2018年10月31日 星期三

[USN-3798-1] Linux kernel vulnerabilities

---------- Forwarded message ---------
From: Steve Beattie
Date: 2018年10月23日 週二 上午11:50
...
Luo Quan and Wei Yang discovered that a race condition existed in the
Advanced Linux Sound Architecture (ALSA) subsystem of the Linux kernel when
handling ioctl()s. A local attacker could use this to cause a denial of
service (system deadlock). (CVE-2018-1000004)

范龙飞 discovered that a race condition existed in the Advanced Linux
Sound Architecture (ALSA) subsystem of the Linux kernel that could lead to
a use- after-free or an out-of-bounds buffer access. A local attacker with
access to /dev/snd/seq could use this to cause a denial of service (system
crash) or possibly execute arbitrary code. (CVE-2018-7566)

It was discovered that a buffer overflow existed in the NFC Logical Link
Control Protocol (llcp) implementation in the Linux kernel. An attacker
could use this to cause a denial of service (system crash) or possibly
execute arbitrary code. (CVE-2018-9518)
...
References:
  https://usn.ubuntu.com/usn/usn-3798-1
  CVE-2015-8539, CVE-2016-7913, CVE-2017-0794, CVE-2017-15299,
  CVE-2017-18216, CVE-2018-1000004, CVE-2018-7566, CVE-2018-9518

2018年10月30日 星期二

NewTek: Make Any System a Media Player with NDI

Make Any System a Media Player with NDI

by Kane Peterson & Chuck Baker

Sometimes a production needs additional media available and perhaps playing full time and in a loop. Having a Windows system set up with VLC Media Player, Kane Peterson’s VLC SyncPlay app for VLC Media Player, and the NewTek NDI® Tools Pack, available by free download, can fulfill this need.

2018年10月29日 星期一

TrendLabs: Misconfigured Container Abused to Deliver Cryptocurrency-mining Malware


Figure 2: Infection chain of the attacks involving misconfigured Docker engine
REF: https://blog.trendmicro.com/trendlabs-security-intelligence/misconfigured-container-abused-to-deliver-cryptocurrency-mining-malware/

[USN-3799-1] MySQL vulnerabilities

---------- Forwarded message ---------
From: Marc Deslauriers
Date: 2018年10月24日 週三 上午3:59

Multiple security issues were discovered in MySQL and this update includes
new upstream MySQL versions to fix these issues.

References:
  https://usn.ubuntu.com/usn/usn-3799-1
  CVE-2018-3133, CVE-2018-3143, CVE-2018-3144, CVE-2018-3155,
  CVE-2018-3156, CVE-2018-3161, CVE-2018-3162, CVE-2018-3171,
  CVE-2018-3173, CVE-2018-3174, CVE-2018-3185, CVE-2018-3187,
  CVE-2018-3200, CVE-2018-3247, CVE-2018-3251, CVE-2018-3276,
  CVE-2018-3277, CVE-2018-3278, CVE-2018-3282, CVE-2018-3283,
  CVE-2018-3284

2018年10月27日 星期六

Discover the latest updates to Google Analytics

Product Update
NEW FEATURES

Cross Device Features Now Available

A few months ago we introduced new Cross Device features to help you gain visibility into the journey your customers are taking across their devices as they interact with your website. To use these features, start by visiting the Admin section of your Analytics account and choose the setting to activate Google signals.

2018年10月26日 星期五

TrendLabs: Malware Targeting Brazil Uses Legitimate Windows Components WMI and CertUtil as Part of its Routine

 Figure 1: Infection Chain for the attack
Figure 1: Infection Chain for the attack
REF: https://blog.trendmicro.com/trendlabs-security-intelligence/malware-targeting-brazil-uses-legitimate-windows-components-wmi-and-certutil-as-part-of-its-routine/

2018年10月25日 星期四

[Check_mk Announce] New Check_MK stable release 1.5.0p7

---------- Forwarded message ---------
From: Check_mk Announcements
Date: Tue, Oct 23, 2018 at 3:37 PM

Please note that this release ships with several security fixes. In case you are
currently using previous 1.5.0 versions we highly recommend to update.

This maintenance release ships with 20 changes affecing all editions of Check_MK,
8 Enterprise Edition specific changes and 0 Managed Services Edition specific changes.

WATO:
* 6843 FIX: Increased size of "state of a service" BI rule input field

User interface:
* 6669 LDAP connections: Improved performance for "Automatically discover LDAP server"
* 6752 FIX: New Theme: Make the reload Button for passive Checks in grayscale again
* 5957 FIX: LDAP: Locking of users using "Authentication Expiration" plugin was not unlocking users
* 6785 FIX: Fixed truncating leading new lines in text area input fields
* 6784 FIX: Fixed grouping of service description KeyError exception
* 6842 FIX: Fixed dashlet top offset in classic theme

Reporting & availability:
* 6413 FIX: Availability: don't try to merge completely disconnected intervals

HW/SW inventory:
* 6736 FIX: Status data inventory is ignored for Check_MK clusters
* 6806 FIX: Management boards: Fixed execution of inventory plugins
* 6802 FIX: HW/SW Inventory: Equal entries are not displayed correctly

Checks & agents:
* 6798 docker_node_network: Support older Docker versions
* 6832 docker_node_info: Support old Docker versions
* 6833 docker_node_images: Support old Docker versions
* 6797 docker_node_disk_usage: Support older Docker versions
* 6807 FIX: veeam_tapejobs: Check returns 'Item not found' if no jobs are sent by the agent
* 6805 FIX: printer_supply_ricoh: Fixed conversion of parameters which have an old format
* 6830 FIX: docker_node_network: Fix missing info in case of multiple networks
* 6803 FIX: cisco_hsrp: Treat 'listen' state also as OK if it was known during discovery
* 6808 FIX: agent_vsphere: Fixed retrieving system information

You can download Check_MK from our download page:
 * http://mathias-kettner.de/check_mk_download.html