No Image

USN-5864-1: Fig2dev vulnerabilities

2023-02-13 KENNETH 0

USN-5864-1: Fig2dev vulnerabilities Frederic Cambus discovered that Fig2dev incorrectly handled certain image files. If a user or an automated system were tricked into opening a certain specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 18.04 LTS. (CVE-2019-14275) It was discovered that Fig2dev incorrectly handled certain image files. If a user or an automated system were tricked into opening a certain specially crafted input file, a remote attacker could possibly use this issue to cause a denial of service. (CVE-2019-19555, CVE-2019-19797, CVE-2020-21529, CVE-2020-21530, CVE-2020-21531, CVE-2020-21532, CVE-2020-21533, CVE-2020-21534, CVE-2020-21535, CVE-2020-21675, CVE-2020-21676, CVE-2021-3561) It was discovered that Fig2dev incorrectly handled certain image files. If a user or an automated system were tricked into opening a certain specially crafted input file, a remote attacker could possibly use this issue [ more… ]

No Image

USN-5867-1: WebKitGTK vulnerabilities

2023-02-13 KENNETH 0

USN-5867-1: WebKitGTK vulnerabilities Several security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution. Source: USN-5867-1: WebKitGTK vulnerabilities

No Image

USN-5866-1: Nova vulnerabilities

2023-02-13 KENNETH 0

USN-5866-1: Nova vulnerabilities It was discovered that Nova did not properly manage data logged into the log file. An attacker with read access to the service’s logs could exploit this issue and may obtain sensitive information. This issue only affected Ubuntu 16.04 ESM and Ubuntu 18.04 LTS. (CVE-2015-9543) It was discovered that Nova did not properly handle attaching and reattaching the encrypted volume. An attacker could possibly use this issue to perform a denial of service attack. This issue only affected Ubuntu 16.04 ESM. (CVE-2017-18191) It was discovered that Nova did not properly handle the updation of domain XML after live migration. An attacker could possibly use this issue to corrupt the volume or perform a denial of service attack. This issue only affected Ubuntu 18.04 LTS. (CVE-2020-17376) It was discovered that Nova was not properly validating the URL passed [ more… ]

[도서] 포토샵 CC 2023 무작정 따라하기

2023-02-13 KENNETH 0

[도서] 포토샵 CC 2023 무작정 따라하기 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]포토샵 CC 2023 무작정 따라하기 문수민,앤미디어,민지영 저 | 길벗 | 2023년 02월 판매가 19,800원 (10%할인) | YES포인트 1,100원(5%지급) GTQ 전문 강사의 ‘동영상 강의’와 ‘맞춤형 학습법’으로 내게 필요한 툴만 실속있게 공부하자! 어도비에서 새롭게 선보인 포토샵 CC 2023은 보다 섬세하고 빠르게 고품질의 디자인 작업을 할 수 있도록 기능 Source: [도서] 포토샵 CC 2023 무작정 따라하기

No Image

USN-5865-1: Linux kernel (Azure) vulnerabilities

2023-02-10 KENNETH 0

USN-5865-1: Linux kernel (Azure) vulnerabilities It was discovered that an out-of-bounds write vulnerability existed in the Video for Linux 2 (V4L2) implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-20369) Pawan Kumar Gupta, Alyssa Milburn, Amit Peled, Shani Rehana, Nir Shildan and Ariel Sabba discovered that some Intel processors with Enhanced Indirect Branch Restricted Speculation (eIBRS) did not properly handle RET instructions after a VM exits. A local attacker could potentially use this to expose sensitive information. (CVE-2022-26373) David Leadbeater discovered that the netfilter IRC protocol tracking implementation in the Linux Kernel incorrectly handled certain message payloads in some situations. A remote attacker could possibly use this to cause a denial of service or bypass firewall filtering. (CVE-2022-2663) Johannes Wikner and Kaveh Razavi discovered [ more… ]