$B%;%-%e%j%F%#%[!<%k(B memo - 2002.09

Last modified: Fri Dec 13 21:03:58 2002 +0900 (JST)


$B"#(B 2002.09.30

$B"#(B Allot Netenforcer problems, GNU TAR flaw
(bugtraq, Fri, 27 Sep 2002 09:11:07 +0900)

$B!!(B2. Description of the "tar" problem $B$O!"(BGNU tar $B$K$*$$$F!"(Btar $B%"!<%+%$%V$K(B ../ $B$J%Q%9L>F~$j$N%U%!%$%k$r;E9~$s$G$*$/$H!"(B $B$=$N%"!<%+%$%V$NE83+;~$K(B /etc/passwd $B$J$I$N=EMW%U%!%$%k$r>e=q$-$5$;$k$3$H$,$G$-$k!"$H$$$&;XE&$J$N$+$J!#(B 1.3.19 $B0JA0$NLdBj!"$H$5$l$F$$$?$,!"(B1.3.25 $B$G$bN`;w$NLdBj$,$"$kLOMM!#(B CVE: CAN-2001-1267$B!"(B CAN-2002-0399 ($BCf?H$,$J$$!D!D(B)$B!#(B

$B!!$5$i$K!"(Binfo-zip $B$N(B unzip 5.42 $B0JA0$K$bF1MM$NLdBj$,$"$k$h$&$@!#(B CVE: CAN-2001-1268, CAN-2001-1269$B!#(BHistory.550 $B$K$"$k$3$l$+$J(B?

5.5h (12 Jan 02):
 - unzip.h, unzip.c; mapname() in all ports except CMS/MVS, Tandem, TOPS20:
   added code to strip "../" path components from extracted names and new
   option "-:" to allow deactivating this security feature; changed mapname()

$B!!(BRed Hat fix: [RHSA-2002:096-24] Updated unzip and tar packages fix vulnerabilities$B!#(B FreeBSD ports $B$N(B archivers/gtar $B$K$O$3$N(B patch $B$O4^$^$l$F$$$J$5$=$&!#(B

2002.10.02 $BDI5-(B:

$B!!(BCAN-2002-0399 $B$OCf?H$,$G$-$F$^$9!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.17 $B$N(B MS Word$B$KJ8=q$N%O%$%8%c%C%/$r5v$9LdBjE@(B $B$KDI5-$7$?!#(BCIACTech02-005$B!#(B

$B"#(B $BBh#4#7#72sM};v2qJs9p(B
($B>pJs=hM}3X2q(B, 2002.09.25)

$B!!J?@.(B14$BG/(B7$B7n(B24$BF|!J?e!K(B17:30$B!A(B20$B!'(B50 $B3+:E$NBh(B 477 $B2sM};v2q!#D>8e$@$H8@$&$N$K!"%&%#%k%9%a!<%kAw?.A{$.$K$D$$$F!"2?$N5DO@$b$7$F$$$J$$LOMM!#(B $B$"$^$j$K%@%a$9$.!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.24 $B$N(B $BIY;NDL(B HDD $BL5=~8r49$OI9;3$N0l3Q(B? $B9b29B?<>$N>u672<$G(BLSI$B$,7PG/Nt2=(B $B$KDI5-$7$?!#%=%K!

$B"#(B $B%3%9%H:o8:$G(BHDD$B$NJ]>Z4|4VC;=L$X(B
(ZDNet, 2002$BG/(B9$B7n(B30$BF|!!(B12:01 PM)

$B!!;~Be$O!V$U$D$&(B RAID 1$B!W$C$F%3%H$J$s$G$7$g$&$+!#$^$!!"0B$$$G$9$1$I$M$'!#(B

$B"#(B OpenBSD, OpenSSL$B$H7mJL(B
(slashdot.jp, 2002.09.27)

$B!!(B$B%5%s$,(BOpenSSL$B%W%m%8%'%/%H$K0E9f2=5;=Q$rDs6!(B (CNET) $B$NOC$K$O!"#173053 $B$b;2>H!#(BDebian GNU/Linux $B$5$s$O$I$&$5$l$k$s$@$m$&!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.27 $B$N(B Tests of Anti-Virus Software: Comparison Test 2002-02 (Unix) Linux $B$KDI5-$7$?!#(B F-Secure AntiVirus $B$O!"(B--dumb $B%*%W%7%g%s$r$D$1$l$P$[$\(B 100% $B$NLOMM!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.12 $B$N(B Apple QuickTime ActiveX v5.0.2 Buffer Overrun (a091002-1) $B$KDI5-$7$?!#$*$/$l$P$;$J$,$i!"(BApple $B%*%U%#%7%c%k>pJs$rDI5-!#(B QuickTime 5 for Windows $BMQ$N(B fix $B$O=P$J$$LOMM!#(B


$B"#(B 2002.09.27

$B"#(B Smart HTML $B%$%s%?!<%W%j%?$G%P%C%U%!%*!<%P!<%i%s$K$h$j%3!<%I$,
(Microsoft, 2002.09.26)

$B!!(BMicrosoft FrontPage Server Extension 2000/2002 $B$Kl9g$O%P%C%U%!%*!<%P!<%U%m!<$9$kLdBj$b$"$j!"30It$+$iG$0U$N%3!<%I$r

$B!!(Bpatch $B$,$"$k$N$GE,MQ$9$l$P$h$$!#Ev=i(B FPSE 2000 for Windows 2000/XP $B$@$1$@$C$?$,!"(BFPSE 2002 $BMQ!"(BFPSE 2000 for NT 4.0 $BMQ$bEP>l$7$F$$$k!#(B Windows XP SP1 $B$K$O$3$N(B patch $B$,4^$^$l$F$$$k!#(B $B$^$?!"(BFPSE 2002 $BMQ(B patch $B$rE,MQ$9$k$K$O!"$"$i$+$8$a%"%C%W%G!<%H(B patch $B$rE,MQ$7$F$*$/I,MW$,$"$k$=$&$@!#(B Q317296 $B$r;2>H$5$l$?$$!#(B

$B!!$J$*!"(BFPSE $B$,ITMW$J>l9g$O%"%s%$%s%9%H!<%k$7$F$7$^$&$N$,$h$$!#(B $B%G%U%)%k%H$G$O%$%s%9%H!<%k$5$l$F$7$^$C$F$$$k$N$GCm0U$5$l$?$$!#(B

2002.12.13 $BDI5-(B:

$B!!(BFPSE 2000 / 2002 for UNIX $B$K$O$3$NLdBj$O$J$$$=$&$@!#;2>H(B:

$B"#(B UNIX fixes
(various)

Debian GNU/Linux
Red Hat Linux
SGI IRIX

$B"#(B $B%^%$%/%m%=%U%H$N(BVPN$B$K@H
(CNET, 2002$BG/(B9$B7n(B27$BF|!J6b!K(B16$B;~(B31$BJ,(B JT)

$B!!(BMicrosoft PPTP Server and Client remote vulnerability $B$NOC!#(BCNET $B$N5-;v$K$h$l$P!"(BMicrosoft $B$OG$0U$N%3!<%I$N

$B"#(B $BDI5-(B

$B!!(B2002.08.21 $B$N(B web $B%V%i%&%64XO"(B $B$KDI5-$7$?!#(BMS02-050: $B>ZL@=q3NG'$NLdBj$K$h$j!"(BID $B$,56Au$5$l$k(B (Q328145) $B$,2~D{!#(B Mac OS / Mac OS X $BMQ(B IE $B=$@5HG$,?7$?$KEP>l!#$^$@(B fix $B$,$J$$$N$O(B XP 64bit, Office 98/2001/v.X for Mac$B!"(B OutlookExpress for Mac$B!#(B

$B"#(B Tests of Anti-Virus Software: Comparison Test 2002-02 (Unix) Linux
(Sophos Anti-Virus for Unix - $BK~E@!*(B, 2002.09.17)

$B!!(BLinux $BMQ(B anti-virus soft 12 $B$BF|K\%(%U!&%;%-%e%"!"%"%s%A%&%#%k%9(BLinux$B%2!<%H%&%'%$$rH/I=(B (f-secure.co.jp) $B$J$s$F$N$b=P$F$^$9$,!"!D!D!#(B

$B!!(BComparison Test 2002-03 (Unix) FreeBSD, OpenBSD, Solaris $B$b=P$F$^$9!#(BSophos AntiVirus$B!"(BLinux $B$d(B FreeBSD $B$G$O(B 100% $B$J$N$K(B Solaris $B$G$O(B 94.6% $B$J$N$O$J$<(B?

