No Image

USN-5473-1: ca-certificates update

2022-06-08 KENNETH 0

USN-5473-1: ca-certificates update The ca-certificates package contained outdated CA certificates. This update refreshes the included certificates to those contained in the 2.50 version of the Mozilla certificate authority bundle. Source: USN-5473-1: ca-certificates update

AWS 주간 소식 모음 – AWS Builders Korea 6월 프로그램 등 :: 2022년 6월 첫째주

2022-06-08 KENNETH 0

AWS 주간 소식 모음 – AWS Builders Korea 6월 프로그램 등 :: 2022년 6월 첫째주 저는 미국에서 휴일이 낀 긴 주말을 보내고 막 돌아와서 이제 지난 주의 모든 AWS 출시 소식을 확인하고 있습니다. 몇 가지 데이터, 기계 학습 및 양자 컴퓨팅 뉴스가 특히 눈길을 끄네요. 함께 살펴보겠습니다. AWS Builders Korea 6월 프로그램 AWS 에서는 클라우드에 관심이 있으신 한국 고객분들을 위해 클라우드 기초부터 기본, 심화 및 특집 과정을 제공합니다. 6월 21일 (화) – AWS 서버리스로 서버 없이 간단한 웹 애플리케이션 만들기 6월 21일 (화) – AWS 코어 서비스로 간단한 웹 애플리케이션 직접 만들기 6월 22일 (수) – AWS의 컨테이너 서비스인 Amazon ECS를 이용해 손쉽게 애플리케이션 배포하기 6월 22일 (수) – AWS 관리형 쿠버네티스 컨테이너 서비스 Amazon EKS로 애플리케이션 배포 및 운영하기 6월 23일 (목) – AWS Step Functions 로 AWS 서비스 기능 조합하여 워크플로우 및 API 만들기 6월 23일 (목) – [ more… ]

No Image

USN-5471-1: Linux kernel (OEM) vulnerabilities

2022-06-08 KENNETH 0

USN-5471-1: Linux kernel (OEM) vulnerabilities It was discovered that the Linux kernel did not properly restrict access to the kernel debugger when booted in secure boot environments. A privileged attacker could use this to bypass UEFI Secure Boot restrictions. (CVE-2022-21499) Aaron Adams discovered that the netfilter subsystem in the Linux kernel did not properly handle the removal of stateful expressions in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-1966) It was discovered that the IP implementation in the Linux kernel did not provide sufficient randomization when calculating port offsets. An attacker could possibly use this to expose sensitive information. (CVE-2022-1012) Duoming Zhou discovered race conditions in the AX.25 amateur radio protocol implementation in the Linux kernel, leading to use-after-free vulnerabilities. A local [ more… ]

No Image

USN-5470-1: Linux kernel (OEM) vulnerabilities

2022-06-08 KENNETH 0

USN-5470-1: Linux kernel (OEM) vulnerabilities It was discovered that the Linux kernel did not properly restrict access to the kernel debugger when booted in secure boot environments. A privileged attacker could use this to bypass UEFI Secure Boot restrictions. (CVE-2022-21499) Aaron Adams discovered that the netfilter subsystem in the Linux kernel did not properly handle the removal of stateful expressions in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-1966) Minh Yuan discovered that the floppy driver in the Linux kernel contained a race condition in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-1836) Ziming Zhang discovered that the netfilter subsystem in the Linux [ more… ]

No Image

USN-5469-1: Linux kernel vulnerabilities

2022-06-08 KENNETH 0

USN-5469-1: Linux kernel vulnerabilities It was discovered that the Linux kernel did not properly restrict access to the kernel debugger when booted in secure boot environments. A privileged attacker could use this to bypass UEFI Secure Boot restrictions. (CVE-2022-21499) Aaron Adams discovered that the netfilter subsystem in the Linux kernel did not properly handle the removal of stateful expressions in some situations, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2022-1966) Billy Jheng Bing Jhong discovered that the CIFS network file system implementation in the Linux kernel did not properly validate arguments to ioctl() in some situations. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-0168) Hu Jiahui discovered that multiple race conditions existed in the Advanced Linux [ more… ]