2026年8月7日金曜日

7日 金曜日、赤口

+ RHSA-2026:51105 Important: LibRaw security update
https://access.redhat.com/errata/RHSA-2026:51105
CVE-2026-51235

+ RHSA-2026:51035 Moderate: kernel security, bug fix, and enhancement update
https://access.redhat.com/errata/RHSA-2026:51035
CVE-2026-23415
CVE-2026-43450

+ About the security content of macOS Tahoe 26.6.1
https://support.apple.com/en-us/148170
CVE-2026-65400

+ About the security content of macOS Sequoia 15.7.9
https://support.apple.com/en-us/148171

+ About the security content of macOS Sonoma 14.8.9
https://support.apple.com/en-us/148172

+ Google Chrome 151.0.7922.108/.109, 150.0.7871.224 released
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_01193673229.html
https://chromereleases.googleblog.com/2026/08/extended-stable-update-for-desktop.html

+ OpenLDAP 2.7.0, 2.6.14 released
https://www.openldap.org/software/release/changes.html
https://www.openldap.org/software/release/changes_lts.html

+ JVNVU#92139835 OpenSSLのOCSPレスポンス検証におけるクライアント側のメモリリークの脆弱性(CVE-2026-54876)
https://jvn.jp/vu/JVNVU92139835/index.html
CVE-2026-54876

VU#487613 Alinto SOGo v5.12.7 vulnerable to cross-site scripting via malformed ICS calendar invitations
https://www.kb.cert.org/vuls/id/487613

ダークサイドAI 第5回
企業AIの「闇落ち」を防げ、擬似的な攻撃でシステムの弱点をあぶり出す
https://xtech.nikkei.com/atcl/nxt/column/18/03673/072700006/?ST=singleview

ニュース解説
Mythosが実在の開発者攻撃 なりすましでマルウエア混入図り、発覚後は弁明
https://xtech.nikkei.com/atcl/nxt/column/18/00001/11952/?ST=nxt_thmit_security

JVNVU#92842469 CISA ICS Advisory / ICS Medical Advisory(2026年08月06日)
https://jvn.jp/vu/JVNVU92842469/index.html

JVNVU#96816564 Alinto SOGo v5.12.7における不正な形式のICSカレンダー招待を介したクロスサイトスクリプティングの脆弱性
https://jvn.jp/vu/JVNVU96816564/index.html

0 件のコメント:

コメントを投稿