2002.09.30 $BDI5-(B:

$B!!F|K\%(%U%;%-%e%"$N5H2,$5$s$+$i(B ($B$"$j$,$H$&$4$6$$$^$9(B):

$B!|(B1. $B!V(BF-Secure $B$@$1(B 80% $BBf!#!W$O3HD%;R@_Dj$N0c$$$K$h$k$b$N$G$9!#(B
$B!!!!!V(B--dumb$B!W%*%W%7%g%s$r;XDj$9$k$3$H$G$[$\A4$F$N%&%$%k%9$r8!=P$$$?$7$^$9!#(B

$B!!(Bav-test.org$B$NI>2ACf$N!V(BF-Secure$B!W$N9`L\$O3N$+$K(B80%$BBf$H$J$C$F$*$j$^$9$,!"$3$l$O!"%F%9%HCf$N(BF-Secure$B%3%^%s%I%i%$%sHG%9%-%c%J$N@_Dj$,B>$N%=%U%H%&%'%"$H0[$J$j!"%F%9%HBP>]%U%!%$%k$K4^$^$l$k$$$/$D$+$N3HD%;R$,8!::BP>]30$K$J$C$F$$$k$?$a$G$9!#(B
$B!!%U%!%$%kL>$rD>@\;XDj$9$k$+!V(B--dumb$B!W%*%W%7%g%s$r;XDj$7!"3HD%;R$K$h$i$J$$8!::$r9T$&$3$H$G!"$[$\A4$F$N%&%$%k%9$r8!=P$$$?$7$^$9!#(B $B7h$7$F(BF-Secure$B$N8!::%(%s%8%s<+BN$NG=NO$,Nt$C$F$$$k$o$1$G$O$J$$$3$H$r$4M}2r4j$$$^$9!#(B
$B!!$J$*!"3HD%;R$K$h$i$J$$8!::$r$7$?>l9g$N8!=PN($N0lIt$,!"(Bav-test.org$B$N0J2<$N%Z!<%8$N!V(BBest possible settings$B!W$N9`L\$G3NG'$G$-$^$9!#(B
$B!!!!!!!!(Bhttp://www.av-test.org/down/data/2002-02-en/results.xls
$B!!3HD%;R@_Dj$N7o$r4^$a$F3F%(%s%8%s$NF0:n>\:Y%3%a%s%H$,(Bav-test.org$B$N0J2<$N%Z!<%8$G$b3NG'$G$-$^$9!#(B
$B!!!!!!!!(Bhttp://www.av-test.org/down/data/2002-02-en/comments.txt
$B!!$^$?!"(BF-Secure$B$G$O(B24$B;~4VBN@)$G3hF0$9$k%&%#%k%98&5f%A!<%`$rMJ$7$F$*$j!"?75,$KH/@8$9$k%&%#%k%9$KBP$7$F$b?WB.$KBP1~$7$F$$$^$9$N$G!"%&%$%k%9$K46@w$9$k2DG=@-$O6K$a$F>/$J$$$H9M$($i$l$^$9!#(B

$B!|(B2. $B!V(BF-Secure $B%"%s%A%&%#%k%9(BLinux$B%2!<%H%&%'%$$rH/I=(B (f-secure.co.jp) $B$J$s$F$N$b=P$F$^$9$,(B...$B!W$K$D$$$F$O!"(B"F-Secure $B%"%s%A%&%$%k%9(BLinux$B%2!<%H%&%'%$(B"$B$O%3%^%s%I%i%$%sHG(B(Linux$B%5!<%PHG(B)$B$H$OJL@=IJ$G$"$j!"%G%U%)%k%H@_Dj$G$[$\A4$F$N%&%$%k%9$r8!=P$$$?$7$^$9!#(B
$B!!!!(B(F-Secure$B%"%s%A%&%#%k%9(BLinux$B%2!<%H%&%'%$(B:
$B!!!!!!!!(Bhttp://www.f-secure.co.jp/products/linux_gw/index.html )

$B!!@hF|H/I=$$$?$7$^$7$?!V(BF-Secure$B%"%s%A%&%#%k%9(BLinux$B%2!<%H%&%'%$!W$G$OA4$F$N3HD%;R$r8!::$$$?$7$^$9$N$G!"$[$\A4$F$N%&%$%k%9$r8!=P$$$?$7$^$9!#(B
$B!!7h$7$F!"!V(BF-Secure$B%"%s%A%&%#%k%9(BLinux$B%2!<%H%&%'%$!W$N%&%$%k%98!::G=NO$NG=NO$,Nt$C$F$$$k$o$1$G$O$J$$$3$H$r$4M}2r4j$$$^$9!#(B
$B!!!V(BF-Secure$B%"%s%A%&%#%k%9(BLinux$B%2!<%H%&%'%$!W$K$D$$$F$O0J2<$N%Z!<%8$G(B90$BF|4V;nMQHG$b8x3+$7$F$*$j$^$9$N$GI,MW$K1~$8$FI>2AEy$K$4MxMQ$$$?$@$1$^$9$H9,$$$G$9!#(B
$B!!!!(BF-Secure$B%"%s%A%&%#%k%9(BLinux$B%2!<%H%&%'%$(B[90$BF|4VI>2AHG(B]:
$B!!!!!!!!(Bhttp://www.f-secure.co.jp/download/trial/index.html

$B"#(B 2002.09.25

$B"#(B [ANNOUNCE] Apache 2.0.42 Released
(Apache-Users 1918, Wed, 25 Sep 2002 09:52:52 +0900)

$B!!(Bapache 2.0.42 $B=P$^$7$?!#(Bmod_dav $B$G(B DoS $B967b$5$l$k%P%0$,(B fix $B$5$l$F$$$k$=$&$G$9!#(B

$B"#(B [harden-mac:0114] Fw: PMTUD breakage at www.apple.com and downloads.apple.com
(harden-mac ML, Mon, 23 Sep 2002 14:44:49 +0900 (JST))

$B!!(Bpath MTU discovery $B$,DL$k$h$&$J(B wall / $B%U%#%k%?$r9=C[$9$k$h$&$K?4$,$1$^$7$g$&!#(BICMP need fragment $B$O$J$k$Y$/%U%#%k%?$7$J$$$h$&$K$7$^$7$g$&!#(B

$B"#(B Tripwire$B$K$h$k%U%!%$%k2~$6$s$N8!CN(B $BBh(B 1 $B2s(B Tripwire$B$rF3F~$9$k!]$=$N(B1
(ZDNet, 2002.09.11)

$B!!(Bsourceforge $B$+$i$@$H(B tripwire-2.3.1-2 $B$,F~tripwire.org $B$N$d$D$O$A$g$C$H!D!D!#(B

$B"#(B Slashcode$B$K0lIt%f!<%6$N%Q%9%o!<%I$,O3$l$k%j%9%/(B($BBP=h:Q(B)
(slashdot.jp, Tuesday September 24, @07:18AM)

$B!!(B#170987 $B$G(B jbeef $B;a$O(B

$B;XE&$r$7$?B&$b!"!VLdBj$J$$!W$HH]Dj$5$l$k$H!J$=$7$F$=$l$,4V0c$C$F$$$k$H!K$=$l$K:FH?O@$9$k$N$KM>7W$J%(%M%k%.!<$rI,MW$H$7$F$7$^$&$N$,?M>p$@$H;W$$$^$9(B

$B$H=R$Y$F$$$k$o$1$@$,!"$=$ND>8e$+$i!"7W$J%(%M%k%.!<$rI,MW$H$7$F$$$=$&$J:FH?O@$rM>57$J$/$5$l$F$$$k$h$&$G!"$J$s$@$+$J$"!#(B

$B"#(B $B4IM}
(@IT, 2002.09.25)

$B!!8D?ME*$K$O!"$d$C$Q$j%3%i%`$,6=L#?<$$!#(B


$B"#(B 2002.09.24

$B"#(B [memo:4863] [Mac OS X] $B
(memo ML, Sat, 21 Sep 2002 17:35:11 +0900)

$B!!(BMac OS X 10.2, 10.2.1 $B$Ke$GG$0U$N%7%'%k%3%^%s%I$r[memo:4864] $B$b;2>H!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.21 $B$N(B Bypassing SMTP Content Protection with a Flick of a Button $B$KDI5-$7$?!#%H%l%s%I%^%$%/%m(B solution 4732/4742 $BEP>l!#(B

