AWS 주간 소식 모음 – 2020년 9월 28일

2020-09-28 KENNETH 0

AWS 주간 소식 모음 – 2020년 9월 28일 안녕하세요! 여러분~ 매주 월요일 마다 지난 주 업데이트된 국내 AWS관련 콘텐츠를 정리해 드리는 AWS 주간 소식 모음입니다. AWS 클라우드에 대한 새로운 소식을 확인하시는데 많은 도움 되시길 바랍니다. 혹시 빠지거나 추가할 내용이 있으시면, 저에게 메일 주시면 다음 중에 추가 공유해 드리겠습니다. AWS코리아 동영상 AWS Single Sign-On (SSO) 서비스 집중 탐구 – 윤석찬 :: AWS Unboxing 온라인 세미나 (2020-09-24) AWS 최신 뉴스 JetBrains IDE, Amazon RDS 및 Redshift 연결 가능 (2020-09-25). 로스 앤젤레스 (LA)의 AWS 로컬 영역에서 Amazon ElastiCache 출시 (2020-09-25). AWS Copilot CLI, 자동 확장 및 운영에 중점을 둔 v0.4 출시 (2020-09-25) AWS Lanch Wizard, Red Hat Enterprise Linux 버전 8.1 SAP 배포 지원 (2020-09-25) AWS 비용 이상 감지 (미리보기) 출시 (2020-09-25) Amazon Aurora PostgreSQL에서 pglogical 확장 지원 (2020-09-24) Amazon Textract, 통화 기호, 키 값 쌍 및 체크 박스를 감지하는 정확도 개선 (2020-09-24). [ more… ]

[도서] 증강 현실 · 가상 현실과 공간 컴퓨팅

2020-09-27 KENNETH 0

[도서] 증강 현실 · 가상 현실과 공간 컴퓨팅 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]증강 현실 · 가상 현실과 공간 컴퓨팅 에린 팡길리넌,스티브 루카스,바산스 모한 공저/김서경,고은혜 공역 | 에이콘출판사 | 2020년 10월 판매가 31,500원 (10%할인) | YES포인트 1,750원(5%지급) 공간 컴퓨팅이라는 관점에서 AR/VR이 지닌 가능성을 다각도로 조망한다. Source: [도서] 증강 현실 · 가상 현실과 공간 컴퓨팅

No Image

USN-4545-1: libquicktime vulnerabilities

2020-09-26 KENNETH 0

USN-4545-1: libquicktime vulnerabilities It was discovered that libquicktime incorrectly handled certain malformed MP4 files. If a user were tricked into opening a specially crafted MP4 file, a remote attacker could use this issue to cause a denial of service (resource exhaustion). (CVE-2017-9122) It was discovered that libquicktime incorrectly handled certain malformed MP4 files. If a user were tricked into opening a specially crafted MP4 file, a remote attacker could use this issue to cause libquicktime to crash, resulting in a denial of service. (CVE-2017-9123, CVE-2017-9124, CVE-2017-9126, CVE-2017-9127, CVE-2017-9128) It was discovered that libquicktime incorrectly handled certain malformed MP4 files. If a user were tricked into opening a specially crafted MP4 file, a remote attacker could use this issue to cause a denial of service. (CVE-2017-9125) Source: USN-4545-1: libquicktime vulnerabilities

No Image

USN-4541-1: Gnuplot vulnerabilities

2020-09-26 KENNETH 0

USN-4541-1: Gnuplot vulnerabilities Tim Blazytko, Cornelius Aschermann, Sergej Schumilo and Nils Bars discovered that Gnuplot did not properly validate string sizes in the df_generate_ascii_array_entry function. An attacker could possibly use this issue to cause a heap buffer overflow, resulting in a denial of service attack or arbitrary code execution. (CVE-2018-19490) Tim Blazytko, Cornelius Aschermann, Sergej Schumilo and Nils Bars discovered that Gnuplot did not properly validate string sizes in the PS_options function when the Gnuplot postscript terminal is used as a backend. An attacker could possibly use this issue to cause a buffer overflow, resulting in a denial of service attack or arbitrary code execution. (CVE-2018-19491) Tim Blazytko, Cornelius Aschermann, Sergej Schumilo and Nils Bars discovered that Gnuplot did not properly validate string sizes in the cairotrm_options function when the Gnuplot postscript terminal is used as a backend. An attacker [ more… ]

No Image

USN-4543-1: Sanitize vulnerability

2020-09-26 KENNETH 0

USN-4543-1: Sanitize vulnerability Michał Bentkowski discovered that Sanitize did not properly sanitize some math or svg HTML under certain circumstances. A remote attacker could potentially exploit this to conduct cross-site scripting (XSS) attacks. (CVE-2020-4054) Source: USN-4543-1: Sanitize vulnerability