No Image

USN-5633-1: Linux kernel vulnerabilities

2022-09-23 KENNETH 0

USN-5633-1: Linux kernel vulnerabilities It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an out-of- bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33655) Duoming Zhou discovered that race conditions existed in the timer handling implementation of the Linux kernel’s Rose X.25 protocol layer, resulting in use-after-free vulnerabilities. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-2318) Roger Pau Monné discovered that the Xen virtual block driver in the Linux kernel did not properly initialize memory pages to be used for shared communication with the backend. A local attacker could use this to expose sensitive information (guest kernel memory). (CVE-2022-26365) Roger Pau Monné discovered that the [ more… ]

No Image

USN-5632-1: OAuthLib vulnerability

2022-09-23 KENNETH 0

USN-5632-1: OAuthLib vulnerability Sebastian Chnelik discovered that OAuthLib incorrectly handled certain redirect uris. A remote attacker could possibly use this issue to cause OAuthLib to crash, resulting in a denial of service. Source: USN-5632-1: OAuthLib vulnerability

No Image

USN-5631-1: libjpeg-turbo vulnerabilities

2022-09-23 KENNETH 0

USN-5631-1: libjpeg-turbo vulnerabilities It was discovered that libjpeg-turbo incorrectly handled certain EOF characters. An attacker could possibly use this issue to cause libjpeg-turbo to consume resource, leading to a denial of service. This issue only affected Ubuntu 18.04 LTS. (CVE-2018-11813) It was discovered that libjpeg-turbo incorrectly handled certain malformed jpeg files. An attacker could possibly use this issue to cause libjpeg-turbo to crash, resulting in a denial of service. (CVE-2020-17541, CVE-2020-35538) It was discovered that libjpeg-turbo incorrectly handled certain malformed PPM files. An attacker could use this issue to cause libjpeg-turbo to crash, resulting in a denial of service, or possibly execute arbitrary code. This issue only affected Ubuntu 20.04 LTS. (CVE-2021-46822) Source: USN-5631-1: libjpeg-turbo vulnerabilities

No Image

USN-5630-1: Linux kernel (Raspberry Pi) vulnerabilities

2022-09-23 KENNETH 0

USN-5630-1: Linux kernel (Raspberry Pi) vulnerabilities It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an out-of- bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33655) Moshe Kol, Amit Klein and Yossi Gilad discovered that the IP implementation in the Linux kernel did not provide sufficient randomization when calculating port offsets. An attacker could possibly use this to expose sensitive information. (CVE-2022-1012, CVE-2022-32296) Norbert Slusarek discovered that a race condition existed in the perf subsystem in the Linux kernel, resulting in a use-after-free vulnerability. A privileged local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-1729) It was discovered that the device-mapper verity [ more… ]

[도서] 파이썬 기반 금융 인공지능

2022-09-23 KENNETH 0

[도서] 파이썬 기반 금융 인공지능 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]파이썬 기반 금융 인공지능 이브 힐피시 저/김도형 역 | 한빛미디어 | 2022년 09월 판매가 37,800원 (10%할인) | YES포인트 2,100원(5%지급) 통계적 비효율성부터 벡터화된 백테스팅, 알고리즘 트레이딩까지, 금융 전문가를 위한 인공지능 활용법 이 책은 금융권에서 AI를 활용하는 금융 전문가를 위한 인공지능 활용 실전 지침서다. 책의 초반부에서는 Source: [도서] 파이썬 기반 금융 인공지능