No Image

USN-5626-2: Bind vulnerabilities

2022-09-22 KENNETH 0

USN-5626-2: Bind vulnerabilities USN-5626-1 fixed several vulnerabilities in Bind. This update provides the corresponding update for Ubuntu 14.04 ESM and Ubuntu 16.04 ESM. Original advisory details: Yehuda Afek, Anat Bremler-Barr, and Shani Stajnrod discovered that Bind incorrectly handled large delegations. A remote attacker could possibly use this issue to reduce performance, leading to a denial of service. (CVE-2022-2795) It was discovered that Bind incorrectly handled memory when processing ECDSA DNSSEC verification. A remote attacker could use this issue to consume resources, leading to a denial of service. (CVE-2022-38177) Source: USN-5626-2: Bind vulnerabilities

[도서] 어쩌다 데이터 분석 with 파이썬

2022-09-22 KENNETH 0

[도서] 어쩌다 데이터 분석 with 파이썬 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]어쩌다 데이터 분석 with 파이썬 김유지 저 | 한빛미디어 | 2022년 09월 판매가 25,200원 (10%할인) | YES포인트 1,400원(5%지급) 파이썬 데이터 분석은 처음EASY? 판다스 핵심 레시피와 예제로 익히는 파이썬 데이터 분석 기초! 이 책은 파이썬 데이터 분석을 위해 반드시 알아야 하는 판다스, 넘파이, 맷플롯립, 시본 등 파이썬 핵심 라이브 Source: [도서] 어쩌다 데이터 분석 with 파이썬

No Image

USN-5626-1: Bind vulnerabilities

2022-09-21 KENNETH 0

USN-5626-1: Bind vulnerabilities Yehuda Afek, Anat Bremler-Barr, and Shani Stajnrod discovered that Bind incorrectly handled large delegations. A remote attacker could possibly use this issue to reduce performance, leading to a denial of service. (CVE-2022-2795) It was discovered that Bind incorrectly handled statistics requests. A remote attacker could possibly use this issue to obtain sensitive memory contents, or cause a denial of service. This issue only affected Ubuntu 22.04 LTS. (CVE-2022-2881) It was discovered that Bind incorrectly handled memory when processing certain Diffie-Hellman key exchanges. A remote attacker could use this issue to consume resources, leading to a denial of service. This issue only affected Ubuntu 22.04 LTS. (CVE-2022-2906) Maksym Odinintsev discovered that Bind incorrectly handled answers from cache when configured with a zero stale-answer-timeout. A remote attacker could possibly use this issue to cause Bind to crash, resulting in [ more… ]

No Image

USN-5623-1: Linux kernel (HWE) vulnerabilities

2022-09-21 KENNETH 0

USN-5623-1: Linux kernel (HWE) vulnerabilities Asaf Modelevsky discovered that the Intel(R) 10GbE PCI Express (ixgbe) Ethernet driver for the Linux kernel performed insufficient control flow management. A local attacker could possibly use this to cause a denial of service. (CVE-2021-33061) It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an out-of- bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33655) Moshe Kol, Amit Klein and Yossi Gilad discovered that the IP implementation in the Linux kernel did not provide sufficient randomization when calculating port offsets. An attacker could possibly use this to expose sensitive information. (CVE-2022-1012, CVE-2022-32296) Norbert Slusarek discovered that a race condition existed in the perf subsystem in the Linux [ more… ]

No Image

USN-5625-1: Mako vulnerability

2022-09-21 KENNETH 0

USN-5625-1: Mako vulnerability It was discovered that Mako incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause a denial of service. Source: USN-5625-1: Mako vulnerability