Wednesday, December 28, 2016

IT Security Alerts Weekly Digest (18 Dec ~ 24 Dec 2016)


1. Vulnerabilities in Huawei Products

URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161221-01-ldp-en
URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161207-01-dirtycow-en

2. Vulnerability in Fidelix’s FX-20 series controllers

URL:ics-cert.us-cert.gov/advisories/ICSA-16-357-01

3. Vulnerability in WAGO’s Ethernet Web-based Management products

URL:ics-cert.us-cert.gov/advisories/ICSA-16-357-02

4. Security Update in FreeBSD

URL:security.freebsd.org/advisories/FreeBSD-SA-16:39.ntp.asc

5. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0421.html
URL:advisories.mageia.org/MGASA-2016-0422.html
URL:advisories.mageia.org/MGASA-2016-0423.html

6. Security Update in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00085.html

7. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163241-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163247-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163248-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163249-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163250-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163251-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163252-1.html

8. Vulnerabilities in Cisco Products

URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161221-cco
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161221-jabber

9. Vulnerabilities in F5 Products

URL:support.f5.com/csp/#/article/K29691966
URL:support.f5.com/csp/#/article/K30363030
URL:support.f5.com/csp/#/article/K62442245

10. Vulnerabilities in Xen

URL:xenbits.xen.org/xsa/advisory-202.html
URL:xenbits.xen.org/xsa/advisory-203.html

11. Security Updates in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-December/022183.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022184.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022185.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022186.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022187.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022188.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022189.html

12. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3743

13. Security Update in FreeBSD

URL:www.vuxml.org/freebsd/862d6ab3-c75e-11e6-9f98-20cf30e32f6d.html

14. Security Updates in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2962-1.html
URL:linux.oracle.com/errata/ELSA-2016-3655.html
URL:linux.oracle.com/errata/ELSA-2016-3656.html
URL:linux.oracle.com/errata/ELSA-2016-3657.html
URL:linux.oracle.com/errata/ELSA-2016-2973.html
URL:linux.oracle.com/errata/ELSA-2016-2974.html
URL:linux.oracle.com/errata/ELSA-2016-2975.html

15. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2973
URL:access.redhat.com/errata/RHSA-2016:2974
URL:access.redhat.com/errata/RHSA-2016:2975
URL:access.redhat.com/errata/RHSA-2016:2991
URL:access.redhat.com/errata/RHSA-2016:2994
URL:access.redhat.com/errata/RHSA-2016:2995

16. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163205-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163206-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163207-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163208-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163209-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163210-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163211-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163217-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163221-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163222-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163223-1.html

17. Vulnerabilities in Apache HTTP server

URL:httpd.apache.org/security/vulnerabilities_24.html

18. Vulnerabilities in F5 Products

URL:support.f5.com/csp/#/article/K16712298
URL:support.f5.com/csp/#/article/K51444934

19. Vulnerabilities in VMware Products

URL:www.vmware.com/security/advisories/VMSA-2016-0023.html
URL:www.vmware.com/security/advisories/VMSA-2016-0024.html

20. Security Updates in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-December/022181.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022182.html

21. Security Updates in Debian

URL:www.debian.org/security/2016/dsa-3741
URL:www.debian.org/security/2016/dsa-3742

22. Security Update in FreeBSD

URL:www.vuxml.org/freebsd/942433db-c661-11e6-ae1b-002590263bf5.html

23. Security Updates in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2962.html
URL:linux.oracle.com/errata/ELSA-2016-2963.html

24. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2962
URL:access.redhat.com/errata/RHSA-2016:2963
URL:access.redhat.com/errata/RHSA-2016:2972

25. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163197-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163199-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163203-1.html

