No Image

USN-4330-1: PHP vulnerabilities

2020-04-15 KENNETH 0

USN-4330-1: PHP vulnerabilities php5, php7.0, php7.2, php7.3 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Ubuntu 14.04 ESM Ubuntu 12.04 ESM Summary Several security issues were fixed in PHP. Software Description php7.3 – server-side, HTML-embedded scripting language (metapackage) php7.2 – HTML-embedded scripting language interpreter php7.0 – HTML-embedded scripting language interpreter php5 – HTML-embedded scripting language interpreter Details It was discovered that PHP incorrectly handled certain file uploads. An attacker could possibly use this issue to cause a crash. (CVE-2020-7062) It was discovered that PHP incorrectly handled certain PHAR archive files. An attacker could possibly use this issue to access sensitive information. (CVE-2020-7063) It was discovered that PHP incorrectly handled certain EXIF files. An attacker could possibly use this issue to access sensitive information or cause a crash. (CVE-2020-7064) [ more… ]

신규 – AWS Launch Wizard 기반 빠른 SAP 배포 기능 출시 (서울 리전 포함)

2020-04-15 KENNETH 0

신규 – AWS Launch Wizard 기반 빠른 SAP 배포 기능 출시 (서울 리전 포함) 작년에 저희는 AWS Launch Wizard for SQL Server를 출시했습니다. 이 기능을 사용하면 AWS에서 엔터프라이즈 워크로드에 대해 고가용성 SQL 솔루션을 쉽고 간편하게 배포할 수 있습니다. 오늘은 고객에게 신속하고 간편하고 유연하고 안전하면서도 비용 효율적인 새로운 서비스인 AWS Launch Wizard for SAP를 발표합니다. 이 새로운 서비스는 고객이 AWS CloudFormation과 AWS Systems Manager를 사용하여 AWS에서 SAP 애플리케이션을 빠르게 배포하도록 지원합니다. 수천 명의 AWS 고객이 AWS Quick Start 및 Amazon Elastic Compute Cloud(EC2)를 사용하여 x1, x1e 및 고용량 메모리 인스턴스 등을 포함한 SAP 워크로드를 구축하고 마이그레이션했습니다. 또한, AWS Partner Network(APN) for SAP를 사용하여 각자에 맞는 솔루션을 찾습니다. 더 나아가 SAP 고객은 Well Architected  기반 마법사를 활용해 AWS 리소스를 최대한 활용하여 SAP 시스템을 배포하기를 원합니다. AWS Launch Wizard for SAP는 AWS에 새 SAP 워크로드를 배포하거나 기존 온프레미스 SAP 워크로드를 AWS로 마이그레이션하고자 하는 [ more… ]

The Value of Red Hat + NGINX

2020-04-15 KENNETH 0

The Value of Red Hat + NGINX At NGINX (now a part of F5), we’re seeing a shift in what customers expect from their technology providers. We see code as the literal and figurative connective tissue that builds communities, drives innovation, and tells stories. It only makes sense for us to invest in a relationship with another open‑source–loving company known across the globe: Red Hat. NGINX is making one of its deepest investments in optimizing for the Red Hat platforms. We want to reduce friction for our customers by enabling seamless integration with some of the most popular Linux, automation, and container platforms: Red Hat Enterprise Linux, Red Hat Ansible Automation Platform, and Red Hat OpenShift Container Platform. What is the value to you of an enhanced relationship between Red Hat and NGINX? Secure, scalable, and supported application delivery – no matter where you are on the [ more… ]

No Image

USN-4329-1: Git vulnerability

2020-04-15 KENNETH 0

USN-4329-1: Git vulnerability git vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Git could be made to expose sensitive information. Software Description git – fast, scalable, distributed revision control system Details Felix Wilhelm discovered that Git incorrectly handled certain URLs that included newlines. A remote attacker could possibly use this issue to trick Git into returning credential information for a wrong host. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.10 git – 1:2.20.1-2ubuntu1.19.10.2 Ubuntu 18.04 LTS git – 1:2.17.1-1ubuntu0.6 Ubuntu 16.04 LTS git – 1:2.7.4-0ubuntu1.8 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2020-5260 Source: USN-4329-1: Git vulnerability

No Image

Releasing Windows 10 Insider Preview Build 19041.207 to the Slow ring

2020-04-15 KENNETH 0

Releasing Windows 10 Insider Preview Build 19041.207 to the Slow ring Hello Windows Insiders, today we’re releasing 20H1 Build 19041.207 (KB4550936) to Windows Insiders in the Slow ring. This Cumulative Update includes quality improvements. Key changes include: We fixed an issue that causes the Remote Procedure Call (RPC) service (rpcss.exe) to close unexpectedly and the device stops working. Then you must restart the device. We fixed an issue that causes the Device Enrollment Status Page (ESP) on managed devices to stop responding if a policy that requires a restart is installed on the device. We fixed an issue that might prevent the rear camera flash from functioning as expected on devices that have a rear camera. It also includes the latest security updates to the Microsoft Scripting Engine, Windows Kernel, Windows App Platform and Frameworks, Microsoft Graphics Component, Windows Media, [ more… ]