[도서] 네트워크 해킹과 보안

2017-03-21 KENNETH 0

[도서] 네트워크 해킹과 보안 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]네트워크 해킹과 보안 이재광,김일준 공편 | 인피니티북스 | 2017년 03월 판매가 25,000원 (0%할인) | YES포인트 750원(3%지급) ‘네트워크’를 알면 ‘해킹’이 보인다! 이 책은 네트워크 해킹의 기본이 되는 ‘서버 침입’을 중심으로 설명한다. 전체적인 구성은 Part 01의 ‘해설편’과 Part 02의 ‘실천편’으로 나눌 수 있는데, ‘해설 Source: [도서] 네트워크 해킹과 보안

No Image

USN-3238-1: Firefox vulnerability

2017-03-21 KENNETH 0

USN-3238-1: Firefox vulnerability Ubuntu Security Notice USN-3238-1 20th March, 2017 firefox vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary An integer overflow was discovered in Firefox. Software description firefox – Mozilla Open Source web browser Details An integer overflow was discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could exploit this tocause a denial of service via application crash or execute arbitrary code.(CVE-2017-5428) Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.10: firefox 52.0.1+build2-0ubuntu0.16.10.1 Ubuntu 16.04 LTS: firefox 52.0.1+build2-0ubuntu0.16.04.1 Ubuntu 14.04 LTS: firefox 52.0.1+build2-0ubuntu0.14.04.1 Ubuntu 12.04 LTS: firefox 52.0.1+build2-0ubuntu0.12.04.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. After a standard system update you need to restart [ more… ]

[도서] Boost.Asio C++ 네트워크 프로그래밍 쿡북

2017-03-21 KENNETH 0

[도서] Boost.Asio C++ 네트워크 프로그래밍 쿡북 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]Boost.Asio C++ 네트워크 프로그래밍 쿡북 드미트로 라드척 저/한정애 역 | 에이콘출판사 | 2017년 03월 판매가 27,000원 (10%할인) | YES포인트 1,500원(5%지급) C++ 11과 14의 세계가 펼쳐졌는데도 아직도 소켓 프로그래밍을 할 때는 C 스타일로 해야 한다는 게 답답하지 않나요? 데이터형도 제대로 갖춰져 있지 않아 찾아내기 어려운 버그들이 도사리고 있기도 하죠. 이런 생 Source: [도서] Boost.Asio C++ 네트워크 프로그래밍 쿡북

No Image

USN-3237-1: FreeType vulnerability

2017-03-21 KENNETH 0

USN-3237-1: FreeType vulnerability Ubuntu Security Notice USN-3237-1 20th March, 2017 freetype vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary FreeType could be made to crash or run programs if it opened a specially crafted font file. Software description freetype – FreeType 2 is a font engine library Details It was discovered that FreeType did not correctly handle certain malformedfont files. If a user were tricked into using a specially crafted fontfile, a remote attacker could cause FreeType to crash, resulting in adenial of service, or possibly execute arbitrary code. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.10: libfreetype6 2.6.3-3ubuntu1.1 Ubuntu 16.04 LTS: libfreetype6 2.6.1-0.1ubuntu2.1 Ubuntu 14.04 LTS: libfreetype6 2.5.2-1ubuntu2.6 Ubuntu 12.04 LTS: libfreetype6 2.4.8-1ubuntu2.4 [ more… ]

No Image

USN-3183-2: GnuTLS vulnerability

2017-03-21 KENNETH 0

USN-3183-2: GnuTLS vulnerability Ubuntu Security Notice USN-3183-2 20th March, 2017 gnutls26 vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary GnuTLS could be made to hang if it received specially crafted network traffic. Software description gnutls26 – GNU TLS library Details USN-3183-1 fixed CVE-2016-8610 in GnuTLS in Ubuntu 16.04 LTS and Ubuntu16.10. This update provides the corresponding update for Ubuntu 12.04 LTSand Ubuntu 14.04 LTS. Original advisory details: Stefan Buehler discovered that GnuTLS incorrectly verified the serial length of OCSP responses. A remote attacker could possibly use this issue to bypass certain certificate validation measures. This issue only applied to Ubuntu 16.04 LTS. (CVE-2016-7444) Shi Lei discovered that GnuTLS incorrectly handled certain warning alerts. A remote attacker could possibly use this issue to cause GnuTLS to hang, resulting in a [ more… ]