No Image

USN-5714-1: LibTIFF vulnerabilities

2022-11-08 KENNETH 0

USN-5714-1: LibTIFF vulnerabilities It was discovered that LibTIFF incorrectly handled certain memory operations when using tiffcrop. An attacker could trick a user into processing a specially crafted tiff image file and potentially use this issue to cause a denial of service. This issue only affected Ubuntu 22.10. (CVE-2022-2519, CVE-2022-2520, CVE-2022-2521, CVE-2022-2953) It was discovered that LibTIFF did not properly perform bounds checking in certain operations when using tiffcrop. An attacker could trick a user into processing a specially crafted tiff image file and potentially use this issue to allow for information disclosure or to cause the application to crash. This issue only affected to Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-2867, CVE-2022-2868, CVE-2022-2869) It was discovered that LibTIFF did not properly perform bounds checking in certain operations when using tiffsplit. An attacker could trick a user [ more… ]

Announcing Windows 11 Insider Preview Build 22621.885 and 22623.885

2022-11-08 KENNETH 0

Announcing Windows 11 Insider Preview Build 22621.885 and 22623.885 Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 22621.885 and Build 22623.885 (KB5020054) to the Beta Channel. Build 22623.885= New features rolling out. Build 22621.885 = New features off by default. REMINDER: Insiders who were previously on Build 22622 will automatically get moved to Build 22623 via an enablement package. The enablement package artificially increments the build number for the update with new features getting rolled out and turned on to make it easier to differentiate from devices with the update with features off by default. This approach is being used for the Beta Channel only and is not indicative of any changes or plans for final feature rollouts. Insiders who landed in the group with new features turned off by default (Build 22621.xxxx) can check for updates [ more… ]

No Image

AWS 주간 소식 모음 – 2022년 11월 첫째주

2022-11-08 KENNETH 0

AWS 주간 소식 모음 – 2022년 11월 첫째주 라스베이거스에서 AWS re:Invent가 열릴 때까지 3주가 남았습니다. 그때까지 AWS 뉴스 블로그 팀은 최신 출시 및 미리 보기를 독자분들과 공유할 수 있도록 블로그 게시물을 작성하는 데 힘을 쏟고 있습니다. 늘 그렇듯이 새로운 서비스, 새로운 기능 및 한두 가지의 놀라운 소식이 다양하게 준비되어 있습니다. 지난주 출시 다음은 지난주에 있던 몇 가지 눈에 띄는 출시 사항입니다. Amazon SNS 데이터 보호 및 마스킹 – 간단한 공개 평가판을 거친 후 이제 이 멋진 기능이 공식 출시되었습니다. 패턴 일치, 기계 학습 모델 및 콘텐츠 정책을 사용하여 대규모 데이터를 보호합니다. 메시지 본문에서 다양한 종류의 개인 식별 정보(PII)와 개인 건강 정보(PHI)를 찾을 수 있고 이 모든 것을 실시간으로 주제별로 메시지 전달을 차단하거나 민감한 데이터를 마스킹(비식별) 할 수 있습니다. 자세한 내용은 블로그 게시물이나 메시지 데이터 보호 설명서를 읽어보세요. Amazon Textract 업데이트 – 이 서비스는 모든 문서 또는 이미지에서 텍스트, 손글씨 및 [ more… ]

No Image

USN-5658-2: DHCP vulnerabilities

2022-11-08 KENNETH 0

USN-5658-2: DHCP vulnerabilities USN-5658-1 fixed vulnerabilities in DHCP. This update provides the corresponding updates for Ubuntu 16.04 ESM. Original advisory details: It was discovered that DHCP incorrectly handled option reference counting. A remote attacker could possibly use this issue to cause DHCP servers to crash, resulting in a denial of service. (CVE-2022-2928) It was discovered that DHCP incorrectly handled certain memory operations. A remote attacker could possibly use this issue to cause DHCP clients and servers to consume resources, leading to a denial of service. (CVE-2022-2929) Source: USN-5658-2: DHCP vulnerabilities

No Image

USN-5716-1: SQLite vulnerability

2022-11-08 KENNETH 0

USN-5716-1: SQLite vulnerability It was discovered that SQLite incorrectly handled certain long string arguments. An attacker could use this issue to cause SQLite to crash, resulting in a denial of service, or possibly execute arbitrary code. Source: USN-5716-1: SQLite vulnerability