26. Security Updates in Ubuntu

URL:www.ubuntu.com/usn/usn-3159-1/
URL:www.ubuntu.com/usn/usn-3159-2/
URL:www.ubuntu.com/usn/usn-3160-1/
URL:www.ubuntu.com/usn/usn-3160-2/
URL:www.ubuntu.com/usn/usn-3161-1/
URL:www.ubuntu.com/usn/usn-3161-2/
URL:www.ubuntu.com/usn/usn-3161-3/
URL:www.ubuntu.com/usn/usn-3161-4/
URL:www.ubuntu.com/usn/usn-3162-1/
URL:www.ubuntu.com/usn/usn-3162-2/

27. Vulnerability in Apache Struts

URL:struts.apache.org/docs/s2-044.html

28. Vulnerability in OpenSSH

URL:www.openssh.com/txt/release-7.4
URL:www.hkcert.org/my_url/en/alert/16122001

29. Vulnerability in Xen

URL:xenbits.xen.org/xsa/advisory-204.html

30. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3740

31. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163193-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163195-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163196-1.html

32. Security Update in Ubuntu

URL:www.ubuntu.com/usn/usn-3158-1/

33. Vulnerability in F5 Products

URL:support.f5.com/csp/#/article/K92859602

34. Vulnerabilities in InfoSphere Information Server

URL:www-01.ibm.com/support/docview.wss?uid=swg21990635

35. Security Updates in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-December/022178.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022179.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022180.html

36. Security Updates in Debian

URL:www.debian.org/security/2016/dsa-3736
URL:www.debian.org/security/2016/dsa-3737
URL:www.debian.org/security/2016/dsa-3738
URL:www.debian.org/security/2016/dsa-3739

37. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00069.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00071.html

38. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163172-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163174-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163183-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163188-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163189-1.html

39. Security Update in Ubuntu

URL:www.ubuntu.com/usn/usn-3156-2/

Sunday, December 18, 2016

IT Security Alerts Weekly Digest (11 Dec ~ 17 Dec 2016)


1. Vulnerabilities in WebSphere Application Server

URL:www-01.ibm.com/support/docview.wss?uid=swg21995526
URL:www-01.ibm.com/support/docview.wss?uid=swg21995780
URL:www-01.ibm.com/support/docview.wss?uid=swg21995990

2. Vulnerability in Huawei Firewall

URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161214-01-firewall-en

3. Vulnerability in Fatek Automation PLC WinProladder

URL:ics-cert.us-cert.gov/advisories/ICSA-16-350-01

4. Vulnerabilities in OmniMetrix OmniView

URL:ics-cert.us-cert.gov/advisories/ICSA-16-350-02

5. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3735

6. Security Update in FreeBSD

URL:www.vuxml.org/freebsd/e47ab5db-c333-11e6-ae1b-002590263bf5.html

7. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0419.html
URL:advisories.mageia.org/MGASA-2016-0420.html

8. Security Update in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00067.html

9. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2954
URL:access.redhat.com/errata/RHSA-2016:2956

10. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163161-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163162-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163169-1.html

11. Vulnerabilities in IBM Notes

URL:www-01.ibm.com/support/docview.wss?uid=swg21988182
URL:www-01.ibm.com/support/docview.wss?uid=swg21989475

12. Vulnerability in Xen

URL:xenbits.xen.org/xsa/advisory-200.html

13. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3734

14. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/512c0ffd-cd39-4da4-b2dc-81ff4ba8e238.html
URL:www.vuxml.org/freebsd/54e50cd9-c1a8-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/80a897a2-c1a6-11e6-ae1b-002590263bf5.html

15. Security Updates in Gentoo Linux

URL:security.gentoo.org/glsa/201612-32
URL:security.gentoo.org/glsa/201612-33
URL:security.gentoo.org/glsa/201612-34
URL:security.gentoo.org/glsa/201612-35
URL:security.gentoo.org/glsa/201612-36
URL:security.gentoo.org/glsa/201612-37
URL:security.gentoo.org/glsa/201612-38
URL:security.gentoo.org/glsa/201612-39
URL:security.gentoo.org/glsa/201612-40
URL:security.gentoo.org/glsa/201612-41
URL:security.gentoo.org/glsa/201612-42
URL:security.gentoo.org/glsa/201612-43

16. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00063.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00066.html

17. Security Update in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2946.html

18. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2946
URL:access.redhat.com/errata/RHSA-2016:2947

19. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163148-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163156-1.html

20. Security Update in Ubuntu

URL:www.ubuntu.com/usn/usn-3157-1/

21. Vulnerabilities in Microsoft Products

URL:technet.microsoft.com/en-us/library/security/ms16-dec
URL:technet.microsoft.com/en-us/library/security/MS16-144
URL:technet.microsoft.com/en-us/library/security/MS16-145
URL:technet.microsoft.com/en-us/library/security/MS16-146
URL:technet.microsoft.com/en-us/library/security/MS16-147
URL:technet.microsoft.com/en-us/library/security/MS16-148
URL:technet.microsoft.com/en-us/library/security/MS16-149
URL:technet.microsoft.com/en-us/library/security/MS16-150
URL:technet.microsoft.com/en-us/library/security/MS16-151
URL:technet.microsoft.com/en-us/library/security/MS16-152
URL:technet.microsoft.com/en-us/library/security/MS16-153
URL:technet.microsoft.com/en-us/library/security/MS16-154
URL:technet.microsoft.com/en-us/library/security/MS16-155

22. Vulnerabilities in Adobe Flash Player

URL:helpx.adobe.com/security/products/flash-player/apsb16-39.html

23. Vulnerabilities in Mozilla Firefox

URL:www.mozilla.org/en-US/security/advisories/mfsa2016-94/
URL:www.mozilla.org/en-US/security/advisories/mfsa2016-95/

24. Vulnerabilities in Apple macOS, Safari, iTunes and iCloud

URL:support.apple.com/kb/HT207421
URL:support.apple.com/kb/HT207423
URL:support.apple.com/kb/HT207424
URL:support.apple.com/kb/HT207427

25. Vulnerabilities in Joomla

URL:developer.joomla.org/security-centre.html

26. Vulnerabilities in Siemens S7-300/400 PLC

URL:ics-cert.us-cert.gov/advisories/ICSA-16-348-05

27. Vulnerabilities in Delta Electronics WPLSoft, ISPSoft, and PMSoft

URL:ics-cert.us-cert.gov/advisories/ICSA-16-348-03

28. Vulnerabilities in Moxa DACenter

URL:ics-cert.us-cert.gov/advisories/ICSA-16-348-02

29. Security Updates in Debian

URL:www.debian.org/security/2016/dsa-3732
URL:www.debian.org/security/2016/dsa-3733

30. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00050.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00057.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00059.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00060.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00061.html

31. Security Update in Slackware

URL:www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.399922

32. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163105-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163109-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163111-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163112-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163113-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163116-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163117-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163119-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163146-1.html

33. Security Updates in Ubuntu

URL:www.ubuntu.com/usn/usn-3155-1/
URL:www.ubuntu.com/usn/usn-3156-1/

34. Vulnerabilities in Apple iOS

URL:support.apple.com/kb/HT207422

35. Vulnerabilities in Apache Tomcat

URL:tomcat.apache.org/security-8.html
URL:tomcat.apache.org/security-9.html

36. Vulnerabilities in McAfee VirusScan Enterprise

URL:kc.mcafee.com/corporate/index?page=content&id=SB10181&actp=null&viewlocale=en_US&showDraft=false&platinum_status=false&locale=en_US

37. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3731

38. Security Update in FreeBSD

URL:www.vuxml.org/freebsd/2d56308b-c0a8-11e6-a9a5-b499baebfeaf.html

39. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00040.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00041.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00047.html

40. Security Updates in Slackware

URL:www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.429698
URL:www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.458719
URL:www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.931787

41. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163083-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163093-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163094-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163096-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163098-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163100-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163104-1.html

42. Vulnerabilities in PHP

URL:www.php.net/ChangeLog-5.php#5.6.29

43. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3730

44. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/c0b13887-be44-11e6-b04f-001999f8d30b.html
URL:www.vuxml.org/freebsd/9e6640fe-be3a-11e6-b04f-001999f8d30b.html