$B"#(B $BIY;NDL(B HDD $BL5=~8r49$OI9;3$N0l3Q(B? $B9b29B?<>$N>u672<$G(BLSI$B$,7PG/Nt2=(B
($BF|7P(B BizTech, Rankin'BizTech:2002/09/24)

$B!!HH?M$O=;M'%Y!<%/%i%$%H$N%Q%C%1!<%8Iu;_:`!V(BEME-U$B!W$NLOMM!#(B $B1F6A$,6K$a$F9-$$HO0O$K$o$?$k62$l$"$j!#(B HDD$BITNIIJ$NL5=~8r49$GIY;NDL$NIiC4$O(B100$B2/1_D6$9(B ($BF|7P(B BP) $B$N$@$=$&$G!#$9$4$$$M!#(B

$B!!(BIO DATA: $BJ@$B!#3:EvIJ$O!"4uK>

2002.09.30 $BDI5-(B:

$B!!(B$B%=%K! (PC Watch)$B!#(B

2002.10.02 $BDI5-(B:

$B!!(B$BIY;NDL(BHDD$BITNI!"BP:vCY$lB>@=IJ$XGH5Z7|G0(B ($BF|7P(B BizTech)$B!#(B

$B"#(B $B%P%C%U%!!&%*!<%P!<%U%m!<$NH/@8$rM^$($kJ}K!(B
($BF|7P(B IT Pro, 2002.09.20)

$B!!(BVisual C++ .NET $B$N(B /GS $B%9%$%C%A(B $B$d(B IBM $B9>F#$5$s$N(B ProPolice (SSP)$B!"(B FreeBSD packages/ports $B$K$bF~$C$F$$$k(B libparanoia $B$,>R2p$5$l$F$$$J$$$N$O$J$<(B?

$B"#(B $BDI5-(B

$B!!(B2002.09.17 $B$N(B CERT Advisory CA-2002-27 Apache/mod_ssl Worm $B$KDI5-$7$?!#0!l!#(B


$B"#(B 2002.09.20

$B"#(B Bypassing SMTP Content Protection with a Flick of a Button
(securiteam, Thu, 12 Sep 2002 21:24:39 +0900)

$B!!(BRFC2046: Multipurpose Internet Mail Extensions (MIME) Part Two: Media Types $B$N(B section 5.2.2.1 $B$GDj5A$5$l$F$$$k(B Fragmentation and Reassembly $B5!9=$rMxMQ$9$k$H!"%"%s%A%&%#%k%9%2!<%H%&%'%$$r2sHr$7$F%&%#%k%9$rAw$j9~$`$3$H$,2DG=$K$J$k!"$H$$$&OC!#(BNIDS $B2sHr%M%?$K$b$=$&$$$&$N$,$"$j$^$7$?$M$(!#(B

$B!!2sHrJ}K!$H$7$F$O!"%U%!%$%"%&%)!<%k$J$I$G(B message/partial $B$J%a!<%k$rC!$-Mn$H$7$F$7$^$&J}K!$,$"$k!#$H8@$C$F$b!"$A$g$C$HMpK=$@$h$M$'!#$d$O$j%"%s%A%&%#%k%9%2!<%H%&%'%$<+?H$,$-$A$s$HBP1~$9$k$3$H$,K>$^$7$$$o$1$G!#(B $B855-;v$G$O(B symantec $B$d(B trendmicro $B$J$I$$$/$D$b$N%W%m%@%/%H$NBP1~>u67$,=R$Y$i$l$F$$$kB>!"(B MIMEDefang $B$G$O(B 2.21 $B$G(B fix $B$5$l$?$=$&$@!#$^$?(B amavis-perl $B$G$bMxMQ$5$l$F$$$k(B MIME::Tools 5.411a $B$K$b(B$B$3$NLdBj$,$"$j(B$B!"(B patch $B$H!"$3$N(B patch $B$rE,MQ$7$?(B MIME-tools-5.411a-RP-Patched.tar.gz $B$,8x3+$5$l$F$$$k!#(B

$B!!$J$*!"3F<+$G>u67$r;n$7$?$$>l9g$O(B http://www.gfi.com/emailsecuritytest/ $B$K(B go! $B$i$7$$!#(B

$B!!(BCVE: CAN-2002-1121$B!#(B CERT Vulnerability Note: VU#836088$B!#(B

2002.09.24 $BDI5-(B:

$B!!(Bsolution 4742: InterScan VirusWall UNIX: SMTP$B!'J,3d%a!<%k$X$NBP1~(B$B!"(B solution 4732: InterScan VirusWall NT: SMTP$B!'J,3d%a!<%k$X$NBP1~(B ($B%H%l%s%I%^%$%/%m(B)$B!#(Bmessage/partial $B$r3VN%$7$F=*$j!"$N$h$&$KFI$a$k!#(B

$B"#(B MS02-052: Microsoft VM JDBC $B%/%i%9$NLdBj$K$h$j!"%3!<%I$,
(Microsoft, 2002.09.19)

$B!!(BMicrosoft Java VM build 3805 $B0JA0$K(B 3 $B$D$N

  1. $B$"$i$f$k(B DLL $B$rFI$_9~$_!"

  2. $B;HMQITG=967b(B (IE $B$N0[>o=*N;(B) $B$,2DG=$G!"G$0U$N%3!<%I$N

  3. Java $B%"%W%l%C%H$+$i$9$Y$F$NG$0U$NA`:n$r

$B$H$$$&!"$$$:$l$b6K$a$F4m81$J

$B!!$J$*!"$3$N(B patch $B$rE,MQ$7$F$b!"(Bjview $B%3%^%s%I$J$I$G3NG'$G$-$k(B build $BHV9f$KJQ2=$O$J$$$h$&$@!#(BKB Q329077 $B$K$O(B This update upgrades your Microsoft VM with the 5.00.3807 patch $B$H$"$j!"<($5$l$F$$$k%l%8%9%H%j$K$b(B "Version"="5,00,3807,0" $B$J$s$F=q$$$F$"$k$N$@$,!"(BMS02-052 $B<+?H$K$O$o$6$o$6!V(B$BCm(B : Jview $B$K$h$jI=<($5$l$k%P!<%8%g%sHV9f$K4X$o$i$:!">e5-$N%l%8%9%H%j%-!<$O$3$N=$@5%W%m%0%i%`$N@5$7$$%$%s%9%H!<%k$r3NG'$9$kMWAG$H$J$j$^$9(B$B!W$H=q$$$F$"$k$N$G!"$=$&$$$&$3$H$J$N$@$m$&!#$$$^$$$AGpJs$"$j$,$H$&$4$6$$$^$9(B)

$B!!$H$3$m$,!"(BMicrosoft Java VM $B$K$O$BJF(BMicrosoft$B$N(BJava$B%;%-%e%j%F%#!<%[!<%k=$@5$OIT==J,$HH/8+ (INTERNET Watch)$B!#(B MS02-052 $B$G(B fix $B$5$l$?$N$O!"(B Vulnerabilities in Microsoft's Java implementation $B$G!V(B10 $B$r1[$($k7j$,$"$k!W$H$5$l$?$b$N$NCf$N0lIt$K$9$.$J$$$H$$$&$N$@!#(B $B$R$-$D$E$-!"(BJava $B$r(B off $B$K$9$k$+!"(BSun $B$N(B Java Plug-in $B$J$I$rMxMQ$9$k$+!"$9$kI,MW$,$"$k$h$&$@!#(B

2002.10.01 $BDI5-(B:

$B!!(BTechnical information about the vulnerabilities fixed by MS-02-52$B!#(B

$B"#(B MS02-051: RDP $B%W%m%H%3%k$N0E9f$NLdBj$K$h$j!"(B $B>pJs$,O3$($$$5$l$k(B (Q324380)
(Microsoft, 2002.09.19)

$B!!(BWindows 2000 $B%?!<%_%J%k%5!<%P!

