No Image

Get PC titles for less through Microsoft Store Ultimate Game Sale

2023-07-20 KENNETH 0

Get PC titles for less through Microsoft Store Ultimate Game Sale Looking for a good deal on new PC titles to add to your collection? Check out the Microsoft Store Ultimate Game Sale, which runs through July 31 with discounts on select Xbox and PC games, PC accessories and Xbox console bundles. Top PC titles on sale include “Disney Speedstorm Deluxe Founders Pack,” “Sunshine Island” and “Flight Sim – Premium Deluxe” – but you’ll find hundreds more to choose from. Plus, save up to 50% on select Microsoft accessories for your PC device. Head over to Xbox Wire to get all the details on the sale. Source: Get PC titles for less through Microsoft Store Ultimate Game Sale

No Image

USN-6238-1: Samba vulnerabilities

2023-07-19 KENNETH 0

USN-6238-1: Samba vulnerabilities It was discovered that Samba incorrectly handled Winbind NTLM authentication responses. An attacker could possibly use this issue to cause Samba to crash, resulting in a denial of service. (CVE-2022-2127) Andreas Schneider discovered that Samba incorrectly enforced SMB2 packet signing. A remote attacker could possibly use this issue to obtain or modify sensitive information. This issue only affected Ubuntu 23.04. (CVE-2023-3347) Florent Saudel and Arnaud Gatignolof discovered that Samba incorrectly handled certain Spotlight requests. A remote attacker could possibly use this issue to cause Samba to consume resources, leading to a denial of service. (CVE-2023-34966, CVE-2023-34967) Ralph Boehme and Stefan Metzmacher discovered that Samba incorrectly handled paths returned by Spotlight requests. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2023-34968) Source: USN-6238-1: Samba vulnerabilities

No Image

USN-6237-1: curl vulnerabilities

2023-07-19 KENNETH 0

USN-6237-1: curl vulnerabilities Hiroki Kurosawa discovered that curl incorrectly handled validating certain certificate wildcards. A remote attacker could possibly use this issue to spoof certain website certificates using IDN hosts. (CVE-2023-28321) Hiroki Kurosawa discovered that curl incorrectly handled callbacks when certain options are set by applications. This could cause applications using curl to misbehave, resulting in information disclosure, or a denial of service. (CVE-2023-28322) It was discovered that curl incorrectly handled saving cookies to files. A local attacker could possibly use this issue to create or overwrite files. This issue only affected Ubuntu 22.10, and Ubuntu 23.04. (CVE-2023-32001) Source: USN-6237-1: curl vulnerabilities

No Image

USN-6236-1: ConnMan vulnerabilities

2023-07-19 KENNETH 0

USN-6236-1: ConnMan vulnerabilities It was discovered that ConnMan could be made to write out of bounds. A remote attacker could possibly use this issue to cause ConnMan to crash, resulting in a denial of service, or possibly execute arbitrary code. This issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. (CVE-2021-26675, CVE-2021-33833) It was discovered that ConnMan could be made to leak sensitive information via the gdhcp component. A remote attacker could possibly use this issue to obtain information for further exploitation. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-26676) It was discovered that ConnMan could be made to read out of bounds. A remote attacker could possibly use this issue to case ConnMan to crash, resulting in a denial of service. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, [ more… ]

AWS Fargate, 신규 Seekable OCI 기반 신속한 컨테이너 구동 가능

2023-07-19 KENNETH 0

AWS Fargate, 신규 Seekable OCI 기반 신속한 컨테이너 구동 가능 애플리케이션 배포 및 스케일 아웃에 컨테이너를 사용한 개발이 점점 더 많이 사용되고 있지만 아직 개선이 필요한 부분이 남아있습니다. 컨테이너식 애플리케이션을 스케일 업할 때 발생하는 주요 문제는 긴 스타트업 시간으로, 특히 새 인스턴스를 추가해야 하는 스케일 업을 수행할 때 도드라집니다. 이러한 문제는 예를 들어 웹 사이트를 스케일 아웃하여 추가 트래픽을 처리해야 하는 등 고객 경험에 부정적인 영향을 미칠 수 있습니다. 연구 보고서에 따르면 컨테이너 이미지 다운로드는 컨테이너 스타트업 시간의 76%를 차지하지만 컨테이너가 유용한 작업을 시작하는 데 필요한 데이터는 평균 6.4%에 불과합니다. 컨테이너화된 애플리케이션을 시작 및 스케일 업하려면 원격 컨테이너 레지스트리에서 컨테이너 이미지를 다운로드해야 합니다. 애플리케이션 시작에 앞서 전체 이미지를 다운로드하고 압축을 풀어야 하므로 이로 인해 사소한 지연 시간이 발생할 수 있습니다. 이 문제에 대한 한 가지 해결책은 컨테이너 이미지의 지연 로딩(비동기 로딩이라고도 함)입니다. 이 접근 방식은 전체 컨테이너 시작 시간을 개선하는 [ more… ]