No Image

USN-4189-1: DPDK vulnerability

2019-11-13 KENNETH 0

USN-4189-1: DPDK vulnerability dpdk vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 19.10 Ubuntu 19.04 Ubuntu 18.04 LTS Summary DPDK could be made to consume resources if it received specially crafted input. Software Description dpdk – set of libraries for fast packet processing Details Jason Wang discovered that DPDK incorrectly handled certain messages. An attacker in a malicious container could possibly use this issue to cause DPDK to leak resources, resulting in a denial of service. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 19.10 dpdk – 18.11.4-1ubuntu0.19.10.1 Ubuntu 19.04 dpdk – 18.11.4-1ubuntu0.19.04.1 Ubuntu 18.04 LTS dpdk – 17.11.8-0~ubuntu18.04.2 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. This update uses a new upstream release, which includes additional bug fixes. In general, a standard system update [ more… ]

Amazon CloudWatch를 사용한 멀티 계정 및 리전간 교차 대시보드 기능 출시

2019-11-13 KENNETH 0

Amazon CloudWatch를 사용한 멀티 계정 및 리전간 교차 대시보드 기능 출시 멀티 계정 또는 멀티 리전을 활용하여 개발 생산성 및 가용성을 높히는 것은 중요한 AWS 클라우드 배포에 대한 모범 사례 중 하나입니다. 멀티 계정을 사용하면 리소스를 서로 격리하고 문제가 발생했을 때 피해를 최소화하는 보안 및 결제 과정의 경계가 만들어집니다. 멀티 리전을 사용하면 격리 수준이 높아지고 최종 사용자의 지연 시간이 짧아지며 애플리케이션의 데이터 복구 능력이 향상됩니다. 하지만, 모니터링 및 문제 해결과 관련한 단점이 있습니다. 중앙 집중식 운영 팀, DevOps 엔지니어 및 서비스 소유자가 여러 리전과 수많은 계정에서 실행 중인 애플리케이션을 모니터링 및 분석하고 관련 문제를 해결해야 합니다. 경보가 수신되면 대기 중인 엔지니어가 대시보드에 로그인하여 문제를 진단하고 다른 계정에도 로그인해 다양한 구성 요소 또는 종속성에 대한 추가 대시보드를 확인해야 할 가능성이 큽니다. 서비스 소유자는 서비스 가용성에 영향을 미칠 수 있는 애플리케이션 리소스, 공유 리소스 또는 애플리케이션 간 종속성에 대한 가시성을 필요로 합니다. [ more… ]

No Image

USN-4188-1: Linux kernel vulnerability

2019-11-13 KENNETH 0

USN-4188-1: Linux kernel vulnerability linux, linux-lts-trusty vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 12.04 ESM Summary The system could be made to expose sensitive information. Software Description linux – Linux kernel linux-lts-trusty – Linux hardware enablement kernel from Trusty for Precise ESM Details Stephan van Schaik, Alyssa Milburn, Sebastian Österlund, Pietro Frigo, Kaveh Razavi, Herbert Bos, Cristiano Giuffrida, Giorgi Maisuradze, Moritz Lipp, Michael Schwarz, Daniel Gruss, and Jo Van Bulck discovered that Intel processors using Transactional Synchronization Extensions (TSX) could expose memory contents previously stored in microarchitectural buffers to a malicious process that is executing on the same CPU core. A local attacker could use this to expose sensitive information. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 12.04 ESM linux-image-3.13.0-175-generic – 3.13.0-175.226~12.04.1 linux-image-3.13.0-175-generic-lpae – [ more… ]

No Image

USN-4185-2: Linux kernel (Azure) vulnerabilities

2019-11-13 KENNETH 0

USN-4185-2: Linux kernel (Azure) vulnerabilities linux-azure vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 ESM Summary Several security issues were fixed in the Linux kernel. Software Description linux-azure – Linux kernel for Microsoft Azure Cloud systems Details Stephan van Schaik, Alyssa Milburn, Sebastian Österlund, Pietro Frigo, Kaveh Razavi, Herbert Bos, Cristiano Giuffrida, Giorgi Maisuradze, Moritz Lipp, Michael Schwarz, Daniel Gruss, and Jo Van Bulck discovered that Intel processors using Transactional Synchronization Extensions (TSX) could expose memory contents previously stored in microarchitectural buffers to a malicious process that is executing on the same CPU core. A local attacker could use this to expose sensitive information. (CVE-2019-11135) Deepak Gupta discovered that on certain Intel processors, the Linux kernel did not properly perform invalidation on page table updates by virtual guest operating systems. A local attacker in [ more… ]

No Image

USN-4187-1: Linux kernel vulnerability

2019-11-13 KENNETH 0

USN-4187-1: Linux kernel vulnerability linux vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 ESM Summary The system could be made to expose sensitive information. Software Description linux – Linux kernel Details Stephan van Schaik, Alyssa Milburn, Sebastian Österlund, Pietro Frigo, Kaveh Razavi, Herbert Bos, Cristiano Giuffrida, Giorgi Maisuradze, Moritz Lipp, Michael Schwarz, Daniel Gruss, and Jo Van Bulck discovered that Intel processors using Transactional Synchronization Extensions (TSX) could expose memory contents previously stored in microarchitectural buffers to a malicious process that is executing on the same CPU core. A local attacker could use this to expose sensitive information. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM linux-image-3.13.0-175-generic – 3.13.0-175.226 linux-image-3.13.0-175-generic-lpae – 3.13.0-175.226 linux-image-3.13.0-175-lowlatency – 3.13.0-175.226 linux-image-generic – 3.13.0.175.186 linux-image-generic-lpae – 3.13.0.175.186 linux-image-lowlatency – [ more… ]