No Image

USN-5136-1: Linux kernel vulnerabilities

2021-11-09 KENNETH 0

USN-5136-1: Linux kernel vulnerabilities It was discovered that the f2fs file system in the Linux kernel did not properly validate metadata in some situations. An attacker could use this to construct a malicious f2fs image that, when mounted and operated on, could cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2019-19449) It was discovered that the FUSE user space file system implementation in the Linux kernel did not properly handle bad inodes in some situations. A local attacker could possibly use this to cause a denial of service. (CVE-2020-36322) It was discovered that the Infiniband RDMA userspace connection manager implementation in the Linux kernel contained a race condition leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possible execute arbitrary code. (CVE-2020-36385) Ilja Van Sprundel [ more… ]

No Image

USN-5130-1: Linux kernel vulnerabilities

2021-11-09 KENNETH 0

USN-5130-1: Linux kernel vulnerabilities Jann Horn discovered a race condition in the tty subsystem of the Linux kernel in the locking for the TIOCSPGRP ioctl(), leading to a use-after- free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2020-29661) Jann Horn discovered that the tty subsystem of the Linux kernel did not use consistent locking in some situations, leading to a read-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly expose sensitive information (kernel memory). (CVE-2020-29660) Source: USN-5130-1: Linux kernel vulnerabilities

No Image

USN-5134-1: Docker vulnerability

2021-11-09 KENNETH 0

USN-5134-1: Docker vulnerability An information disclosure issue was discovered in the command line interface of Docker. A misconfigured credential store could result in supplied credentials being leaked to the public registry, when using the docker login command with a private registry. Source: USN-5134-1: Docker vulnerability

No Image

USN-5135-1: Linux kernel vulnerability

2021-11-09 KENNETH 0

USN-5135-1: Linux kernel vulnerability It was discovered that the Linux kernel did not properly account for the memory usage of certain IPC objects. A local attacker could use this to cause a denial of service (memory exhaustion). Source: USN-5135-1: Linux kernel vulnerability

[도서] Must Have 성낙현의 JSP 자바 웹 프로그래밍

2021-11-09 KENNETH 0

[도서] Must Have 성낙현의 JSP 자바 웹 프로그래밍 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Must Have 성낙현의 JSP 자바 웹 프로그래밍 성낙현 저 | 골든래빗 | 2021년 11월 판매가 25,200원 (10%할인) | YES포인트 1,400원(5%지급) 자바 웹 개발자로 첫발을 내딛는 여러분께 견고한 발판이 되어드립니다 이 책은 ‘JSP 기초’ → ‘레벨업’ → ‘현업 스킬’ 과정을 실무에서 주로 사용하는 기능 위주로 다뤄 진입 장벽을 낮추고 학습 효율을 Source: [도서] Must Have 성낙현의 JSP 자바 웹 프로그래밍