No Image

USN-5980-1: Linux kernel vulnerabilities

2023-03-29 KENNETH 0

USN-5980-1: Linux kernel vulnerabilities It was discovered that the System V IPC implementation in the Linux kernel did not properly handle large shared memory counts. A local attacker could use this to cause a denial of service (memory exhaustion). (CVE-2021-3669) It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. (CVE-2022-2196) Gerald Lee discovered that the USB Gadget file system implementation in the Linux kernel contained a race condition, leading to a use-after-free vulnerability in some situations. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-4382) It was discovered that the RNDIS USB [ more… ]

[도서] 11가지 핵심 예제로 파이썬 머신러닝 정복하기

2023-03-29 KENNETH 0

[도서] 11가지 핵심 예제로 파이썬 머신러닝 정복하기 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]11가지 핵심 예제로 파이썬 머신러닝 정복하기 정종호 저 | 삼양미디어 | 2023년 04월 판매가 18,000원 (10%할인) | YES포인트 1,000원(5%지급) Source: [도서] 11가지 핵심 예제로 파이썬 머신러닝 정복하기

No Image

USN-5979-1: Linux kernel (HWE) vulnerabilities

2023-03-29 KENNETH 0

USN-5979-1: Linux kernel (HWE) vulnerabilities It was discovered that the KVM VMX implementation in the Linux kernel did not properly handle indirect branch prediction isolation between L1 and L2 VMs. An attacker in a guest VM could use this to expose sensitive information from the host OS or other guest VMs. (CVE-2022-2196) It was discovered that a race condition existed in the Xen network backend driver in the Linux kernel when handling dropped packets in certain circumstances. An attacker could use this to cause a denial of service (kernel deadlock). (CVE-2022-42328, CVE-2022-42329) Gerald Lee discovered that the USB Gadget file system implementation in the Linux kernel contained a race condition, leading to a use-after-free vulnerability in some situations. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-4382) José Oliveira [ more… ]

NGINX Tutorial: How to Use OpenTelemetry Tracing to Understand Your Microservices

2023-03-29 KENNETH 0

NGINX Tutorial: How to Use OpenTelemetry Tracing to Understand Your Microservices ul.no-bullets { list-style-type: none; } This post is one of four tutorials that help you put into practice concepts from Microservices March 2023: Start Delivering Microservices: How to Deploy and Configure Microservices How to Securely Manage Secrets in Containers How to Use GitHub Actions to Automate Microservices Canary Deployments How to Use OpenTelemetry Tracing to Understand Your Microservices (this post) A microservices architecture comes with many benefits, including increased team autonomy and increased flexibility in scaling and deployment. On the downside, the more services in a system (and a microservices app can have dozens or even hundreds), the more difficult it becomes to maintain a clear picture of the overall operation of the system. As writers and maintainers of complex software systems, we know the vital importance of having that [ more… ]

[도서] 칼퇴족 김대리는 알고 나만 모르는 HTML5+CSS3

2023-03-28 KENNETH 0

[도서] 칼퇴족 김대리는 알고 나만 모르는 HTML5+CSS3 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]칼퇴족 김대리는 알고 나만 모르는 HTML5+CSS3 김태광 저 | 책밥 | 2023년 04월 판매가 18,900원 (10%할인) | YES포인트 1,050원(5%지급) 어렵고 지루한 설명은 그만! 사용도가 높은 HTML 태그와 CSS 속성을 짧고 쉽게 설명한 책! 웹 디자이너로 실무를 진행하던 저자는 퍼블리싱 업무를 진행하게 되면서 부딪힌 궁금증과 시행착오를 해결하기 위해 Source: [도서] 칼퇴족 김대리는 알고 나만 모르는 HTML5+CSS3