No Image

USN-3272-1: Ghostscript vulnerabilities

2017-04-28 KENNETH 0

USN-3272-1: Ghostscript vulnerabilities Ubuntu Security Notice USN-3272-1 28th April, 2017 ghostscript vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.04 Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary Several security issues were fixed in Ghostscript. Software description ghostscript – PostScript and PDF interpreter Details It was discovered that Ghostscript improperly handled parameters tothe rsdparams and eqproc commands. An attacker could use these tocraft a malicious document that could disable -dSAFER protections,thereby allowing the execution of arbitrary code, or cause a denialof service (application crash). (CVE-2017-8291) Kamil Frankowicz discovered a use-after-free vulnerability in thecolor management module of Ghostscript. An attacker could use thisto cause a denial of service (application crash). (CVE-2016-10217) Kamil Frankowicz discovered a divide-by-zero error in the scanconversion code in Ghostscript. An attacker could use this to causea denial of [ more… ]

No Image

USN-3271-1: Libxslt vulnerabilities

2017-04-28 KENNETH 0

USN-3271-1: Libxslt vulnerabilities Ubuntu Security Notice USN-3271-1 27th April, 2017 libxslt vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.04 Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary Several security issues were fixed in Libxslt. Software description libxslt – XSLT processing library Details Holger Fuhrmannek discovered an integer overflow in thexsltAddTextString() function in Libxslt. An attacker could usethis to craft a malicious document that, when opened, could cause adenial of service (application crash) or possible execute arbitrarycode. (CVE-2017-5029) Nicolas Gregoire discovered that Libxslt mishandled namespacenodes. An attacker could use this to craft a malicious document that,when opened, could cause a denial of service (application crash)or possibly execute arbtrary code. This issue only affected Ubuntu16.04 LTS, Ubuntu 14.04 LTS, and Ubuntu 12.04 LTS. (CVE-2016-1683) Sebastian Apelt discovered that a use-after-error existed in [ more… ]

[도서] Logic Pro X 10.3

2017-04-28 KENNETH 0

[도서] Logic Pro X 10.3 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Logic Pro X 10.3 윤준혁 저 | 위키북스 | 2017년 05월 판매가 31,500원 (10%할인) | YES포인트 1,750원(5%지급) 로직으로 음악을 하고자 하는 분들을 위한 가장 친절한 가이드! 이 책은 맥과 로직 및 장비의 선택부터 곡 작업과 마스터링까지 예제를 따라 하면서 익힐 수 있게 구성돼 있다. 또한 드러머와 미디 이펙트 엔진 Source: [도서] Logic Pro X 10.3

[도서] Programming in Scala 3/e

2017-04-28 KENNETH 0

[도서] Programming in Scala 3/e 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Programming in Scala 3/e 마틴 오더스키,렉스 스푼,빌 베너스 공저/오현석,이동욱,반영록 공역 | 에이콘출판사 | 2017년 05월 판매가 45,000원 (10%할인) | YES포인트 2,500원(5%지급) 스칼라는 여러 함수 언어적 기법과 객체지향 기법을 한데 잘 녹여서 루비나 파이썬 같은 동적 언어 못지않게 간결하면서 풍부한 표현력을 가진 언어다. 지난 몇 년간 빅데이터나 머신 러닝 등의 최첨단 분야에 널리 Source: [도서] Programming in Scala 3/e