No Image

USN-3271-1: Libxslt vulnerabilities

2017-04-28 KENNETH 0

USN-3271-1: Libxslt vulnerabilities Ubuntu Security Notice USN-3271-1 27th April, 2017 libxslt vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.04 Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary Several security issues were fixed in Libxslt. Software description libxslt – XSLT processing library Details Holger Fuhrmannek discovered an integer overflow in thexsltAddTextString() function in Libxslt. An attacker could usethis to craft a malicious document that, when opened, could cause adenial of service (application crash) or possible execute arbitrarycode. (CVE-2017-5029) Nicolas Gregoire discovered that Libxslt mishandled namespacenodes. An attacker could use this to craft a malicious document that,when opened, could cause a denial of service (application crash)or possibly execute arbtrary code. This issue only affected Ubuntu16.04 LTS, Ubuntu 14.04 LTS, and Ubuntu 12.04 LTS. (CVE-2016-1683) Sebastian Apelt discovered that a use-after-error existed in [ more… ]

[도서] Logic Pro X 10.3

2017-04-28 KENNETH 0

[도서] Logic Pro X 10.3 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Logic Pro X 10.3 윤준혁 저 | 위키북스 | 2017년 05월 판매가 31,500원 (10%할인) | YES포인트 1,750원(5%지급) 로직으로 음악을 하고자 하는 분들을 위한 가장 친절한 가이드! 이 책은 맥과 로직 및 장비의 선택부터 곡 작업과 마스터링까지 예제를 따라 하면서 익힐 수 있게 구성돼 있다. 또한 드러머와 미디 이펙트 엔진 Source: [도서] Logic Pro X 10.3

[도서] Programming in Scala 3/e

2017-04-28 KENNETH 0

[도서] Programming in Scala 3/e 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Programming in Scala 3/e 마틴 오더스키,렉스 스푼,빌 베너스 공저/오현석,이동욱,반영록 공역 | 에이콘출판사 | 2017년 05월 판매가 45,000원 (10%할인) | YES포인트 2,500원(5%지급) 스칼라는 여러 함수 언어적 기법과 객체지향 기법을 한데 잘 녹여서 루비나 파이썬 같은 동적 언어 못지않게 간결하면서 풍부한 표현력을 가진 언어다. 지난 몇 년간 빅데이터나 머신 러닝 등의 최첨단 분야에 널리 Source: [도서] Programming in Scala 3/e

No Image

USN-3270-1: NSS vulnerabilities

2017-04-28 KENNETH 0

USN-3270-1: NSS vulnerabilities Ubuntu Security Notice USN-3270-1 27th April, 2017 nss vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.04 Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Several security issues were fixed in NSS. Software description nss – Network Security Service library Details Karthik Bhargavan and Gaetan Leurent discovered that the DES and Triple DESciphers were vulnerable to birthday attacks. A remote attacker couldpossibly use this flaw to obtain clear text data from long encryptedsessions. This update causes NSS to limit use of the same symmetric key.(CVE-2016-2183) It was discovered that NSS incorrectly handled Base64 decoding. A remoteattacker could use this flaw to cause NSS to crash, resulting in a denialof service, or possibly execute arbitrary code. (CVE-2017-5461) This update refreshes the NSS package to version 3.28.4 which includesthe latest CA certificate bundle. [ more… ]