No Image

USN-3499-1: Exim vulnerability

2017-11-30 KENNETH 0

USN-3499-1: Exim vulnerability Ubuntu Security Notice USN-3499-1 29th November, 2017 exim4 vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 17.04 Summary Exim could be made to crash if it received specially crafted network traffic. Software description exim4 – Exim is a mail transport agent Details It was discovered that Exim incorrectly handled certain BDAT data headers.A remote attacker could possibly use this issue to cause Exim to crash,resulting in a denial of service. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.10: exim4-daemon-heavy 4.89-5ubuntu1.2 exim4-daemon-light 4.89-5ubuntu1.2 Ubuntu 17.04: exim4-daemon-heavy 4.88-5ubuntu1.3 exim4-daemon-light 4.88-5ubuntu1.3 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2017-16944 Source: USN-3499-1: Exim vulnerability

No Image

USN-3500-1: libXfont vulnerability

2017-11-30 KENNETH 0

USN-3500-1: libXfont vulnerability Ubuntu Security Notice USN-3500-1 29th November, 2017 libxfont, libxfont1, libxfont2 vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 17.04 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary libXfont could be made to access arbitrary files, including special device files. Software description libxfont – X11 font rasterisation library libxfont1 – X11 font rasterisation library libxfont2 – X11 font rasterisation library Details It was discovered that libXfont incorrectly followed symlinks when openingfont files. A local unprivileged user could use this issue to cause the Xserver to access arbitrary files, including special device files. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.10: libxfont1 1:1.5.2-4ubuntu1.1 libxfont2 1:2.0.1-3ubuntu1.1 Ubuntu 17.04: libxfont1 1:1.5.2-4ubuntu0.2 libxfont2 1:2.0.1-3ubuntu0.2 Ubuntu 16.04 LTS: libxfont1 1:1.5.1-1ubuntu0.16.04.4 libxfont2 1:2.0.1-3~ubuntu16.04.3 Ubuntu 14.04 LTS: libxfont1 1:1.4.7-1ubuntu0.4 [ more… ]

No Image

USN-3501-1: libxcursor vulnerability

2017-11-30 KENNETH 0

USN-3501-1: libxcursor vulnerability Ubuntu Security Notice USN-3501-1 29th November, 2017 libxcursor vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 17.04 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary libxcursor could be made to crash or run programs if it opened a specially crafted file. Software description libxcursor – X11 cursor management library Details It was discovered that libxcursor incorrectly handled certain files. Anattacker could use these issues to cause libxcursor to crash, resulting ina denial of service, or possibly execute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.10: libxcursor1 1:1.1.14-3ubuntu0.1 Ubuntu 17.04: libxcursor1 1:1.1.14-1ubuntu0.17.04.1 Ubuntu 16.04 LTS: libxcursor1 1:1.1.14-1ubuntu0.16.04.1 Ubuntu 14.04 LTS: libxcursor1 1:1.1.14-1ubuntu0.14.04.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to reboot [ more… ]

AWS re:Invent 2017 – Andy Jassy 기조 연설 및 주요 신규 서비스 발표 소식

2017-11-30 KENNETH 0

AWS re:Invent 2017 – Andy Jassy 기조 연설 및 주요 신규 서비스 발표 소식 안녕하세요. 세계 최대의 클라우드 컴퓨팅 기술 행사가 열리는 라스베가스 현지에서 생생한 소식을 전해 드리고 있습니다. 이 글에서는 본 행사의 가장 하이라이트가 되는 AWS CEO인 앤디 제시(Andy Jassy)의 첫날 기조 연설과 신규 서비스 소식에 대해 요약해 드리고자 합니다. 전 세계 4만 3천명이 참가한 이번 2017 행사는 역대 최대 규모로 6만여명의 생중계 등록자와 함께 1,300개 이상의 세션 및 네트워킹 및 전시 등으로 클라우드 컴퓨팅에 대해 배우고 공유하는 행사입니다. AWS에는 전 세계 수백 만의 활성 고객이 있으며, 스타트업 부터 대기업, 파트너사까지 클라우드 생태계의 중요한 리더가 되었습니다. 가트너에 따르면 AWS는 전체 클라우드 시장의 44.1%로 나머지 9개의 서비스 공급자를 합친 것 보다 2배가 많습니다. 이러한 시장 선도는 고객의 목소리를 듣고 매년 1천여개 이상의 신규 서비스와 기능을 출시하는 개발 접근 방법 그리고 보다 많은 클라우드 빌딩 블록을 제공함으로서 고객의 자유를 높이고 있기 [ more… ]

No Image

RHBA-2017:3283-1: openstack-cinder bug fix advisory

2017-11-30 KENNETH 0

RHBA-2017:3283-1: openstack-cinder bug fix advisory Red Hat Enterprise Linux: Updated OpenStack Block Storage packages that resolve various issues are now available for Red Hat OpenStack Platform 8.0 (Liberty) for RHEL 7. Source: RHBA-2017:3283-1: openstack-cinder bug fix advisory