.20 Released!
https://www.postgresql.org/about/news/postgresql-174-168-1512-1417-and-1320-released-3018/
https://www.postgresql.org/docs/17/release-17-4.html
https://www.postgresql.org/docs/16/release-16-8.html
https://www.postgresql.org/docs/15/release-15-12.html
https://www.postgresql.org/docs/14/release-14-17.html
https://www.postgresql.org/docs/13/release-13-20.html

+ Zabbix SQL Multiple Vulns
https://cxsecurity.com/issue/WLB-2025020012
CVE-2024-42327

JVN#15293958 アイ・オー・データ製ルーターUD-LT2における複数の脆弱性
https://jvn.jp/jp/JVN15293958/index.html

JVNVU#92054409 三菱電機製数値制御装置における数値の入力に対する不適切な検証
https://jvn.jp/vu/JVNVU92054409/index.html

JVNVU#95085876 複数のRockwell Automation製品における例外的な状態に対する不適切な処理の脆弱性
https://jvn.jp/vu/JVNVU95085876/index.html

JVNVU#94497573 Delta Electronics製CNCSoft-G2における複数の脆弱性
https://jvn.jp/vu/JVNVU94497573/index.html

JVN#91300609 RevoWorks SCVXおよびRevoWorks Browserにおけるファイル検証不備の脆弱性
https://jvn.jp/jp/JVN91300609/index.html

JVN#48742353 Movable Typeにおける複数のクロスサイトスクリプティングの脆弱性
https://jvn.jp/jp/JVN48742353/index.html

936社調査で分かったDX成功・失敗と生成AI導入の実態
第4回
データドリブン経営の実態、企業の4割が前向きも「実践」はわずか1割
https://xtech.nikkei.com/atcl/nxt/column/18/03066/021000004/?ST=nxt_thmit_security

0 件のコメント:

コメントを投稿