No Image

USN-6249-1: Linux kernel (OEM) vulnerabilities

2023-07-26 KENNETH 0

USN-6249-1: Linux kernel (OEM) vulnerabilities Ruihan Li discovered that the memory management subsystem in the Linux kernel contained a race condition when accessing VMAs in certain conditions, leading to a use-after-free vulnerability. A local attacker could possibly use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2023-3269) Querijn Voet discovered that a race condition existed in the io_uring subsystem in the Linux kernel, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3389) Source: USN-6249-1: Linux kernel (OEM) vulnerabilities

No Image

USN-6248-1: Linux kernel (OEM) vulnerabilities

2023-07-26 KENNETH 0

USN-6248-1: Linux kernel (OEM) vulnerabilities It was discovered that the network queuing discipline implementation in the Linux kernel contained a null pointer dereference in some situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-47929) It was discovered that a race condition existed in Adreno GPU DRM driver in the Linux kernel, leading to a double-free vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-21106) Stonejiajia, Shir Tamari and Sagi Tzadik discovered that the OverlayFS implementation in the Ubuntu Linux kernel did not properly perform permission checks in certain situations. A local attacker could possibly use this to gain elevated privileges. (CVE-2023-2640) Mingi Cho discovered that the netfilter subsystem in the Linux kernel did not properly validate the status of a nft chain while performing a lookup [ more… ]

No Image

USN-6247-1: Linux kernel (OEM) vulnerabilities

2023-07-26 KENNETH 0

USN-6247-1: Linux kernel (OEM) vulnerabilities David Leadbeater discovered that the netfilter IRC protocol tracking implementation in the Linux Kernel incorrectly handled certain message payloads in some situations. A remote attacker could possibly use this to cause a denial of service or bypass firewall filtering. (CVE-2022-2663) It was discovered that the IDT 77252 ATM PCI device driver in the Linux kernel did not properly remove any pending timers during device exit, resulting in a use-after-free vulnerability. A local attacker could possibly use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-3635) It was discovered that the network queuing discipline implementation in the Linux kernel contained a null pointer dereference in some situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2022-47929) Lucas Leong discovered that the IPv6 SR implementation in [ more… ]

No Image

USN-6246-1: Linux kernel vulnerabilities

2023-07-26 KENNETH 0

USN-6246-1: Linux kernel vulnerabilities It was discovered that the IP-VLAN network driver for the Linux kernel did not properly initialize memory in some situations, leading to an out-of- bounds write vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-3090) Mingi Cho discovered that the netfilter subsystem in the Linux kernel did not properly validate the status of a nft chain while performing a lookup by id, leading to a use-after-free vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-31248) Querijn Voet discovered that a race condition existed in the io_uring subsystem in the Linux kernel, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary [ more… ]

[도서] 파이썬 크래시 코스

2023-07-26 KENNETH 0

[도서] 파이썬 크래시 코스 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]파이썬 크래시 코스 에릭 마테스 저/한선용 역 | 한빛미디어 | 2023년 08월 판매가 35,100원 (10%할인) | YES포인트 1,950원(5%지급) 전 세계 150만 부 이상 판매, 파이썬 분야 글로벌 1위 베스트셀러를 기본과 실습, 1+1 구성으로 만나보세요! – 연습문제 + 해답, 파이썬 치트 시트 제공 전 세계에서 가장 많이 판매된 부동의 파이썬 입문 Source: [도서] 파이썬 크래시 코스