No Image

March 2020 security updates are available

2020-03-11 KENNETH 0

March 2020 security updates are available We have released the March security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found in the Security Update Guide. The post March 2020 security updates are available appeared first on Microsoft Security Response Center. Source: March 2020 security updates are available

[도서] 쿠브플로우

2020-03-11 KENNETH 0

[도서] 쿠브플로우 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]쿠브플로우 이명환 저 | 디지털북스 | 2020년 03월 판매가 13,500원 (10%할인) | YES포인트 750원(5%지급) 이벤트 : IT모바일 예약판매 이벤트 천재 바둑기사 ‘이세돌’과 인공지능 ‘알파고’의 바둑대결은 머신러닝 기술의 가치를 전 세계에 알리는 사건이었다. 이 대결 이후, 머신러닝에 대한 관심도가 높아지면서 많은 개발자들은 머신러닝에 뛰어들었지만, Source: [도서] 쿠브플로우

No Image

USN-4298-1: SQLite vulnerabilities

2020-03-10 KENNETH 0

USN-4298-1: SQLite vulnerabilities sqlite3 vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 18.04 LTS Ubuntu 16.04 LTS Summary Several security issues were fixed in SQLite. Software Description sqlite3 – C library that implements an SQL database engine Details It was discovered that SQLite incorrectly handled certain shadow tables. An attacker could use this issue to cause SQLite to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2019-13734, CVE-2019-13750, CVE-2019-13753) It was discovered that SQLite incorrectly handled certain corrupt records. An attacker could use this issue to cause SQLite to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2019-13751) It was discovered that SQLite incorrectly handled certain queries. An attacker could use this issue to cause SQLite to crash, resulting in a denial of service, or [ more… ]

[CVE-2020-1938] apache tomcat 취약점에 따른 업데이트시 참고 사항

2020-03-10 KENNETH 0

CVE-2020-1938 취약점 CVE : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1938 KISA : https://www.krcert.or.kr/data/secNoticeView.do?bulletin_writing_sequence=35292APACHE : http://tomcat.apache.org/security-7.html#Fixed_in_Apache_Tomcat_7.0.100   취약점 해결을 위해서는 tomcat 을 최신버전으로 업데이트 해줘야 한다. 2020.03.10 기준 tomcat7 의 경우 7.0.100 버전 으로 tomcat8 의 경우 8.5.51 버전 으로 tomcat9 의 경우 9.0.31 버전 으로 업데이트를 해줘야 한다.   발단 tomcat7 을 사용중인 서버가 있어 기존 : tomcat-7.0.64 변경 : tomcat-7.0.100 으로 계획후 작업을 진행 별다른 이슈가 없을것으로 보였고, 작업을 진행했으나 문제 발생   발생한 문제점 1. 에러로그 발생 The AJP Connector is configured with secretRequired=”true” but the secret attribute is either null or “”. 기존에 존재하지 않았던 로그   2. 503 오류 발생 jsp 페이지 자체가 로딩되지 않는 문제가 있었다.     해결 1. secretRequired=”true” 참조 : https://tomcat.apache.org/tomcat-7.0-doc/changelog.html Rename the requiredSecret attribute of the AJP/1.3 Connector to secret and add a new attribute secretRequired that defaults to true. When secretRequired is true the AJP/1.3 [ more… ]

No Image

Latest ‘Simply Windows’ video can help you make your PC easier to use

2020-03-10 KENNETH 0

Latest ‘Simply Windows’ video can help you make your PC easier to use The newest “Simply Windows” video is now available, focusing on ways to customize the settings on your PC.  If you’re new to Windows 10 or want to learn more about how to get the most out of it, this video series can help you get up to speed on using it.  In this episode, writers Jackie Tidwell and Doug Thomas help viewers change the size of text in Windows 10, increase contrast on their screens and show you how Microsoft Edge can read webpages to you, among other things you can personalize in the Ease of Access settings.  Find out more about “Simply Windows” and check out a playlist of previous shows.  And if you like this, check out other Windows 10 Tips.  The post Latest ‘Simply Windows’ video can help you make your PC easier to use appeared first on [ more… ]