No Image

USN-3588-1: Memcached vulnerabilities

2018-03-06 KENNETH 0

USN-3588-1: Memcached vulnerabilities Ubuntu Security Notice USN-3588-1 5th March, 2018 memcached vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in Memcached. Software description memcached – high-performance memory object caching system Details Daniel Shapira discovered an integer overflow issue in Memcached. A remoteattacker could use this to cause a denial of service (daemon crash).(CVE-2017-9951) It was discovered that Memcached listened to UDP by default. A remoteattacker could use this as part of a distributed denial of service attack.(CVE-2018-1000115) Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.10: memcached 1.4.33-1ubuntu3.2 Ubuntu 16.04 LTS: memcached 1.4.25-2ubuntu1.3 Ubuntu 14.04 LTS: memcached 1.4.14-0ubuntu9.2 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update [ more… ]

Windows 10 Tip: Three ways you can personalize your desktop with fun themes and colors

2018-03-06 KENNETH 0

Windows 10 Tip: Three ways you can personalize your desktop with fun themes and colors Windows 10 is all about letting you express yourself and create. Today, we’re going to show you some of the ways you can personalize your PC– whether it’s changing your desktop background to puppies, flowers or skylines, turning your taskbar pink, or enabling Windows Spotlight so beautiful photography will show up automatically on your lock screen. Here’s how: Download a desktop theme from Microsoft Store Choose from endless options to make your PC yours, including hundreds of wallpapers, sound options, and custom accent colors. Themes include photography, art and illustrations from creators across the globe – such as plants and flowers, landscapes, animals, natural wonders, and more. Simply open Settings, select Personalization, Themes, and then Get more themes in the Store. Once downloaded, click on Launch to open your [ more… ]

No Image

USN-3587-1: Dovecot vulnerabilities

2018-03-05 KENNETH 0

USN-3587-1: Dovecot vulnerabilities Ubuntu Security Notice USN-3587-1 5th March, 2018 dovecot vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in Dovecot. Software description dovecot – IMAP and POP3 email server Details It was discovered that Dovecot incorrectly handled parsing certain emailaddresses. A remote attacker could use this issue to cause Dovecot tocrash, resulting in a denial of service, or possibly obtain sensitiveinformation. (CVE-2017-14461) It was discovered that Dovecot incorrectly handled TLS SNI config lookups.A remote attacker could possibly use this issue to cause Dovecot to crash,resulting in a denial of service. (CVE-2017-15130) Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 17.10: dovecot-core 1:2.2.27-3ubuntu1.3 Ubuntu 16.04 LTS: dovecot-core 1:2.2.22-1ubuntu2.7 Ubuntu 14.04 LTS: dovecot-core 1:2.2.9-1ubuntu2.4 [ more… ]

No Image

USN-3575-2: QEMU regression

2018-03-05 KENNETH 0

USN-3575-2: QEMU regression Ubuntu Security Notice USN-3575-2 5th March, 2018 qemu regression A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary USN-3575-1 introduced a regression in QEMU. Software description qemu – Machine emulator and virtualizer Details USN-3575-1 fixed vulnerabilities in QEMU. The fix for CVE-2017-11334 causeda regression in Xen environments. This update removes the problematic fixpending further investigation. We apologize for the inconvenience. Original advisory details: It was discovered that QEMU incorrectly handled guest ram. A privileged attacker inside the guest could use this issue to cause QEMU to crash, resulting in a denial of service. This issue only affected Ubuntu 14.04 LTS and Ubuntu 16.04 LTS. (CVE-2017-11334) David Buchanan discovered that QEMU incorrectly handled the VGA device. A privileged attacker inside the guest could use this issue to cause QEMU [ more… ]

AWS 주간 소식 모음 – 2018년 3월 5일

2018-03-05 KENNETH 0

AWS 주간 소식 모음 – 2018년 3월 5일 안녕하세요! 여러분~ 매주 월요일 마다 지난 주에 업데이트된 국내 AWS관련 콘텐츠를 정리해 드립니다. AWS 클라우드에 대한 새로운 소식을 확인하시는데 많은 도움 되시길 바랍니다. 혹시 빠지거나 추가할 내용이 있으시면, 저에게 메일 주시면 추가 공유해 드리겠습니다. AWS코리아 블로그 AWS 3월 기초 교육 온라인 세미나 (2018-03-04) AWS 주간 소식 모음 – 2018년 2월 26일 (2018-02-26) AWS코리아 발표 자료 Amazon DynamoDB 프리티어로 시작하기 – 김성수, AWS 솔루션즈아키텍트 (2018-02-28) AWS코리아 동영상 Amazon Dynamo DB 프리티어로 시작하기 – 김성수 AWS 솔루션즈 아키텍트 (2018-02-27) AWS 최신 뉴스 Amazon Polly, AWS GovCloud(미국) 리전 정식 출시 (2018-03-04) Amazon WorkDocs, 새로운 데이터 보관 기능 제공 (2018-03-04) Amazon Rekognition, AWS 아시아 태평양(도쿄) 및 아시아 태평양(시드니) 리전 출시 (2018-03-04) Amazon SageMaker에서 Auto Scaling 지원 (2018-03-04) 관리 규칙을 지원하는 AWS WAF의 신제품 (2018-03-04) 새로운 빠른 시작 기능을 사용하여 AWS 클라우드에 Aviatrix 글로벌 전송 허브 배포 [ more… ]