$B!!(Bpatch $B$,$"$k$N$GE,MQ$9$l$P$h$$!#$^$?(B Windows XP SP1 $B$G$O$3$NLdBj$O=$@5$5$l$F$$$k!#(B

$B!!;2>H(B: Microsoft Windows XP Remote Desktop denial of service vulnerability$B!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.19 $B$N(B $BKI1RD#$N%G!<%?N.=P$GO*Dh!J>e!K(BIT$B6H3&$N2<@A$19=B$$N4m$&$5(B $B$KDI5-$7$?!#!J2l!#(B

$B"#(B SecurityFocus Newsletter #159$B!A(B161
(bugtraq-jp)

$B!!(BHTML $BHG(B:

$B!!%F%-%9%HHG(B:


$B"#(B 2002.09.19

$B"#(B $BDI5-(B

$B!!(B2002.06.25 $B$N(B WindowsXP$B$N(B5/30$BLdBj$r9M$($k%Z!<%8(B $B$KDI5-$7$?!#(BWindows XP SP1 $B$rE,MQ$9$k$H!"LdBj$,>CLG$7$F$7$^$&(B?!

$B"#(B Internet Explorer 6 Service Pack 1
([memo:4853], Thu, 19 Sep 2002 14:21:57 +0900)

$B!!@5<0$KEP>l$7$F$$$^$9!#(BIE 6 SP1 README $B$bFI$_$^$7$g$&!#FC$K!"%;%-%e%j%F%#3HD%$N$?$a$N5!G=(B: $B0J9_!#(B

$B"#(B $BDI5-(B

$B!!(B2002.07.31 $B$N(B OpenSSL Security Advisory [30 July 2002] $B$KDI5-$7$?!#(BDebian $B$N$5$i$K?7$7$$(B fix package $B=P$F$^$9!#(B Turbolinux $B$N7Y9p!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.17 $B$N(B UNIX fixes $B$KDI5-$7$?!#(BFreeBSD-SA-02:39.libkvm - Applications using libkvm may leak sensitive descriptors $B$NItJ,$KDI5-$H=$@5!#%P%+$9$.(B > $B26!#(B

$B"#(B $BKI1RD#$N%G!<%?N.=P$GO*Dh!J>e!K(BIT$B6H3&$N2<@A$19=B$$N4m$&$5(B
($BF|7P(B IT Pro, 2002.09.19)

$B!!$I$&9M$($F$b!VI9;3$N0l3Q!W!#$3$3$G$bI,MW$H$5$l$F$$$k$N$O!V9=B$2~3W!W$J$N$@$,!"!D!D!#(B

2002.09.21 $BDI5-(B:

$B!!(B$BKI1RD#$N%G!<%?N.=P$GO*Dh!J2 ($BF|7P(B IT Pro)$B!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.17 $B$N(B MS Word$B$KJ8=q$N%O%$%8%c%C%/$r5v$9LdBjE@(B $B$KDI5-$7$?!#(BMicrosoft $B8x<08+2rEP>l!#(B

$B"#(B Windows XP SP1$B$N40@.EY$r1QJ8%I%-%e%a%s%H$GC5$k(B
($BF|7P(B IT Pro, 2002.09.17)

$B!!?tJ,$GFI$a$F$7$^$&$N$@$1$I!"7P83>e(B ($B>P(B)$B!"$3$N5-;v$r=q$/$N$O$?$$$X$s$@$C$?$@$m$&$H;W$&!#$=$s$JO+:n$rL5NA$GFI$a$k$N$OK\Ev$K$"$j$,$?$$$3$H$G$9!#(B


$B"#(B 2002.09.18


$B"#(B 2002.09.17

$B"#(B MS Word$B$KJ8=q$N%O%$%8%c%C%/$r5v$9LdBjE@(B
(ZDNet, 2002.09.14)

$B!!;2>H(B: Security side-effects of Word fields$B!#(B $B1#$7%U%#!<%k%I!"$G$9$+!D!D!#(B

2002.09.19 $BDI5-(B:

$B!!(B$BJs9p$5$l$?(B Microsoft Word $B%U%#!<%k%I$N@HpJs(B (Microsoft)$B!#(B $B!V(B$B:GA1$N%;%-%e%j%F%#$N$?$a$K!"%^%$%/%m%=%U%H$O$*5RMM$K(B Word 2002 (Office XP) $B$r$4MxMQ$$$?$@$/$3$H$r?d>)$7$^$9(B$B!W(B $B$H$$$&$N$O!"$^$"!"(BMicrosoft $B$H$7$F$O!"$=$&$J$s$@$m$&$J$"!#(B

2002.09.30 $BDI5-(B:

$B!!(BCIACTech02-005: Understanding Capturing Files with Microsoft Word Field Codes (CIAC)$B!#(B $B>\:Y$J2r@b!#(B

2002.11.01 $BDI5-(B:

$B!!(BMS02-059: Word $B%U%#!<%k%I$*$h$S(B Excel $B$N30It%G!<%?99?7$NLdBj$K$h$j!">pJs$,O3$($$$5$l$k(B (Q330008) $BEP>l!#(BWord 97/98/2000/2002, Excel 2002, Word 98/2001/X for Macintosh $B$GLdBj$,H/@8$9$k!#(B Word 2000/2002, Excel 2002, Word 98/2001/X for Macintosh $B$K$D$$$F$O=$@5%W%m%0%i%`$b$"$k!#(BWord 97/98 for Windows $B$@$1!"$^$@(B patch $B$,$J$$!#(B

$B"#(B UNIX fixes
(various)

Debian GNU/Linux
FreeBSD
  • FreeBSD-SA-02:39.libkvm - Applications using libkvm may leak sensitive descriptors

    sgid kmem $B$J%"%W%j$+$i5/F0$7$?%W%m%;%9$+$i$O(B /dev/mem $B$*$h$S(B /dev/kmem $B$rD>@\FI$a$J$$$O$:$J$N$K!"pJs(B: [VulnWatch] iDEFENSE Security Advisory 09.16.2002: FreeBSD Ports libkvm Security Vulnerabilities$B!#(B

    patch $B$,$"$k$N$GE,MQ$9$k$+!"5-:\$N=$@5:Q$_%P!<%8%g%s$r(B cvsup $B$9$kEy$7$FF~kernel $B$r:F9=C[!"%$%s%9%H!<%k$7$F(B reboot libkvm $B%i%$%V%i%j$r:F9=C[$7%$%s%9%H!<%k!#(B static link $B$5$l$?%3%^%s%I$,$"$l$P!"$=$l$b:F9=C[$7%$%s%9%H!<%k!#(B

    2002.09.19 $BDI5-(B:

    $B:4F#$5$s$+$i(B ($B$"$j$,$H$&$4$6$$$^$9(B):

      > patch $B$,$"$k$N$GE,MQ$9$k$+!"5-:\$N=$@5:Q$_%P!<%8%g%s$r(B
      > cvsup $B$9$kEy$7$FF~R2p$5$l$F$$$^$9!#@EE*%j%s%/$7$F$$$k%P%$%J%j$r(B
     $B:F9=C[$9$kI,MW$O$"$k$b$N$N!":#2s$N=$@5$K4X$7$F!":F5/F0$O(B
     $BI,$:$7$bMW5a$5$l$^$;$s!#(B
    
     $B$^$?!"(B
    
       > sgid kmem $B$J%"%W%j$+$i5/F0$7$?%W%m%;%9$+$i$O(B
       > /dev/mem $B$*$h$S(B /dev/kmem $B$rD>@\FI$a$J$$(B
       > $B$O$:$J$N$K!"r7o$O(B $B!V(Bsgid kmem $B$5$l$F$$$k$3$H!W$G$O$J$/(B
     $B!V?F%W%m%;%9$,(B /dev/kmem $B$r%*!<%W%s$7$F$$$k$3$H!W$G$9$7!"(B
     exec(2) $B$G(B descriptor $B$,EO$5$l$l$P!"$=$l$K$O%"%/%;%9(B
     $B$G$-$k$N$,IaDL$G$9$h$M!#(B
    
     $B:#2s$NLdBj$NMW$O!"%"%/%;%9$K9b$$8"8B$,I,MW$J%U%!%$%k$N(B
     descriptor $B$O(B exec(2) $B$7$?%W%m%;%9$KEO$5$J$$$h$&(B
     close-on-exec $B$r;XDj$9$Y$-$J$N$KBP$7$F!"(Bclose-on-exec $B$r(B
     $B;XDj$9$k$?$a$NJ}K!$,Ds6!$5$l$F$$$J$+$C$?!"$H$$$&ItJ,$K$"$j$^$9!#(B
     $B$D$^$j!VD>@\FI$a$J$$$O$:!W$J$N$G$O$J$/$F!"(B
     $B!VFI$a$J$$$h$&$K$9$Y$-$J$N$K!"$=$&$J$C$F$$$J$$!W$H$$$&$N$,(B
     $B@5$7$$M}2r$@$H;W$$$^$9!#(B
    	    

    kernel $B$X$2$X$2ItJ,$N4V0c$$$OCWL?E*$J$N$G(B <s> $B$G0O$C$FD>$7$F$*$-$^$7$?!#(B $BF|K\8lHG$N(B Re: ANNOUNCE: FreeBSD Security Advisory FreeBSD-SA-02:39.libkvm $B$b;2>H!#$D!<$+$A$c$s$HFI$a(B > $B26!#(B

Red Hat Linux
NetBSD

NetBSD SA $B$,(B$BBgNL2~D{(B$B!#(BNetBSD 1.6 $BEP>l$K$"$o$;$F(B $B2~D{$5$l$F$$$k$h$&$G$9!#$^$?!"(B2002-015 $B$H(B 2002-016 $B$O(B

NetBSD-SA2002-015 and NetBSD-SA2002-16 are pending advisories awaiting disclosure co-ordination with third parties. The issues they will describe are fixed in NetBSD-1.6 and NetBSD-current.