45. Security Updates in Gentoo Linux

URL:security.gentoo.org/glsa/201612-27
URL:security.gentoo.org/glsa/201612-28
URL:security.gentoo.org/glsa/201612-29
URL:security.gentoo.org/glsa/201612-30
URL:security.gentoo.org/glsa/201612-31

46. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0416.html
URL:advisories.mageia.org/MGASA-2016-0417.html
URL:advisories.mageia.org/MGASA-2016-0418.html

47. Security Update in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00034.html

48. Security Updates in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-3651.html
URL:linux.oracle.com/errata/ELSA-2016-3652.html

49. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163063-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163067-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163068-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163069-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163078-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163079-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163080-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163081-1.html

50. Security Update in Ubuntu

URL:www.ubuntu.com/usn/usn-3153-1/

Sunday, December 11, 2016

IT Security Alerts Weekly Digest (4 Dec ~ 10 Dec 2016)



1. Vulnerabilities in PHP

URL:www.php.net/ChangeLog-7.php#7.0.14

2. Vulnerability in Microsoft Remote Desktop Client for Mac

URL:www.hkcert.org/my_url/en/alert/16120901

3. Vulnerabilities in F5 Products

URL:support.f5.com/csp/#/article/K24322529
URL:support.f5.com/csp/#/article/K35246595

4. Vulnerabilities in Adcon Telemetry A850 Telemetry Gateway Base Station

URL:ics-cert.us-cert.gov/advisories/ICSA-16-343-03

5. Vulnerability in Sauter NovaWeb web HMI application

URL:ics-cert.us-cert.gov/advisories/ICSA-16-343-02

6. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3729

7. Security Updates in Gentoo Linux

URL:security.gentoo.org/glsa/201612-20
URL:security.gentoo.org/glsa/201612-21
URL:security.gentoo.org/glsa/201612-22
URL:security.gentoo.org/glsa/201612-23
URL:security.gentoo.org/glsa/201612-24
URL:security.gentoo.org/glsa/201612-25
URL:security.gentoo.org/glsa/201612-26

8. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0414.html
URL:advisories.mageia.org/MGASA-2016-0415.html

9. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00026.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00027.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00028.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00029.html

10. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2927
URL:access.redhat.com/errata/RHSA-2016:2928
URL:access.redhat.com/errata/RHSA-2016:2932
URL:access.redhat.com/errata/RHSA-2016:2933

11. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163052-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163053-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163054-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163056-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163057-1.html

12. Vulnerabilities in Cisco Products

URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-anyconnect1
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-asr
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-asr1
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-asyncos
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-caf
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-cer
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-cer1
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-cons
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-cucm
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-cur
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-esa
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-esa1
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-expressway
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-fireamp
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-firepower
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-fpwr
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-hms
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-icf
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ios
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ios-xe-x509
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-iosxr
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ios-xr
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ios-zbf
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ise
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ise1
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-pca
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-ucm
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-vdc
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-wsa
URL:tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161207-wsa1

13. Vulnerabilities in Huawei Products

URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161207-01-dirtycow-en
URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161207-01-storage-en

14. Vulnerability in Xen

URL:xenbits.xen.org/xsa/advisory-201.html

15. Security Updates in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-December/022170.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022171.html

16. Security Updates in Gentoo Linux

URL:security.gentoo.org/glsa/201612-16
URL:security.gentoo.org/glsa/201612-17
URL:security.gentoo.org/glsa/201612-18
URL:security.gentoo.org/glsa/201612-19

17. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0411.html
URL:advisories.mageia.org/MGASA-2016-0412.html
URL:advisories.mageia.org/MGASA-2016-0413.html

18. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00016.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00017.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00018.html

19. Security Update in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-3648.html

20. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2915
URL:access.redhat.com/errata/RHSA-2016:2919
URL:access.redhat.com/errata/RHSA-2016:2923

21. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163039-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163040-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163041-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163043-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163044-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163046-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163047-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163048-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163049-1.html

22. Security Update in Ubuntu

URL:www.ubuntu.com/usn/usn-3154-1/

23. Vulnerability in Xen

URL:xenbits.xen.org/xsa/advisory-199.html

24. Vulnerability in Locus Energy LGate

URL:ics-cert.us-cert.gov/advisories/ICSA-16-231-01-0

25. Security Update in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-December/022169.html

26. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/0282269d-bbee-11e6-b1cf-14dae9d210b8.html
URL:www.vuxml.org/freebsd/cb0bf1ec-bb92-11e6-a9a5-b499baebfeaf.html
URL:www.vuxml.org/freebsd/e00304d2-bbed-11e6-b1cf-14dae9d210b8.html
URL:www.vuxml.org/freebsd/e722e3c6-bbee-11e6-b1cf-14dae9d210b8.html
URL:www.vuxml.org/freebsd/eab68cff-bc0c-11e6-b2ca-001b3856973b.html

27. Security Updates in Gentoo Linux

URL:security.gentoo.org/glsa/201612-14
URL:security.gentoo.org/glsa/201612-15

28. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00012.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00013.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00014.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00015.html

29. Security Update in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2872.html

30. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2871
URL:access.redhat.com/errata/RHSA-2016:2872

31. Vulnerability in Apache HTTP server

URL:httpd.apache.org/security/vulnerabilities_24.html

32. Vulnerability in WebSphere Application Server

URL:www-01.ibm.com/support/docview.wss?uid=swg21992315

33. Security Update in FreeBSD

URL:www.vuxml.org/freebsd/603fe0a1-bb26-11e6-8e5a-3065ec8fd3ec.html

34. Security Update in Gentoo Linux

URL:security.gentoo.org/glsa/201612-13

35. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0408.html
URL:advisories.mageia.org/MGASA-2016-0409.html
URL:advisories.mageia.org/MGASA-2016-0410.html

36. Security Update in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00010.html

37. Security Update in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2850.html

38. Security Update in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2850

39. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20163001-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163010-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20163014-1.html

40. Security Updates in Ubuntu

URL:www.ubuntu.com/usn/usn-3149-1/
URL:www.ubuntu.com/usn/usn-3149-2/
URL:www.ubuntu.com/usn/usn-3150-1/
URL:www.ubuntu.com/usn/usn-3150-2/
URL:www.ubuntu.com/usn/usn-3151-1/
URL:www.ubuntu.com/usn/usn-3151-2/
URL:www.ubuntu.com/usn/usn-3151-3/
URL:www.ubuntu.com/usn/usn-3151-4/
URL:www.ubuntu.com/usn/usn-3152-1/
URL:www.ubuntu.com/usn/usn-3152-2/

41. Vulnerability in Fortinet FortiOS

URL:fortiguard.com/advisory/FG-IR-16-050

42. Vulnerabilities in PHP

URL:www.php.net/ChangeLog-7.php#7.1.0

43. Security Updates in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-December/022166.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022167.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022168.html

44. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/19d35b0f-ba73-11e6-b1cf-14dae9d210b8.html
URL:www.vuxml.org/freebsd/45ca25b5-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/49211361-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/4aae54be-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/4bf57137-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/4d7cf654-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/50ac2e96-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/523bb0b7-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/53dbd096-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/5555120d-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/56f0f11e-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/58685e23-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/59f79c99-ba4d-11e6-ae1b-002590263bf5.html
URL:www.vuxml.org/freebsd/a228c7a0-ba66-11e6-b1cf-14dae9d210b8.html
URL:www.vuxml.org/freebsd/bc4898d5-a794-11e6-b2d3-60a44ce6887b.html
URL:www.vuxml.org/freebsd/e1f67063-aab4-11e6-b2d3-60a44ce6887b.html
URL:www.vuxml.org/freebsd/e5dcb942-ba6f-11e6-b1cf-14dae9d210b8.html

