[도서] GraphQL과 타입스크립트로 개발하는 웹 서비스

2022-10-11 KENNETH 0

[도서] GraphQL과 타입스크립트로 개발하는 웹 서비스 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]GraphQL과 타입스크립트로 개발하는 웹 서비스 강화수 저 | 비제이퍼블릭(BJ퍼블릭) | 2022년 10월 판매가 22,500원 (10%할인) | YES포인트 1,250원(5%지급) 지브리 영화 명장면에 ‘좋아요’와 ‘감상평’을 남기는 웹 서비스를 GraphQL과 타입스크립트로 개발해 보자! GraphQL은 효과적인 API를 제공하기 위한 쿼리 언어이며 런타임 및 도구이다. 클라이언트/서버 구 Source: [도서] GraphQL과 타입스크립트로 개발하는 웹 서비스

No Image

USN-5668-1: Linux kernel vulnerabilities

2022-10-11 KENNETH 0

USN-5668-1: Linux kernel vulnerabilities It was discovered that the BPF verifier in the Linux kernel did not properly handle internal data structures. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2021-4159) It was discovered that an out-of-bounds write vulnerability existed in the Video for Linux 2 (V4L2) implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-20369) Duoming Zhou discovered that race conditions existed in the timer handling implementation of the Linux kernel’s Rose X.25 protocol layer, resulting in use-after-free vulnerabilities. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-2318) Roger Pau Monné discovered that the Xen virtual block driver in the Linux kernel did not properly initialize memory pages to be used for shared [ more… ]

No Image

Announcing Windows 11 Insider Preview Build 22621.741 and 22623.741

2022-10-11 KENNETH 0

Announcing Windows 11 Insider Preview Build 22621.741 and 22623.741 Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 22621.741 and Build 22623.741 (KB5018503) to the Beta Channel. Build 22623.741 = New features rolling out. Build 22621.741 = New features off by default. Windows Insiders who are on Build 22622.601 and did not see Build 22623.730 should be able to reboot and see this new build offered. REMINDER: Insiders who were previously on Build 22622 will automatically get moved to Build 22623 via an enablement package. The enablement package artificially increments the build number for the update with new features getting rolled out and turned on to make it easier to differentiate from devices with the update with features off by default. This approach is being used for the Beta Channel only and is not indicative of any changes [ more… ]

No Image

USN-5667-1: Linux kernel vulnerabilities

2022-10-11 KENNETH 0

USN-5667-1: Linux kernel vulnerabilities Selim Enes Karaduman discovered that a race condition existed in the General notification queue implementation of the Linux kernel, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-1882) Pawan Kumar Gupta, Alyssa Milburn, Amit Peled, Shani Rehana, Nir Shildan and Ariel Sabba discovered that some Intel processors with Enhanced Indirect Branch Restricted Speculation (eIBRS) did not properly handle RET instructions after a VM exits. A local attacker could potentially use this to expose sensitive information. (CVE-2022-26373) Eric Biggers discovered that a use-after-free vulnerability existed in the io_uring subsystem in the Linux kernel. A local attacker could possibly use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-3176) It was discovered that the Netlink Transformation [ more… ]

No Image

USN-5665-1: PCRE vulnerabilities

2022-10-11 KENNETH 0

USN-5665-1: PCRE vulnerabilities It was discovered that PCRE incorrectly handled certain regular expressions. A remote attacker could use this issue to cause applications using PCRE to crash, resulting in a denial of service. (CVE-2017-6004) It was discovered that PCRE incorrectly handled certain Unicode encoding. A remote attacker could use this issue to cause applications using PCRE to crash, resulting in a denial of service. (CVE-2017-7186) Source: USN-5665-1: PCRE vulnerabilities