$B$J$N$@$=$&$G$9!#(B

$B"#(B AES News
(crypt-gram, September 15, 2002)

$B!!(BAES (Rijndael) $B$H(B Serpent $B$Kl$9$k$@$m$&!"$5$^$6$^$J2r@O$rBT$DI,MW$,$"$k$h$&$@$1$I!"$b$7$+$9$k$H!"!D!D!#(B

$B"#(B $B2q
($BF|7P(B IT Pro, 2002.09.13)

$B2a<:$NM-L5$NH=CG$K$O!$!H6H3&I8=`!I$K1h$C$?%j%9%/4IM}$r9T$C$F$$$k$+$I$&$+$,O@E@$H$J$k!#B;32$rM=KI$9$k$?$a$KAj1~$NBP:v$r;\$7$F$$$l$P!$Bh;0

$B$H$$$&$h$&$JOC$O!"(B$BBh(B 1 $B2s(B STPP $B%;%-%e%j%F%#BP:v%;%_%J!<(B $B$G$b%H%l%s%I%^%$%/%m$N5WJ]$5$s$,KAF,$G$*$C$7$c$C$F$$$i$C$7$c$$$^$7$?$M!#(B $B5WJ]$5$s$O$b$A$m$s!"!V$$$^$I$-%&%#%k%9BP:v$J$7$G$O%@%a%@%a$G$7$g$&!W$H$$$&OC$r$5$l$?$N$G$9$,!#(B

$B"#(B $BDI5-(B

$B!!(B2002.07.31 $B$N(B OpenSSL Security Advisory [30 July 2002] $B$KDI5-$7$?!#(BOpenSSL 0.9.6g $BOC$H3F%Y%s%@!<$G$N:G?7$N(B fix $B$N>u67$r$^$H$a$F$_$?!#(B Debian $B$N?7$7$$(B fix package $B=P$F$^$9!#FC$K$^$@(B potato $B$N?M!":#$9$0E,MQ$7$h$&!#(B

$B"#(B CERT Advisory CA-2002-27 Apache/mod_ssl Worm
(CERT/CC, 2002.09.14)

$B!!(BOpenSSL $B7j(B $B$rFM$/(B worm $B$,EP>l!#(B$B:#$N$H$3$m(B$B!"(B $B!V(Bmod_ssl $B$,M-8z$J(B Linux $B>e$N(B Apache$B!W(B $B$,967bBP>]$NLOMM!#967b$O(B https (443/tcp) $B$rDL$8$F9T$o$l$k$N$G!"$3$l$r:I$$$G$"$l$P!"$H$j$"$($:$3$N(B worm $B$+$i$N967b$OKI$0$3$H$,$G$-$k!#(B

$B!!:#2sBP>]$K$J$C$F$$$ko$O!"3F%G%#%9%H%j%S%e!<%?(B/$B%Y%s%@!<$+$iG[I[$5$l$F$$$k!":G?7$N(B OpenSSL $B%Q%C%1!<%8$r%$%s%9%H!<%k$9$l$P$h$$!#(B $B$"$o$;$F(B mod_ssl $B%Q%C%1!<%8$b:G?7$N$b$N$r%$%s%9%H!<%k$9$kI,MW$,$"$k$3$H$,$"$k$N$GCm0U$5$l$?$$!#(B

$B!!(Bworm $B$K$h$k967b$,@.8y$9$k$H(B DDoS $B967bMQ$N%=%U%H$,?"$($D$1$i$l$k$=$&$@!#$3$$$D$O(B 2002/udp $B$r;H$C$FDL?.$r9T$&$=$&$J$N$G!"$3$l$b:I$$$G$7$^$&$N$,$h$$!#(B

2002.09.17 $BDI5-(B:

$B!!4XO">pJs(B:

$B!!4XO"JsF;(B:

2002.09.24 $BDI5-(B:

$B!!$5$C$=$/0!$B!V(BSlapper$B!W(BOpenSSL/Apache $B%o!<%`$NJQ (ISSKK)$B!#(B crontab $B$r@_Dj$7$?$j$9$k$b$N$b$"$k$h$&$G$9!#(B $B967bBP>]%W%i%C%H%[!<%`$O%*%j%8%J%k$HF1$8$J$N$G!"967b%3!<%I<+BN$OF10l$J$s$@$m$&$J!#(B

$B!!(Bopenssl-too-open.tar.gz $B$J$s$F$b$N$b$"$k$N$G!"FCDj%U%!%$%k$NM-L5$@$1$G%d%i%l6q9g$rH=CG$7$?$j$7$J$$$h$&$K$7$^$7$g$&!#(B

2002.09.25 $BDI5-(B:

$B!!(B$B!V%&%$%k%9$N?J2=!W$r<($7$?(BSlapper$B%o!<%`(B (ZDNet)$B!#(B $B$3$l$+$i$O(B P2P $B$,N.9T$j$J$s$G$7$g$&$+!#(B

2002.10.02 $BDI5-(B:

$B!!(B$BCm0U!'(B4$B (ISSKK)$B!#(B $B$5$i$J$k0!


$B"#(B 2002.09.13


$B"#(B 2002.09.12

$B"#(B UNIX fixes
(various)

Red Hat
Debian
HP (Compaq) Tru64 UNIX

TRU64 formal disclosure from Snosoft. $B$J$s$F$N$b=P$F$^$9!#(B

HP-UX
IRIX

$B"#(B Apple QuickTime ActiveX v5.0.2 Buffer Overrun (a091002-1)
(bugtraq, Wed, 11 Sep 2002 05:57:25 +0900)

$B!!(BQuickTime 5.0.2 for Windows $B$N(B ActiveX $B%3%s%]!<%M%s%H$Ke$GG$0U$N%3!<%I$r

$B!!(BQuickTime 6 for Windows $B$K$O$3$NLdBj$O$J$$$H$$$&!#(Bupgrade $B$7$^$7$g$&!#(B

2002.09.17 $BDI5-(B:

$B!!(B[harden-mac:0083] $B$G$N;XE&$K$"$o$;$F(B "for Windows" $B$rDI5-!#(B

2002.09.30 $BDI5-(B:

$B!!(BApple $B%*%U%#%7%c%k(B: M-128: Apple QuickTime ActiveX Buffer Overrun [Apple Security Advisory APPLE-SA-2002-09-19]$B!#(B $B$3$3$G$b!V(BQuickTime 6 for Windows $B$K(B upgrade$B!W$K$J$C$F$^$9!#(BQuickTime 5 for Windows $BMQ$N(B fix $B$O=P$J$$LOMM!#(B

$B"#(B PHP CRLF Injection
(bugtraq)

$B!!(B2 $B$D$N(B CRLF Injection $BLdBj;XE&!#(B $B%j%/%(%9%H$K(B %0D%0A $B$rA^F~$9$k$H%/%m%9%5%$%H%9%/%j%W%F%#%s%0@H

$B"#(B Foundstone Labs Advisory - Remotely Exploitable Buffer Overflow in PGP
(bugtraq, Sat, 07 Sep 2002 02:54:17 +0900)