45. Security Updates in Gentoo Linux

URL:security.gentoo.org/glsa/201612-01
URL:security.gentoo.org/glsa/201612-02
URL:security.gentoo.org/glsa/201612-03
URL:security.gentoo.org/glsa/201612-04
URL:security.gentoo.org/glsa/201612-05
URL:security.gentoo.org/glsa/201612-06
URL:security.gentoo.org/glsa/201612-07
URL:security.gentoo.org/glsa/201612-08
URL:security.gentoo.org/glsa/201612-09
URL:security.gentoo.org/glsa/201612-10
URL:security.gentoo.org/glsa/201612-11
URL:security.gentoo.org/glsa/201612-12

46. Security Updates in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00003.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00005.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00006.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00008.html
URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00009.html

47. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20162964-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162969-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162971-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162974-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162975-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162976-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162988-1.html

48. Security Update in Ubuntu

URL:www.ubuntu.com/usn/usn-3148-1/

Sunday, December 4, 2016

IT Security Alerts Weekly Digest (27 Nov ~ 3 Dec 2016)


1. Vulnerabilities in F5 Products

URL:support.f5.com/kb/en-us/solutions/public/k/49/sol49820145.html
URL:support.f5.com/kb/en-us/solutions/public/k/50/sol50116122.html

2. Vulnerabilities in Google Chrome

URL:googlechromereleases.blogspot.hk/2016/12/stable-channel-update-for-desktop.html

3. Vulnerability in IBM WebSphere Application Server

URL:www-01.ibm.com/support/docview.wss?uid=swg21991469

4. Vulnerabilities in Siemens SICAM PAS

URL:ics-cert.us-cert.gov/advisories/ICSA-16-336-01

5. Vulnerabilities in Moxa NPort Device

URL:ics-cert.us-cert.gov/advisories/ICSA-16-336-02

6. Vulnerabilities in Mitsubishi Electric MELSEC-Q Series Ethernet Interface Module

URL:ics-cert.us-cert.gov/advisories/ICSA-16-336-03

7. Vulnerabilities in Advantech SUSIAccess Server

URL:ics-cert.us-cert.gov/advisories/ICSA-16-336-04

8. Vulnerabilities in Smiths-Medical’s CADD-Solis Medication Safety Software

URL:ics-cert.us-cert.gov/advisories/ICSMA-16-306-01

9. Security Updates in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-December/022163.html
URL:lists.centos.org/pipermail/centos-announce/2016-December/022165.html

10. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3728

11. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/18f39fb6-7400-4063-acaf-0806e92c094f.html
URL:www.vuxml.org/freebsd/7fff2b16-b0ee-11e6-86b8-589cfc054129.html

12. Security Update in openSUSE

URL:lists.opensuse.org/opensuse-security-announce/2016-12/msg00001.html

13. Security Update in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2843.html

14. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2842
URL:access.redhat.com/errata/RHSA-2016:2843
URL:access.redhat.com/errata/RHSA-2016:2847
URL:access.redhat.com/errata/RHSA-2016:2848

15. Security Updates in Slackware

URL:www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.403767
URL:www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.408458

16. Security Update in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20162958-1.html

17. Security Updates in Ubuntu

URL:www.ubuntu.com/usn/usn-3133-1/
URL:www.ubuntu.com/usn/usn-3140-1/
URL:www.ubuntu.com/usn/usn-3141-1/

18. Vulnerability in Mozilla Firefox

URL:www.mozilla.org/en-US/security/advisories/mfsa2016-92/

19. Vulnerabilities in Huawei Products

URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161130-01-espace-en
URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161130-01-ldap-en
URL:www.huawei.com/en/psirt/security-advisories/huawei-sa-20161130-01-switch-en

20. Security Update in Debian

URL:www.debian.org/security/2016/dsa-3727

21. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/479c5b91-b6cc-11e6-a04e-3417eb99b9a0.html
URL:www.vuxml.org/freebsd/48e83187-b6e9-11e6-b6cf-5453ed2e2b49.html

