No Image

USN-5528-1: FreeType vulnerabilities

2022-07-20 KENNETH 0

USN-5528-1: FreeType vulnerabilities It was discovered that FreeType did not correctly handle certain malformed font files. If a user were tricked into using a specially crafted font file, a remote attacker could cause FreeType to crash, or possibly execute arbitrary code. Source: USN-5528-1: FreeType vulnerabilities

No Image

USN-5525-1: Apache XML Security for Java vulnerability

2022-07-20 KENNETH 0

USN-5525-1: Apache XML Security for Java vulnerability It was discovered that Apache XML Security for Java incorrectly passed a configuration property when creating specific key elements. This allows an attacker to abuse an XPath Transform to extract sensitive information. Source: USN-5525-1: Apache XML Security for Java vulnerability

No Image

USN-5527-1: Checkmk vulnerabilities

2022-07-20 KENNETH 0

USN-5527-1: Checkmk vulnerabilities It was discovered that Checkmk incorrectly handled authentication. An attacker could possibly use this issue to cause a race condition leading to information disclosure. (CVE-2017-14955) It was discovered that Checkmk incorrectly handled certain inputs. An attacker could use these cross-site scripting issues to inject arbitrary html or javascript code to obtain sensitive information including user information, session cookies and valid credentials. (CVE-2017-9781, CVE-2021-36563, CVE-2021-40906, CVE-2022-24565) Source: USN-5527-1: Checkmk vulnerabilities

No Image

USN-5526-1: PyJWT vulnerability

2022-07-20 KENNETH 0

USN-5526-1: PyJWT vulnerability Aapo Oksman discovered that PyJWT incorrectly handled signatures constructed from SSH public keys. A remote attacker could use this to forge a JWT signature. Source: USN-5526-1: PyJWT vulnerability

[도서] 안녕, 트랜스포머

2022-07-20 KENNETH 0

[도서] 안녕, 트랜스포머 분야별 신상품 – 국내도서 – 컴퓨터와 인터넷 [도서]안녕, 트랜스포머 이진기 저 | 에이콘출판사 | 2022년 07월 판매가 21,600원 (10%할인) | YES포인트 1,200원(5%지급) 자연어 처리를 위한 AI 모델의 핵심 기술과 활용법에 대해서 다룬다. N-gram으로 접근하는 전통적인 모델 방식의 한계를 설명하고, AI 모델이 그 문제를 어떻게 해결할 수 있는지 설명한다. 어텐션 네트워크의 배경 Source: [도서] 안녕, 트랜스포머