$B!!(BPGP Corporate Desktop 7.1.[01] $B$K$ND9$5$r$-$A$s$H%A%'%C%/$7$F$$$J$$$?$a!"D9Bg$J%U%!%$%kL>$rMxMQ$7$FG$0U$N%3!<%I$rPGPhotfix_OutlookLFN_20020828.zip $B$,8x3+$5$l$F$$$k$N$GE,MQ$9$l$P$h$$!#(B patch $B$N(B readme $B$K$h$l$P!"99?7$5$l$k%U%!%$%k$O(B PGPexch.dll $B$H(B PGPsc.dll $B$N$h$&$@!#(B

$B!!4XO"JsF;(B: PGP$B0E9f%a!<%k$,!HEE;R$NCF4]!I$K$J$k!)(B (ZDNet)

$B"#(B % $B%(%s%3!<%G%#%s%0$G%/%m%9%5%$%H%9%/%j%W%F%#%s%0$b$N(B
(bugtraq)

$B!!(BMSIE $B$H(B KDE Konqueror $B$KBP$9$k;XE&!#(B

$B!!(BKDE $BJ}LL$G$O(B KDE Security Advisory: Secure Cookie Vulnerability $B$J$s$F$N$b=P$F$$$k$=$&$G!#(B

$B"#(B Vulnerabilities in Microsoft's Java implementation
(NTBUGTRAQ, Mon, 09 Sep 2002 21:23:49 +0900)

$B!!(BMicrosoft Java VM $B$K$O(B 10 $B$r1[$($kL$8x3+$N@H[memo:1498]$B!#(B $B$C$F!"(BMicrosoft Java VM $B0MB8$@$H%@%a$G$9$,(B [memo:3933]$B!#(B $B=;4p%M%C%H$G$*$J$8$_$NAmL3>J$G$9$J!D!D!#(B

$B!!4XO"JsF;(B: Internet Explorer$B$N(BJava$B4D6-$K%;%-%e%j%F%#!<%[!<%k(B (INTERNET Watch)$B!#;3Ln0f$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

$B"#(B MSDN: Code Secure $B%3%i%`(B
(Microsoft)

$B!!F|K\8lHG$,?7$?$K(B 2 $B$D=P$F$^$7$?(B ($BC1$K5$$,$D$/$N$,CY$$(B > $B26(B)$B!#(B

$B"#(B $BL5@~(BLAN$B$G(Bspam$B$rAw$k(B
(slashdot.jp, 2002.09.12)

$B!!5$J,$O(B$B%$%s%G%Z%s%G%s%9!&%G%$(B? $BG'>Z$b$J$K$b$+$+$C$F$J$$$h$&$JL5@~(B LAN $B$J$i!"IT@5%"%/%;%96X;_K!$K$b?($l$J$$$@$m$&$7!D!D!#(B


$B"#(B 2002.09.11

$B"#(B $BDI5-(B

$B!!(B2002.08.21 $B$N(B web $B%V%i%&%64XO"(B $B$KDI5-$7$?!#(BMS02-050: $B>ZL@=q3NG'$NLdBj$K$h$j!"(BID $B$,56Au$5$l$k(B (Q328145) $B$,2~D{!#(B Windows 2000 $BMQ(B patch $B$,?7$?$KEP>l!#$^$@(B fix $B$,$J$$$N$O(B XP 64bit, Office 98/2001/v.X for Mac, IE/OutlookExpress for Mac$B!#(B

$B!!$^$?!"$3$N(B patch $B$rE,MQ$9$k$3$H$K$h$kI{:nMQ$,(B MS02-050 $B$N!V7Y9p!WMs$KDI5-$5$l$F$$$k!#(Bpatch $B$rE,MQ$9$k$H!"(B Microsoft $B<+?H$,MxMQ$7$F$$$k!V$"$kFCDj$N!W%G%8%?%k>ZL@=q$^$G(B reject $B$5$l$F$7$^$&$?$a!"l9g$,$"$k$H$$$&!#(B $B$3$NLdBj$r=$@5$9$k?7(B patch $B$O8=:_3+H/Cf$J$N$@$=$&$@!#(B


$B"#(B 2002.09.10


$B"#(B 2002.09.09


$B"#(B 2002.09.06

$B"#(B $BDI5-(B

$B!!(B2002.08.22 $B$N(B White paper: Exploiting the Win32 API. $B$KDI5-$7$?!#(BInformation About Reported Architectural Flaw in Windows $B$NF|K\8lHG!"(B$BJs9p$5$l$?(B Windows $B$N9=B$>e$NLdBj$K4X$9$k>pJs(B$BEP>l!#(B $BK]Lu%9%T!<%I>e$,$C$F$k$J$"!#(B

$B"#(B [memo:4768] ShurikenPro2$B$J$I$KG$0U%3%^%s%I
(memo ML, Thu, 05 Sep 2002 17:16:35 +0900)

$B!!%8%c%9%H%7%9%F%`$N(B Shuriken, Shuriken Pro, Shurken Pro2, $B%+%i%a%k(B, $B%+%i%a%k%Q%U%'(B, $B%+%i%a%k(B2, e$B%?%$%`(B, e$B%?%$%`(B2 $B$K(B 2 $B$D$N

  1. $B$N%3%^%s%I$r%^%$%3%s%T%e!<%?%>!<%s$GF0:n$5$;$k$3$H$,2DG=!#(B 2. $B$N

  2. $BE:IU%U%!%$%k$N0l;~E83+@h$,4{CN$G$"$k(B ($B%i%s%@%`2=$5$l$F$$$J$$(B) $B$?$a$K!"(B HTML $B%a!<%kFb$K!"0l;~E83+@h$KB8:_$9$kE:IU%U%!%$%k$X$ND>@\%j%s%/$r@_Dj$9$k$3$H$,2DG=!#(B $B$3$N%j%s%/$r%/%j%C%/$5$;$k$3$H$K$h$j!"E:IU%U%!%$%k$K;E9~$^$l$?G$0U$N%3%^%s%I$r

$B!!BP1~$H$7$F$O!"$3$l$i$r(B fix $B$9$k(B patch $B$,=P$F$$$k$N$GE,MQ$9$l$P$h$$!#(B $B%@%&%s%m!<%I@h$O(B [memo:4768] $B$r;2>H!#(B

$B!!$=$l$K$7$F$b!"(B[memo:4769] $B!V%;%-%e%j%F%#$r6/2=!WJ82=$NEA>5(B $B$K$b$"$j$^$9$,!"$I$&$7$F!V=$@5!W$H8@$($J$$$s$G$7$g$&$+$M$(!#(B

$B"#(B $BDI5-(B

$B!!(B2002.08.21 $B$N(B web $B%V%i%&%64XO"(B $B$KDI5-$7$?!#(BMS02-050: $B>ZL@=q3NG'$NLdBj$K$h$j!"(BID $B$,56Au$5$l$k(B (Q328145) $B$,2~D{!#(B Windows 98/98SE/Me $BMQ(B patch $B$,?7$?$KEP>l!#(B $B$^$@(B fix $B$,$J$$$N$O(B Windows 2000, XP 64bit, Office 98/2001/v.X for Mac, IE/OutlookExpress for Mac$B!#$i$`$8$#$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B


$B"#(B 2002.09.05

$B"#(B $BDI5-(B

$B!!(B2002.08.21 $B$N(B web $B%V%i%&%64XO"(B $B$KDI5-$7$?!#(BMS02-050: $B>ZL@=q3NG'$NLdBj$K$h$j!"(BID $B$,56Au$5$l$k(B (Q328145) $BEP>l!#(BWindows NT 4.0 $B$H(B Windows XP $BMQ$N(B patch $B$,G[I[$5$l$F$$$k!#(B Windows 9x/Me, 2000 $BMQ$J$I$O$^$@!#(B

$B"#(B $BDI5-(B

$B!!(B2002.08.22 $B$N(B White paper: Exploiting the Win32 API. $B$KDI5-$7$?!#(BInformation About Reported Architectural Flaw in Windows (Microsoft) $BEP>l!#(B Microsoft $B@=%W%m%0%i%`$N$$$/$D$+$K$b$3$NLdBj$,H/8+$5$l!"(Bpatch $B@=:nCf!"$NLOMM!#(B


$B"#(B 2002.09.04

$B"#(B $BEl5~EENO!'B;=}1#$7!VJF4p=`$GH=CG!W!!C4Ev
($BKhF|(B, 2002.09.04)

$B!!86H/?d?JGI$C$F!"%9%j!<%^%$%kEg(B (TMI) $B;v8N$N$3$m(B ($B8E$/$F$9$^$s(B) $B!VF|K\$N86H/$O(B U.S. $B$h$j$O$k$+$K87$7$/8!::$7$F$^$9$+$i(B ok ok$B!W$J!<$s$F8@$C$F$$$?$h$&$J5-21$,$"$k$s$G$9$,!"