22. Security Updates in Gentoo Linux

URL:security.gentoo.org/glsa/201611-21
URL:security.gentoo.org/glsa/201611-22

23. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0406.html
URL:advisories.mageia.org/MGASA-2016-0407.html

24. Security Updates in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2837
URL:access.redhat.com/errata/RHSA-2016:2839

25. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20162952-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162953-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162954-1.html

26. Security Updates in Ubuntu

URL:www.ubuntu.com/usn/usn-3140-1/
URL:www.ubuntu.com/usn/usn-3142-1/
URL:www.ubuntu.com/usn/usn-3143-1/
URL:www.ubuntu.com/usn/usn-3144-1/
URL:www.ubuntu.com/usn/usn-3144-2/
URL:www.ubuntu.com/usn/usn-3145-1/
URL:www.ubuntu.com/usn/usn-3145-2/
URL:www.ubuntu.com/usn/usn-3146-1/
URL:www.ubuntu.com/usn/usn-3146-2/
URL:www.ubuntu.com/usn/usn-3147-1/

27. Vulnerability in F5 Products

URL:support.f5.com/kb/en-us/solutions/public/k/36/sol36300805.html

28. Vulnerability in Emerson’s Liebert SiteScan application

URL:ics-cert.us-cert.gov/advisories/ICSA-16-334-01

29. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/125f5958-b611-11e6-a9a5-b499baebfeaf.html
URL:www.vuxml.org/freebsd/18449f92-ab39-11e6-8011-005056925db4.html
URL:www.vuxml.org/freebsd/f90fce70-ecfa-4f4d-9ee8-c476dbf4bf0e.html

30. Security Update in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2825.html

31. Security Update in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2825

32. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20162936-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162938-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162941-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162942-1.html

33. Vulnerability in Mozilla Firefox

URL:www.mozilla.org/en-US/security/advisories/mfsa2016-91/

34. Vulnerability in F5 Products

URL:support.f5.com/kb/en-us/solutions/public/k/01/sol01587042.html

35. Security Updates in CentOS

URL:lists.centos.org/pipermail/centos-announce/2016-November/022161.html
URL:lists.centos.org/pipermail/centos-announce/2016-November/022162.html

36. Security Update in Oracle Linux

URL:linux.oracle.com/errata/ELSA-2016-2824.html

37. Security Update in Red Hat

URL:access.redhat.com/errata/RHSA-2016:2824

38. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20162932-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162933-1.html

39. Security Updates in Ubuntu

URL:www.ubuntu.com/usn/usn-3135-2/
URL:www.ubuntu.com/usn/usn-3138-1/
URL:www.ubuntu.com/usn/usn-3139-1/

40. Security Updates in FreeBSD

URL:www.vuxml.org/freebsd/6fe72178-b2e3-11e6-8b2a-6805ca0b3d42.html
URL:www.vuxml.org/freebsd/8db24888-b2f5-11e6-8153-00248c0c745d.html

41. Security Updates in Debian

URL:www.debian.org/security/2016/dsa-3723
URL:www.debian.org/security/2016/dsa-3724
URL:www.debian.org/security/2016/dsa-3725
URL:www.debian.org/security/2016/dsa-3726

42. Security Updates in Mageia

URL:advisories.mageia.org/MGASA-2016-0397.html
URL:advisories.mageia.org/MGASA-2016-0398.html
URL:advisories.mageia.org/MGASA-2016-0399.html
URL:advisories.mageia.org/MGASA-2016-0400.html
URL:advisories.mageia.org/MGASA-2016-0401.html
URL:advisories.mageia.org/MGASA-2016-0403.html
URL:advisories.mageia.org/MGASA-2016-0404.html
URL:advisories.mageia.org/MGASA-2016-0405.html

43. Security Updates in SUSE

URL:www.suse.com/support/update/announcement/2016/suse-su-20162911-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162912-1.html
URL:www.suse.com/support/update/announcement/2016/suse-su-20162915-1.html