No Image

USN-5211-1: Linux kernel vulnerability

2022-01-06 KENNETH 0

USN-5211-1: Linux kernel vulnerability Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. Source: USN-5211-1: Linux kernel vulnerability

No Image

USN-5209-1: Linux kernel vulnerabilities

2022-01-06 KENNETH 0

USN-5209-1: Linux kernel vulnerabilities Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. (CVE-2021-4002) It was discovered that a race condition existed in the timer implementation in the Linux kernel. A privileged attacker could use this cause a denial of service. (CVE-2021-20317) It was discovered that a race condition existed in the overlay file system implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash). (CVE-2021-20321) It was discovered that the NFC subsystem in the Linux kernel contained a use-after-free vulnerability in its NFC Controller Interface (NCI) implementation. A local attacker could possibly use this to cause a denial of service (system crash) [ more… ]

No Image

USN-5210-1: Linux kernel vulnerabilities

2022-01-06 KENNETH 0

USN-5210-1: Linux kernel vulnerabilities Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. (CVE-2021-4002) It was discovered that the Linux kernel did not properly enforce certain types of entries in the Secure Boot Forbidden Signature Database (aka dbx) protection mechanism. An attacker could use this to bypass UEFI Secure Boot restrictions. (CVE-2020-26541) It was discovered that a race condition existed in the overlay file system implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash). (CVE-2021-20321) It was discovered that the NFC subsystem in the Linux kernel contained a use-after-free vulnerability in its NFC Controller Interface (NCI) implementation. A local attacker could possibly [ more… ]

No Image

USN-5208-1: Linux kernel vulnerabilities

2022-01-06 KENNETH 0

USN-5208-1: Linux kernel vulnerabilities Nadav Amit discovered that the hugetlb implementation in the Linux kernel did not perform TLB flushes under certain conditions. A local attacker could use this to leak or alter data from other processes that use huge pages. (CVE-2021-4002) It was discovered that a race condition existed in the overlay file system implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash). (CVE-2021-20321) It was discovered that the NFC subsystem in the Linux kernel contained a use-after-free vulnerability in its NFC Controller Interface (NCI) implementation. A local attacker could possibly use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2021-3760) It was discovered that an integer overflow could be triggered in the eBPF implementation in the Linux kernel when preallocating objects for stack [ more… ]

[도서] Essential C# 7/e

2022-01-06 KENNETH 0

[도서] Essential C# 7/e 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Essential C# 7/e 마크 미카엘리스 저/안철진,김도균 역 | 에이콘출판사 | 2022년 01월 판매가 45,000원 (10%할인) | YES포인트 2,500원(5%지급) C# 프로그래밍 역량을 쌓을 수 있도록 C# 언어 전체에 대해 포괄적인 튜토리얼을 제공한다. 핵심 C# 개선 사항과 구조를 묘사하는 간결한 예제, 버그를 최소화하고 발전하기 쉬운 코드를 작성하기 위한 업데이트된 Source: [도서] Essential C# 7/e