No Image

USN-5996-2: Libloius vulnerabilities

2023-05-23 KENNETH 0

USN-5996-2: Libloius vulnerabilities USN-5996-1 fixed vulnerabilities in Liblouis. This update provides the corresponding updates for Ubuntu 23.04. Original advisory details: It was discovered that Liblouis incorrectly handled certain files. An attacker could possibly use this issue to cause a denial of service. (CVE-2023-26767, CVE-2023-26768, CVE-2023-26769) Source: USN-5996-2: Libloius vulnerabilities

[도서] 챗GPT 질문의 기술

2023-05-23 KENNETH 0

[도서] 챗GPT 질문의 기술 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]챗GPT 질문의 기술 이선종 저 | 영진닷컴 | 2023년 06월 판매가 18,000원 (10%할인) | YES포인트 1,000원(5%지급) 이벤트 : IT, 모두의 교양 : 챗GPT와 함께 하는 미래 – AI 대전환 시대, 당신의 미래를 바꿀 질문의 기술 – 최신 동향, 활용 사례, 챗GPT 성능 향상 툴&테크닉 수록 – 노하우를 집약한 별책부록 〈프롬프트 가이드〉 제공 인간의 소통과 업무 방식에 혁명적인 변 Source: [도서] 챗GPT 질문의 기술

No Image

USN-6098-1: Jhead vulnerabilities

2023-05-23 KENNETH 0

USN-6098-1: Jhead vulnerabilities It was discovered that Jhead did not properly handle certain crafted images while processing the JFIF markers. An attacker could cause Jhead to crash. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS. (CVE-2019-19035) It was discovered that Jhead did not properly handle certain crafted images while processing longitude tags. An attacker could cause Jhead to crash. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2019-1010301) It was discovered that Jhead did not properly handle certain crafted images while processing IPTC data. An attacker could cause Jhead to crash. This issue only affected Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2019-1010302) Binbin Li discovered that Jhead did not properly handle certain crafted images while processing the DQT data. An attacker could cause Jhead to crash. (CVE-2020-6624) Binbin Li discovered [ more… ]

No Image

USN-6088-2: runC vulnerabilities

2023-05-23 KENNETH 0

USN-6088-2: runC vulnerabilities USN-6088-1 fixed vulnerabilities in runC. This update provides the corresponding updates for Ubuntu 16.04 LTS. It was discovered that runC incorrectly performed access control when mounting /proc to non-directories. An attacker could possibly use this issue to escalate privileges. (CVE-2019-19921) Felix Wilhelm discovered that runC incorrecly handled netlink messages. An attacker could possibly use this issue to escalate privileges. (CVE-2021-43784) Andrew G. Morgan discovered that runC incorrectly set inherited process capabilities inside the container. An attacker could possibly use this issue to escalate privileges. (CVE-2022-29162) Original advisory details: It was discovered that runC incorrectly made /sys/fs/cgroup writable when in rootless mode. An attacker could possibly use this issue to escalate privileges. (CVE-2023-25809) It was discovered that runC incorrectly performed access control when mounting /proc to non-directories. An attacker could possibly use this issue to escalate privileges. (CVE-2023-27561) [ more… ]

No Image

USN-6042-2: Cloud-init regression

2023-05-23 KENNETH 0

USN-6042-2: Cloud-init regression USN-6042-1 fixed a vulnerability in Cloud-init. The update introduced a regression on Ubuntu 20.04 LTS resulting in a possible loss of networking. This update fixes the problem. We apologize for the inconvenience. Original advisory details: James Golovich discovered that sensitive data could be exposed in logs. An attacker could use this information to find hashed passwords and possibly escalate their privilege. Source: USN-6042-2: Cloud-init regression