No Image

USN-3265-1: Linux kernel vulnerabilities

2017-04-25 KENNETH 0

USN-3265-1: Linux kernel vulnerabilities Ubuntu Security Notice USN-3265-1 24th April, 2017 linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary Several security issues were fixed in the kernel. Software description linux – Linux kernel linux-aws – Linux kernel for Amazon Web Services (AWS) systems linux-gke – Linux kernel for Google Container Engine (GKE) systems linux-raspi2 – Linux kernel for Raspberry Pi 2 linux-snapdragon – Linux kernel for Snapdragon Processors Details It was discovered that a use-after-free flaw existed in the filesystemencryption subsystem in the Linux kernel. A local attacker could use thisto cause a denial of service (system crash). (CVE-2017-7374) Andrey Konovalov discovered an out-of-bounds access in the IPv6 GenericRouting Encapsulation (GRE) tunneling implementation in the Linux kernel.An attacker could use this to possibly expose sensitive information.(CVE-2017-5897) Andrey [ more… ]

No Image

USN-3265-2: Linux kernel (Xenial HWE) vulnerabilities

2017-04-25 KENNETH 0

USN-3265-2: Linux kernel (Xenial HWE) vulnerabilities Ubuntu Security Notice USN-3265-2 24th April, 2017 linux-lts-xenial vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Summary Several security issues were fixed in the kernel. Software description linux-lts-xenial – Linux hardware enablement kernel from Xenial for Trusty Details USN-3265-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04LTS. This update provides the corresponding updates for the LinuxHardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu14.04 LTS. It was discovered that a use-after-free flaw existed in the filesystemencryption subsystem in the Linux kernel. A local attacker could use thisto cause a denial of service (system crash). (CVE-2017-7374) Andrey Konovalov discovered an out-of-bounds access in the IPv6 GenericRouting Encapsulation (GRE) tunneling implementation in the Linux kernel.An attacker could use this to possibly expose sensitive information.(CVE-2017-5897) Andrey Konovalov discovered [ more… ]

No Image

USN-3266-1: Linux kernel vulnerability

2017-04-25 KENNETH 0

USN-3266-1: Linux kernel vulnerability Ubuntu Security Notice USN-3266-1 24th April, 2017 linux, linux-raspi2 vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.10 Summary The system could be made to crash under certain conditions. Software description linux – Linux kernel linux-raspi2 – Linux kernel for Raspberry Pi 2 Details Alexander Popov discovered that a race condition existed in the StreamControl Transmission Protocol (SCTP) implementation in the Linux kernel. Alocal attacker could use this to cause a denial of service (system crash). Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.10: linux-image-powerpc-smp 4.8.0.49.61 linux-image-powerpc-e500mc 4.8.0.49.61 linux-image-4.8.0-49-generic-lpae 4.8.0-49.52 linux-image-4.8.0-1035-raspi2 4.8.0-1035.38 linux-image-generic-lpae 4.8.0.49.61 linux-image-4.8.0-49-lowlatency 4.8.0-49.52 linux-image-4.8.0-49-powerpc-smp 4.8.0-49.52 linux-image-4.8.0-49-powerpc-e500mc 4.8.0-49.52 linux-image-generic 4.8.0.49.61 linux-image-4.8.0-49-generic 4.8.0-49.52 linux-image-lowlatency 4.8.0.49.61 linux-image-raspi2 4.8.0.1035.39 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system [ more… ]

No Image

USN-3266-2: Linux kernel (HWE) vulnerability

2017-04-25 KENNETH 0

USN-3266-2: Linux kernel (HWE) vulnerability Ubuntu Security Notice USN-3266-2 24th April, 2017 linux-hwe vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary The system could be made to crash under certain conditions. Software description linux-hwe – Linux hardware enablement (HWE) kernel Details USN-3266-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.10.This update provides the corresponding updates for the Linux HardwareEnablement (HWE) kernel from Ubuntu 16.10 for Ubuntu 16.04 LTS. Alexander Popov discovered that a race condition existed in the StreamControl Transmission Protocol (SCTP) implementation in the Linux kernel. Alocal attacker could use this to cause a denial of service (system crash). Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.04 LTS: linux-image-4.8.0-49-generic 4.8.0-49.52~16.04.1 linux-image-lowlatency-hwe-16.04 4.8.0.49.21 linux-image-generic-hwe-16.04 4.8.0.49.21 linux-image-4.8.0-49-lowlatency 4.8.0-49.52~16.04.1 linux-image-4.8.0-49-generic-lpae 4.8.0-49.52~16.04.1 linux-image-generic-lpae-hwe-16.04 4.8.0.49.21 [ more… ]

Amazon Lex – 정식 출시 및 AWS Chatbot Challege 안내

2017-04-25 KENNETH 0

Amazon Lex – 정식 출시 및 AWS Chatbot Challege 안내 지난 AWS re:Invent에서 대화식 음성 및 텍스트 인터페이스를 구축하는 Amazon Lex 서비스를 출시했습니다. 당시 Amazon Lex를 미리보기 방식으로 시작했으며 특정 개발자에게 제공했습니다. Amazon Alexa를 구동하는 것과 동일한 딥러닝(Deep Learning) 학습 기술로 구동되는 Amazon Lex를 사용하면 매력적이고 생동감 있는 상호 작용을 지원하는 웹 및 모바일 애플리케이션을 개발할 수 있습니다. 오늘 부터 Amazon Lex 서비스를 정식 출시하면서 아래와 같은 기능도 신규로 추가하여 공개합니다. Slack 연동– Slack 채널에 전송 된 메시지 및 이벤트에 응답하는 Amazon Lex 봇을 만들 수 있습니다. 봇의 Channel 탭을 클릭하고 슬랙을 선택한 다음 양식을 작성하여 슬랙에 사용할 콜백 URL을 가져옵니다. 더 자세한 사항은 Integrating an Amazon Lex Bot with Slack 문서를 참고하시기 바랍니다. Twilio 연동 – 이제 Twilio SMS 번호로 전송 된 SMS 메시지에 응답하는 Amazon Lex 봇을 만들 수 있습니다. Channels을 클릭하고 Twilio를 선택한 다음 양식을 작성하십시오. 더 [ more… ]