+ Gpg4win 5.1.0 released
https://www.gpg4win.org/change-history.html
+ RHSA-2026:48225 Important: perl:5.32 security update
https://access.redhat.com/errata/RHSA-2026:48225
CVE-2026-9538
+ RHSA-2026:47998 Important: kpatch-patch security update
https://access.redhat.com/errata/RHSA-2026:47998
CVE-2026-64600
+ RHSA-2026:47750 Low: php:7.4 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:47750
CVE-2026-14355
+ RHSA-2026:47749 Low: php:8.2 security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:47749
CVE-2026-14355
+ RHSA-2026:47731 Important: gstreamer1-plugins-bad-free security update
https://access.redhat.com/errata/RHSA-2026:47731
CVE-2026-59691
CVE-2026-59692
+ RHSA-2026:47981 Important: kpatch-patch security update
https://access.redhat.com/errata/RHSA-2026:47981
CVE-2026-64600
+ Google Chrome 151.0.7922.71/.72 released
https://chromereleases.googleblog.com/2026/07/stable-channel-update-for-desktop_0887107924.html
+ Zabbix 7.4.13 released
https://www.zabbix.com/rn/rn7.4.13
+ FreeBSD-SA-26:55.elf Race condition in ELF core dump segment counting
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:55.elf.asc
CVE-2026-58088
+ FreeBSD-SA-26:54.sysvsem Heap out-of-bounds access in semctl(2)
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:54.sysvsem.asc
CVE-2026-58087
+ FreeBSD-SA-26:53.ktrace ktrace(2) privilege incorrectly validated in jails
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:53.ktrace.asc
CVE-2026-58086
+ FreeBSD-SA-26:52.if_wg Missing MAC validation in wg(4) packet decryption
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:52.if_wg.asc
CVE-2026-58085
+ FreeBSD-SA-26:51.ktimer Kernel stack disclosure via timer_settime(2)
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:51.ktimer.asc
CVE-2026-58084
+ FreeBSD-SA-26:50.kqueue Use-after-free in kqueue copy-on-fork
https://www.freebsd.org/security/advisories/FreeBSD-SA-26:50.kqueue.asc
CVE-2026-58083
+ JVNVU#99139115 Apache TomcatのWebSocket chatサンプルにおけるサービス運用妨害(DoS)の脆弱性(2026年7月28日)
https://jvn.jp/vu/JVNVU99139115/index.html
CVE-2026-66299
VU#293714 Arbitrary File Overwrite in Develar app-builder (zipx.Unzip) via Symlink Following on macOS (APFS)
https://www.kb.cert.org/vuls/id/293714
VU#305509 OPeNDAP Hyrax is vulnerable to SSRF and Credential Disclosure
https://www.kb.cert.org/vuls/id/305509
変貌するCDN 第4回
CDNを使うにはDNSから設定する、キャッシュからの情報流出に要注意
https://xtech.nikkei.com/atcl/nxt/column/18/03697/072200004/?ST=nxt_thmit_security
どうするSCS評価制度
経産省などが注意喚起、SCS評価制度の開始前に起きた不適切な勧誘
https://xtech.nikkei.com/atcl/nxt/column/18/03702/072800002/?ST=nxt_thmit_security
ニュース解説
AI攻撃にAIで対抗、Microsoftが新システム サイバー防御の独自モデルも
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11930/?ST=nxt_thmit_security
JVN#99975039 てがろぐ -Fumy Otegaru Memo Logger-における制限が不十分な正規表現を使用している脆弱性
https://jvn.jp/jp/JVN99975039/index.html
0 件のコメント:
コメントを投稿