[도서] 취미로 해킹#7(SBP)

2023-03-14 KENNETH 0

[도서] 취미로 해킹#7(SBP) 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]취미로 해킹#7(SBP) 장용하,이동원,권송이,김승일 공저 | BOOKK(부크크) | 2023년 08월 판매가 23,000원 (0%할인) | YES포인트 0원(0%지급) 해킹 대회 연습, 여전히 막막하신가요? “암호학같이 생소한 분야는 손도 못 댈 정도로 어려워요. 풀 수 있게 누가 좀 알려줬으면…” “천재들이 하는 말은 생략된 부분이 많아서 들어도 모르겠어요. 정말 일말 Source: [도서] 취미로 해킹#7(SBP)

No Image

USN-5949-1: Chromium vulnerabilities

2023-03-14 KENNETH 0

USN-5949-1: Chromium vulnerabilities It was discovered that Chromium could be made to write out of bounds in several components. A remote attacker could possibly use this issue to corrupt memory via a crafted HTML page, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2023-0930, CVE-2023-1219, CVE-2023-1220, CVE-2023-1222) It was discovered that Chromium contained an integer overflow in the PDF component. A remote attacker could possibly use this issue to corrupt memory via a crafted PDF file, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2023-0933) It was discovered that Chromium did not properly manage memory in several components. A remote attacker could possibly use this issue to corrupt memory via a crafted HTML page, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2023-0941, CVE-2023-0928, CVE-2023-0929, CVE-2023-0931, CVE-2023-1213, CVE-2023-1216, CVE-2023-1218) It was [ more… ]

No Image

USN-5948-1: Werkzeug vulnerabilities

2023-03-14 KENNETH 0

USN-5948-1: Werkzeug vulnerabilities It was discovered that Werkzeug did not properly handle the parsing of nameless cookies. A remote attacker could possibly use this issue to shadow other cookies. (CVE-2023-23934) It was discovered that Werkzeug could be made to process unlimited number of multipart form data parts. A remote attacker could possibly use this issue to cause Werkzeug to consume resources, leading to a denial of service. (CVE-2023-25577) Source: USN-5948-1: Werkzeug vulnerabilities

No Image

WP Briefing: Episode 51: Is Routine a Rut?

2023-03-13 KENNETH 0

WP Briefing: Episode 51: Is Routine a Rut? On Episode fifty-one of the WordPress Briefing podcast, join WordPress Executive Director Josepha Haden Chomphosy as she makes a case for why routine is a good thing– in life and in the WordPress project. Have a question you’d like answered? You can submit them to [email protected], either written or as a voice recording. Credits Editor: Dustin HartzlerLogo: Javier ArceProduction: Santana InnissSong: Fearless First by Kevin MacLeod Show Notes Beta 5, Additional Beta Released WordPress 6.2, Release Candidate 1 Join WordPress 20th Anniversary Celebrations Organizing Diverse and Inclusive WordPress Events Events News Widget Modification Proposal Transcript [Josepha Haden Chomphosy 00:00:00]  Hello everyone, and welcome to the WordPress Briefing, the podcast where you can catch quick explanations of the ideas behind the WordPress open source project, some insight into the community that supports it, and get a [ more… ]

No Image

USN-5946-1: XStream vulnerabilities

2023-03-13 KENNETH 0

USN-5946-1: XStream vulnerabilities Lai Han discovered that XStream incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. (CVE-2021-39140) It was discovered that XStream incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote attacker could possibly use this issue to execute arbitrary code. This issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. (CVE-2021-39139, CVE-2021-39141, CVE-2021-39144, CVE-2021-39145, CVE-2021-39146, CVE-2021-39147, CVE-2021-39148, CVE-2021-39149, CVE-2021-39151, CVE-2021-39153, CVE-2021-39154) It was discovered that XStream incorrectly handled certain inputs. If a user or an automated system were tricked into opening a specially crafted input file, a remote [ more… ]