No Image

USN-6229-1: LibTIFF vulnerabilities

2023-07-14 KENNETH 0

USN-6229-1: LibTIFF vulnerabilities It was discovered that LibTIFF was not properly handling variables used to perform memory management operations when processing an image through tiffcrop, which could lead to a heap buffer overflow. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2023-25433, CVE-2023-26965) It was discovered that LibTIFF was not properly processing numerical values when dealing with little-endian input data, which could lead to the execution of an invalid operation. An attacker could possibly use this issue to cause a denial of service (CVE-2023-26966) It was discovered that LibTIFF was not properly performing bounds checks when closing a previously opened TIFF file, which could lead to a NULL pointer dereference. An attacker could possibly use this issue to cause a denial of service. (CVE-2023-3316) Source: USN-6229-1: LibTIFF vulnerabilities

No Image

Announcing Windows 11 Insider Preview Build 22621.2048 and 22631.2048

2023-07-14 KENNETH 0

Announcing Windows 11 Insider Preview Build 22621.2048 and 22631.2048 Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 22621.2048 and Build 22631.2048 (KB5028247) to the Beta Channel. Build 22631.2048 = New features rolling out. Build 22621.2048 = New features off by default. REMINDER: Insiders who were previously on Build 22624 will automatically get moved to Build 22631 via an enablement package. The enablement package artificially increments the build number for the update with new features getting rolled out and turned on to make it easier to differentiate from devices with the update with features off by default. This approach is being used for the Beta Channel only and is not indicative of any changes or plans for final feature rollouts. Insiders who landed in the group with new features turned off by default (Build 22621.xxxx) can check for [ more… ]

[도서] 오토캐드 2024 도면작성 핵심 가이드북

2023-07-14 KENNETH 0

[도서] 오토캐드 2024 도면작성 핵심 가이드북 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]오토캐드 2024 도면작성 핵심 가이드북 메카피아교육사업부 저 | 메카피아 | 2023년 07월 판매가 25,200원 (10%할인) | YES포인트 1,400원(5%지급) 본 서는 기계제조 엔지니어링 분야의 CAD 입문자를 위한 도면작성 위주의 내용으로 구성을 하였으며 실무에서도 사용 가능하도록 주요 핵심 명령어들에 대한 상세한 해설과 실습 위주로 기술하고 있을뿐만 아니라 기 Source: [도서] 오토캐드 2024 도면작성 핵심 가이드북

No Image

USN-6228-1: Linux kernel vulnerabilities

2023-07-13 KENNETH 0

USN-6228-1: Linux kernel vulnerabilities It was discovered that the XFS file system implementation in the Linux kernel did not properly perform metadata validation when mounting certain images. An attacker could use this to specially craft a file system image that, when mounted, could cause a denial of service (system crash). (CVE-2023-2124) Wei Chen discovered that the InfiniBand RDMA communication manager implementation in the Linux kernel contained an out-of-bounds read vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-2176) Source: USN-6228-1: Linux kernel vulnerabilities

No Image

USN-6227-1: SpiderMonkey vulnerabilities

2023-07-13 KENNETH 0

USN-6227-1: SpiderMonkey vulnerabilities Several security issues were discovered in the SpiderMonkey JavaScript library. If a user were tricked into opening malicious JavaScript applications or processing malformed data, a remote attacker could exploit a variety of issues related to JavaScript security, including denial of service attacks, and arbitrary code execution. Source: USN-6227-1: SpiderMonkey vulnerabilities