$B!!(B$B!V2r8[!W$5$l$F$$$?ElEE86H/%H%i%V%k1#$7$N>pJsDs6! (asahi.com) $B$J$I!"$9$P$i$7$$>u67$,$"$i$o$K$J$j$D$D$"$k$h$&$G!#(B $BElEE86H/%H%i%V%k1#$7(B (asahi.com) $B%Z!<%8$G$-$F$^$9$M!#(B

$B"#(B Check Point Statement on use of IKE Aggressive Mode (VPN-1/FireWall-1)
(Check Point, 2002.09.03)

$B!!;XE&J8=q(B: SecuRemote usernames can be guessed or sniffed using IKE exchange$B!#(B Check Point $B$5$s$,$*$C$7$c$k$K$O!"(B

Check Point does not recommend the use of IKE Aggressive Mode, because of many well-known limitations in the protocol, and the Check Point products offer much more secure alternatives.
$B!D!DCfN,!D!D(B
By default, Aggressive Mode is not enabled in NG. In 4.1, the recommended configuration is to disable Aggressive Mode and use Hybrid Mode instead (which involves no change to the user experience).

$B$J$s$@$=$&$G!#(B

$B"#(B Cisco Security Advisory: Cisco VPN 3000 Concentrator Multiple Vulnerabilities
(Cisco, 2002.09.03)

$B!!(BCisco VPN 3000 $B%7%j!<%:$K$5$^$6$^$J

$B"#(B CIACTech02-004: Parasite Programs; Adware, Spyware, and Stealth Networks
(CIAC, 2002.08.16)

$B!!BP93%=%U%H$b>R2p$5$l$F$^$9!#(B

$B"#(B $B9M$($J$7$K(BIE$B$r;H$&$N$O$=$m$=$m$d$a$h$&(B
($BF|7P(B IT Pro, 2002.09.03)

$B!!J#?t$N%a!<%k%=%U%H$rJ;MQ$9$k$N$O$1$C$3$&$`$D$+$7$$$b$N$,$"$k$1$I!"J#?t$N(B web $B%V%i%&%6$rJ;MQ$9$k$N$O$=$l$[$I$`$D$+$7$/$J$$!#(BNetscape 6 $B0J9_$O!V(BIE $B$8$c$J$$$HFI$a$J$$$s$@$h$M!W$H$$$&$3$H$b>/$J$/$J$C$?$7!#(BNetscape/Mozilla/Opera $B$J$i(B MIME content-type $B$b$A$c$s$H2r

$B!!$H$j$"$($:!"(BMIME content-type $BLdBj$@$1$O$J$s$H$+$7$F$[$7$$(B > IE$B!#(B $B%7%c%l$K$J$i$s!#(B


$B"#(B 2002.09.03

$B"#(B Klez $BBP:v(B web: Klez $B%&%#%k%9$X$NBP1~(B
(Tea Room for Conference No.1032, 2002.08.27$B!A(B)

$B!!F1$8(B machine $B$C$]$$(B address $B$+$i(B Klez $B$,Dj4|E*$K$d$C$F$-$?$j$7$F!"$$$$$+$2$s%&%6$$$H;W$C$F$$$k?M$O!"(BISP $B$KO"Mm$7$FBP1~$rB%$7$F$_$F$b$h$$$+$b$7$l$^$;$s!#I,$:BP1~$5$l$k!"$H$$$&$o$1$G$O$"$j$^$;$s$,!#(B

$B"#(B Namazu 2.0.12 released
(annouce-ja@namazu.org ML, Tue, 03 Sep 2002 15:49:19 +0900)

$B!!(BNamazu $B:G?7HG(B 2.0.12 $B$,EP>l$7$F$$$^$9!#(B $BI8=`%(%i!<=PNO$K$h$kLdBj(B ($B%/%m%9%5%$%H%9%/%j%W%F%#%s%0LdBj$K$D$J$,$C$F$7$^$&(B) $B$J$I$,GS=|$5$l$F$$$^$9!#(BNamazu $BMxMQe$G(B Namazu $B$rMxMQ$7$F$$$k>l9g$OFC$K!#(B

$B!!;2>H(B: $B%/%m%9%5%$%H%9%/%j%W%F%#%s%0@H (namazu-devel-ja ML)

$B"#(B $B8D?M>pJsN.=P$O%M%C%H8x32!!Ev;v
(NetSecurity, 2002.09.02)

$B!!$&!<$s!"(B

$B%&%#%k%9Ho32$O!"%`%@$K$?$l$J$,$5$l$F$$$k(BIT$BM=;;$N0lIt$r$^$o$;$P!"4JC1$KKI$0$3$H$,$G$-$k$O$:$J$N$K!"$"$($F9T$J$C$F$$$J$$$N$G$"$k!#(B

$B!!%`%@%`%@$J!V(BIT $BM=;;!W;Y=P$,B8:_$9$k$3$H$K$OF10U$9$k$1$l$I!"$=$b$=$b%&%#%k%9BP:v$r@/I\M=;;$G$d$k$Y$-$J$s$@$m$&$+!D!D!#(B

$B%&%#%k%9$K46@w$7$J$$$b$C$H$b8z2LE*$JJ}K!$O!"!V%"%&%H%k%C%/%(%/%9%W%l%9!J(BOE$B!K$H%$%s%?!<%M%C%H%(%/%9%W%m!<%i!J(BIE$B!K$r;H$o$J$$$3$H!W$K$D$-$k!#(B

$B!!(BIE/OE $B$,:$$C$?$A$c$s$J$3$H$K$OF10U$9$k$1$I!"B>$N%a!<%i$G$b!"E:IU%U%!%$%k$r%@%V%k%/%j%C%/$5$l$?$i%*%o%j$J$o$1$G!D!D!#$=$&$$$&ItJ,$G$N!V4pAC650i!W$O$$$:$l$K$7$mI,MW$+$H!#(B

$B"#(B Macintosh$B%;%-%e%j%F%#!]%/%i%7%C%/4D6-$G$N%P%C%/%I%"%D!<%k!](B
(ZDNet, 2002.08.26)

$B!!(BMac OS 9.2.2 $B0JA0MQ!#(BMac OS X $BMQ$O!D!D(B inetd $B$G(B /bin/sh $B$G$bF0$+$7$H$1$P(B ok ok $B$J$N$G$7$g$&!#(B

$B"#(B $BHa7`$+$i(B1$BG/!"JF%5%$%P!<%F%m$N8=
(ZDNet, 2002.09.03)

$B!!:#$N$H$3$m$OJ*M}967b$NJ}$,4JC1$+$DM-8z$JLOMM!#I`$,0lK\$"$l$PEE@~@Z$l$k$7$J$"!#(B

$B"#(B $BDI5-(B

$B!!(B2002.09.02 $B$N(B $B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#>pJs%;%s%?!<$NEEOCAk8}$K$D$$$F(B $B$KDI5-$7$?!#$=$l$i$7$$5-=R$,DI2C$5$l$^$7$?!#EvLL$O1Q8l$G$,$s$P$k$7$+$J$$$h$&$G$9!#(B(T_T)

$B"#(B $BDI5-(B

$B!!(B2002.09.02 $B$N(B solution 4576 - InterScan VirusWall UNIX - CVP$B!'(BSecurity Patch$B$rE,MQ8e(BCVP$B%5!<%S%9$,Dd;_$9$k(B $B$KDI5-$7$?!#!V(BHTTP$B$N(BTrickle$B5!G=!W$N2r@b$rDI5-!#(B


$B"#(B 2002.09.02

$B"#(B iDEFENSE Security Advisory: Linuxconf locally exploitable buffer overflow
(bugtraq, Wed Aug 28 2002 - 10:58:53 CDT)

$B!!(Blinuxconf $B$,D9Bg$J(B LINUXCONF_LANG $B@_Dj$G(B buffer overflow $B$9$k!"$H$$$&;XE&!#(B $BFC$K!"(Blinuxconf $B$,(B setuid $B$5$l$F%$%s%9%H!<%k$5$l$F$$$k>l9g(B ($B$?$H$($P(B Mandrake $B$,3:Ev$9$k$=$&$@(B) $B$OCm0U$,I,MW$@!#(B

