No Image

USN-3605-1: Sharutils vulnerability

2018-03-23 KENNETH 0

USN-3605-1: Sharutils vulnerability sharutils vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Sharutils could be made to execute arbitrary code if it opened a specially crafted file. Software Description sharutils – shar, unshar, uuencode, uudecode Details It was discovered that Sharutils incorrectly handled certain files. An attacker could possibly use this to execute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 17.10 sharutils – 1:4.15.2-2ubuntu0.1 Ubuntu 16.04 LTS sharutils – 1:4.15.2-1ubuntu0.1 Ubuntu 14.04 LTS sharutils – 1:4.14-1ubuntu1.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2018-1000097 Source: USN-3605-1: Sharutils vulnerability

No Image

USN-3604-1: libvorbis vulnerability

2018-03-22 KENNETH 0

USN-3604-1: libvorbis vulnerability libvorbis vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary libvorbis could be made to crash or run programs as your login if it opened a specially crafted file. Software Description libvorbis – The Vorbis General Audio Compression Codec Details Richard Zhu discovered that libvorbis incorrectly handled certain sound files. An attacker could use this to cause libvorbis to crash, resulting in a denial or service, or possibly execute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 17.10 libvorbis0a – 1.3.5-4ubuntu0.2 Ubuntu 16.04 LTS libvorbis0a – 1.3.5-3ubuntu0.2 Ubuntu 14.04 LTS libvorbis0a – 1.3.2-1.3ubuntu1.2 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system upgrade you need to restart any applications that [ more… ]

Using NGINX as an Ingress Controller for IBM Cloud Private

2018-03-22 KENNETH 0

Using NGINX as an Ingress Controller for IBM Cloud Private IBM Cloud Private was launched on March 20th at IBM Think 2018. Today’s enterprises, from global retailers to banks and airlines, have a mandate to modernize their traditional applications and infrastructure. They’re looking for new platforms and tools, development approaches, and IT providers to help them achieve the agility that web‑scale companies such as Google, Facebook, and Netflix have always provided. IBM Cloud Private (ICP) is a platform for developing modern applications based on microservices architectures behind the enterprise’s firewall, and fits the enterprise’s need for compliance, security, support, and services. ICP is an integrated environment for managing containers which includes Kubernetes as the container orchestrator, a private image repository, a management console, and monitoring frameworks. Because the platform is built around Kubernetes, you can leverage the NGINX Plus Ingress controller, which [ more… ]

[도서] 프리미어 프로 & 애프터 이펙트 CC 2018 무작정 따라하기

2018-03-22 KENNETH 0

[도서] 프리미어 프로 & 애프터 이펙트 CC 2018 무작정 따라하기 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]프리미어 프로 & 애프터 이펙트 CC 2018 무작정 따라하기 신의철,이현석,김나현 공저 | 길벗 | 2018년 03월 판매가 23,400원 (10%할인) | YES포인트 1,300원(5%지급) 프리미어 프로 & 애프터 이펙트 CC 2018의 새로운 버전 출시에 맞춰 새롭게 선보이는 『프리미어 프로 & 애프터 이펙트 CC 2018 무작정 따라하기』는 영상과 모션 그래픽 제작을 위해 쉽고, 빠르게 프리미어 프로와 Source: [도서] 프리미어 프로 & 애프터 이펙트 CC 2018 무작정 따라하기

[도서] 웹 해킹과 시큐어코딩 탐지/수정 실습가이드

2018-03-22 KENNETH 0

[도서] 웹 해킹과 시큐어코딩 탐지/수정 실습가이드 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]웹 해킹과 시큐어코딩 탐지/수정 실습가이드 최경철,문관주,허미영 공저 | secu BOOK | 2018년 03월 판매가 35,100원 (10%할인) | YES포인트 390원(1%지급) 이 책에서는 웹 모의해킹을 수행할 수 있는 실제적인 방법과 취약한 코드를 탐지하고 수정하기 위한 실습내용을 다루고 있기 때문에 컨설팅 실무의 실전노하우를 습득할 수 있다. – 이 책의 대상독자 1. 웹 모의 Source: [도서] 웹 해킹과 시큐어코딩 탐지/수정 실습가이드