Skip to content

トピトピニュース

Header Image

新PS5コントローラDualSense Edge発表。交換式スティックや背面ボタン、プロファイル切替え対応

  • Posted inUncategorized
  • Posted byテクノエッジ
  • 08/24/2022

ソニー・インタラクティブ・エンタテインメント(SIE)が、PlayStation 5用の新型コントロ…

[node-opcua] node-opcua DoS vulnerability via message with memory allocation that exceeds v8’s memory limit

  • Posted inHIGH
  • Posted byGitHub
  • 08/24/202209/02/2022

The package node-opcua before 2.74.0 are vulnerable to Denial of Service (DoS) by sending a specifically crafted OPC UA message with a special OPC UA NodeID, when the requested memory allocation exceeds the v8’s memory limit.
References

https://nvd.ni…

[asyncua] Uncontrolled Resource Consumption in asyncua and opcua

  • Posted inHIGH
  • Posted byGitHub
  • 08/24/202209/30/2022

All versions of package opcua; all versions of package asyncua are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks – per single session or in total for all concurrent sessions. An attacker can exploit …

[opcua] Uncontrolled Resource Consumption in opcua

  • Posted inHIGH
  • Posted byGitHub
  • 08/24/202208/31/2022

The package opcua from 0.0.0 are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks – per single session or in total for all concurrent sessions. An attacker can exploit this vulnerability by sending an u…

[ansible-runner] ansible-runner 2.0.0 vulnerable to Race Condition

  • Posted inMODERATE
  • Posted byGitHub
  • 08/24/202209/02/2022

A race condition flaw was found in ansible-runner, where an attacker could watch for rapid creation and deletion of a temporary directory, substitute their directory at that name, and then have access to ansible-runner’s private_data_dir the next time …

[ansible-runner] ansible-runner 2.0.0 default temporary files written to world R/W locations

  • Posted inHIGH
  • Posted byGitHub
  • 08/24/202209/02/2022

A flaw was found in ansible-runner where the default temporary files configuration in ansible-2.0.0 are written to world R/W locations. This flaw allows an attacker to pre-create the directory, resulting in reading private information or forcing ansibl…

[org.jenkins-ci.plugins:collabnet] RabbitMQ password stored in plain text by Jenkins CollabNet Plugins Plugin

  • Posted inLOW
  • Posted byGitHub
  • 08/24/202211/30/2022

Jenkins CollabNet Plugins Plugin 2.0.8 and earlier stores a RabbitMQ password unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.
References

https://…

[org.jenkins-ci.plugins:git] Improper masking of credentials Jenkins in Git Plugin

  • Posted inMODERATE
  • Posted byGitHub
  • 08/24/202211/30/2022

Jenkins Git Plugin 4.11.4 and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log provided by the Git Username and Password (gitUsernamePassword) credentials binding.
References

https://nvd.nist.gov/vuln/detail/C…

[org.jenkins-ci.plugins:jobConfigHistory] Cross-site Scripting in Jenkins Job Configuration History Plugin

  • Posted inMODERATE
  • Posted byGitHub
  • 08/24/202211/29/2022

Jenkins Job Configuration History Plugin 1165.v8cc9fd1f4597 and earlier does not escape the job name on the System Configuration History page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to configure job…

TDK北上新工場、現地で安全祈願祭 EV部品量産へ24年3月ごろ稼働

  • Posted inUncategorized
  • Posted by河北新報
  • 08/24/2022

電子部品大手TDKの完全子会社TDKエレクトロニクスファクトリーズ(秋田県由利本荘市)は23日、岩手…

Posts navigation

Previous Posts 1 … 86,730 86,731 86,732 86,733 86,734 … 86,827 Next Posts

Recent Posts

  • Weather Access
  • BSニュースWorld+Biz
  • シカゴ日本株先物概況・30日 (日本経済新聞)
  • 議員会館捜索、足取り捜査 県議使用の車も押収 (産経新聞)
  • 遠のく非常時ローミングの早期実現。「SIMありアノニマス緊急通報」が今後の鍵か
An error has occurred, which probably means the feed is down. Try again later.
RSS Error: A feed could not be found at `https://nordot.app/-/feed/posts/rss?source_id=646357622673671265&curation_url=true`; the status code is `404` and content-type is `text/html; charset=UTF-8`

What’s Underground News

Underground NewsはオープンRSS情報サイトです。世界中のウェブサイトから情報を収集し、検索のヒントになる情報を掲載しています。登録RSSの追加依頼はこちらから

  • News
  • Twitter
  • Twilog
  • Scrapbox
  • Twitter log
  • Apple News
  • Mastodon log
  • coron news&archives
  • SNSNews
  • TechnoPlanet
  • iTech
  • ComputerJournal
  • Underground News
  • Last.fm
  • はてなブックマーク
  • Tumblr
  • ツイフィール
  • ウェブサイト利用規約
  • Google提供広告の広告設定
  • 他の広告のオプトアウト
  • Valuecommerce配信広告のオプトアウト
  • Zuck配信広告のオプトアウト
  • i-mobile配信広告のオプトアウト
  • Amazon.co.jpパーソナライズド広告の設定
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close