$B!!(Blinuxconf 1.28r4 $B$G=$@5$5$l$F$$$k$N$GF~$l$+$($k!#$"$k$$$O3F%G%#%9%H%j%S%e!<%?$N(B fix package $B$r%$%s%9%H!<%k$9$k!#(B

$B"#(B Improving NMAP Performance
(nessus ML, Sat, 31 Aug 2002 01:50:15 +0900)

$B!!(B--max_rtt_timeout 50 --max-parallelism 100 $B$r;n$7$F$_$h$&!"$H$$$&5-;v!#(B

$B"#(B UNIX fixes
(various)

FreeBSD
  • FreeBSD-SN-02:05 security issues in ports

    $BBP>](B: acroread5, aide, apache+mod_ssl, bugzilla, Canna, ethereal, fam, isakmpd, irssi, kdelibs[23], krb5, linux-netscape6, netscape7, linux-mozilla, mozilla, mm, mpack, newsx, openssh, openssh-portable, php, linux-png, png, postgresql7, samba, squid24, super, webmin, zmailer$B!#(B

RedHat
HP Tru64 UNIX
HP-UX

$B"#(B solution 4576 - InterScan VirusWall UNIX - CVP$B!'(BSecurity Patch$B$rE,MQ8e(BCVP$B%5!<%S%9$,Dd;_$9$k(B
($B%H%l%s%I%^%$%/%m(B, 2002.08.29)

$B!!!V(BHTTP$B$N(BTrickle$B5!G=!W$rDd;_$9$l$P2sHr$G$-$k$h$&$@$,!"!V(BHTTP$B$N(BTrickle$B5!G=!W$C$F2?$@$m$&!#(B

2002.09.03 $BDI5-(B:

$B!!%$%7%2$5$s$+$i(B ($B$"$j$,$H$&$4$6$$$^$9(B):

InterScanVirusWall$B!J(BSolaris$BHG!K$N(Bhttp$B%9%-%c%s@_Dj2hLL$K$O!"0J2<$N$h$&$J%a%K%e!<$,$"$j$^$9!#(B
---------
$B""(B Use Trickle:
Send [ ] bytes of data to client for every [ ] kilobytes received.
(prevents browsers timeouts and provides progress)
---------

$B%G%U%)%k%H$G$O$3$N%A%'%C%/$O%*%U$G!"(B2048kb$B$4$H$K(B5byte$B$:$D%G!<%?$rAw$k?tCM$,F~$C$F$$$^$9!#(B

http$B$d(Bftp$B$r(BInterScan$B$G%A%'%C%/$5$;$k$H!"%U%!%$%k0l$D$r%@%&%s%m!<%I$7=*$($F%&%#%k%9%A%'%C%/$9$k$^$G%/%i%$%"%s%H$KEO$5$J$$$N$G!"2s@~$,:.$s$G$$$?$j!"$H$F$bBg$-$J%U%!%$%k$@$H!"%/%i%$%"%s%H!J%V%i%&%6!K$,%?%$%`%"%&%H$7$F$7$^$$$^$9!#$3$l$rKI;_$9$k$?$a$K!";~!9%/%i%$%"%s%H$r$D$D$$$F!"%;%C%7%g%s$rJ];}$9$k$=$&$G$9!#(B

$B$b$C$H$b%&%A$N2q(^_^;

$B!!$i$`$8$#$5$s$+$i(B ($B$"$j$,$H$&$4$6$$$^$9(B):

(Check box) Use Trickle:
Send XXX bytes of data to client for every YYYY kilobytes received.
(prevents browsers timeouts and provides progress)

$B$H$$$&@_Dj9`L\$K$J$j$^$9!#(B
$BMW$O(B YYYY $B%-%m%P%$%H$r
$BL5DL?.;~4V$,D9$$$HAa!9$K$"$-$i$a$k%/%i%$%"%s%H$NBP:v$G$9!#(B

$B0JA0$O%@%_!<%X%C%@$rAw$jJV$9$3$H$GBP1~$7$F$$$^$7$?$,!"(B

Outside <=> Proxy2 <=> ISVW <=> Proxy1 <=> Clients

$B$H$$$&9=@.$N>l9g!"(BProxy1$B$H$NAj@-$K$h$j$*$+$7$/$J$k>l9g$,$"$C$?$?$a$K(BTricle$B$,

$B"#(B Oracle Security Alert #39: WebCache $B$N4IM}
(Oracle, 2002.09.02)

$B!!(BOracle9i Application Server 9.0.2 $B$N(B Web Cache $B5!G=$K

$B!!2sHrJ}K!$,5-:\$5$l$F$$$k$N$GE,MQ$9$l$P$h$$!#(B

$B"#(B $B%"%?%C%+$O$"$kF|FMA3$d$C$F$/$k!=!=!V(B0-day Exploit$B!W$N;vNc$HBP:v(B
($BF|7P(B IT Pro, 2002.08.30)

$B!!(B0-day $B$G$"$k$+H]$+$rLd$o$:!"?/F~$5$l$?>l9g$K!"!V?/F~$5$l$?!W$3$H<+BN$rH/8+$G$-$k$+H]$+!"$,LdBj$K$J$k$s$@$m$&$J$"!#$=$N>e$G!"$"$i$+$8$aBP:v7B(B 50m $BE*$K$O$I$A$i$b$+$J$j%^%:$2$J$s$G$9$,(B (^^;;)$B!#(B web $B%Z!<%8=q$-$+$($i$l$^$7$?7O$N$h$&$K$o$+$j$d$9$$$b$N$P$+$j$J$i$^$@3Z$=$&$G$9$,!"!D!D!#(B

$B"#(B $B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#>pJs%;%s%?!<$NEEOCAk8}$K$D$$$F(B
($B%?%l%3%_(B, Sat, 31 Aug 2002 21:20:05 +0900)

$B!!(BPTRS $B$N5HED$5$s$+$i(B ($B$"$j$,$H$&$4$6$$$^$9(B):

$B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#>pJs%;%s%?!<$NEEOCAk8}$K$D$$$F$G$9$,!";d$NJ}$G(BMSKK$B$NJ}$K3NG'$7$?$H$3$m!VEEOC$G$N@H
$B$h$C$F8=>u$G$O@H
$B$I$&$d$i(BMS$BFbIt$G$bEEOCAk8}$N%5%]!<%HHO0O$K$D$$$F:.Mp$7$F$$$k$h$&$G$9$M!#(B

$B!!$3$N7o!":4L>LZ$5$s$b(B Sat, 10 Aug 2002 11:04:19 +0900 $BIU$N(B bugtraq-jp $B$X$N%]%9%H(B (archive $B$O2=$1$F$^$9(B) $B$G!"$d$O$j!VJF9q$XO"Mm$7$FM_$7$$$H8@$o$l$^$7$?!W$HJs9p$J$5$C$F$^$9!#(B

$B!!$H$$$&$o$1$G!"$3$l$iBP1~$,0U?^$5$l$?>uBV$G$"$k$N$J$i!"(B TechNet $B%;%-%e%j%F%#(B $B%;%s%?!<(B $B$NEEOCHV9f$N$H$3$m$K!V@HpJs$K$D$$$F$O!"(B$B%;%-%e%j%F%#4XO";v9`$K$D$$$F%^%$%/%m%=%U%H$XJs9p(B$B$r$4;2>H$N>e!"$*

2002.09.03 $BDI5-(B:

$B!!",$N$h$&$J5-=R$,(BTechNet $B%;%-%e%j%F%#(B $B%;%s%?!<(B$B$KDI2C$5$l$^$7$?!#EvLL$O1Q8l$G$,$s$P$k$7$+$J$$$h$&$G$9!#(B(T_T)

$B"#(B $BDI5-(B

$B!!(B2002.08.29 $B$N(B $B%M%C%H%o!<%/6&M-%W%m%P%$%@$NL$%A%'%C%/$N%P%C%U%!$K$h$j!"%5!<%S%95qH]$,5/$3$k(B (Q326830) (MS02-045) $B$KDI5-$7$?!#(BISS $B%;%-%e%j%F%#(B $B%"%i!<%H(B: Microsoft Windows SMB $B$K$*$1$k%5!<%S%9ITG=967b$N@H (ISSKK)$B!#(B


$B;d$K$D$$$F(B