Red Hat Security Advisory 2015-1579-01 – Red Hat Ceph Storage is a massively scalable, open, software-defined storage platform that combines the most stable version of Ceph with a Ceph management platform, deployment tools, and support services. It was discovered that ceph-deploy, a utility for deploying Red Hat Ceph Storage, would create the keyring file with world readable permissions, which could possibly allow a local user to obtain authentication credentials from the keyring file. ceph has been upgraded from v0.80.8.1 to v0.80.8.2.
Monthly Archives: August 2015
SCADA with antenna
Posted by SCADA StrangeLove on Aug 07
Mobile buzzword bingo:FemtoCell, COMP128, A5, GEA, HNB, SeGW, HMS, RANAP,
SCTP, TR-069 by @arbitrarycode and @GiftsUngiven. Slides from BHUSA 2015.
http://scadastrangelove.blogspot.com/2015/08/scada-with-antenna.html
Ubuntu Security Notice USN-2706-1
Ubuntu Security Notice 2706-1 – Several vulnerabilities were discovered in the OpenJDK JRE related to information disclosure, data integrity, and availability. An attacker could exploit these to cause a denial of service or expose sensitive data over the network. Several vulnerabilities were discovered in the cryptographic components of the OpenJDK JRE. An attacker could exploit these to expose sensitive data over the network. Various other issues were also addressed.
Linux/x86 Memory Sinkhole Proof Of Concept
Linux/x86 memory sinkhole privilege escalation proof of concept exploit.
FileZilla Client 2.2.x SEH Buffer Overflow
FileZilla Client version 2.2.x SEH buffer overflow exploit.
Re: Security Advisory – "Cross-VM ASL INtrospection (CAIN)"
Posted by Артур Истомин on Aug 07
OpenBSD does not have any VM solutions at all. It is because of these
predictable problems.
I also doubt about FreeBSD’s VMs’ feature like dedublication. And they
don’t have ASLR in any supported stable branches. I mean FreeBSD 9 and 10.
CVE-2015-4674
The autoupdate implementation in TimeDoctor Pro 1.4.72.3 on Windows relies on unsigned installer files that are retrieved without use of SSL, which makes it easier for man-in-the-middle attackers to execute arbitrary code via a crafted file.
MS14-002 Windows NDProxy Privilege Escalation
NDPROXY is a system-provided driver that interfaces WAN miniport drivers, call managers, and miniport call managers to the Telephony Application Programming Interfaces (TAPI) services. The vulnerability is caused when the NDProxy.sys kernel component fails to properly validate input. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode (i.e. with SYSTEM privileges).
DSA-3330 activemq – security update
It was discovered that the Apache ActiveMQ message broker is susceptible
to denial of service through an undocumented, remote shutdown command.
DSA-3329 linux – security update
Several vulnerabilities have been discovered in the Linux kernel
that may lead to a privilege escalation, denial of service or
information leak.