$B%;%-%e%j%F%#%[!<%k(B memo - 2009.12

Last modified: Wed Feb 24 11:22:38 2010 +0900 (JST)


$B!!$3$N%Z!<%8$N>pJs$rMxMQ$5$l$kA0$K!"(B$BCm0U=q$-(B$B$r$*FI$_$/$@$5$$!#(B


$B"#(B 2009.12.31

$B"#(B $BDI5-(B

$B9u$$2hLL$K%^%&%9%+!<%=%k(B (Win32/Daonol)

Microsoft IIS ASP Multiple Extensions Security Bypass

$B!!4XO"(B:

  • New Reports of a Vulnerability in IIS (MSRC blog, 2009.12.27)$B!#(BIIS $B$,!V(Bnon-default, unsafe configuration$B!W$N>l9g$K$N$_H/@8$9$k!"$H$$$&H?O@!#(B

  • Results of Investigation into Holiday IIS Claim (MSRC blog, 2009.12.29)$B!#$b$&$9$3$7>\$7$$FbMF!#(B

    The key in this is the last point: for the scenario to work, the IIS server must already be configured to allow both $B!H(Bwrite$B!I(B and $B!H(Bexecute$B!I(B privileges on the same directory. This is not the default configuration for IIS and is contrary to all of our published best practices. Quite simply, an IIS server configured in this manner is inherently vulnerable to attack.

    However, customers who are using IIS 6.0 in the default configuration or following our recommended best practices don$B!G(Bt need to worry about this issue.
  • 8 Basic Rules to Implement Secure File Uploads (SANS SSI, 2009.12.28)

  • CVE-2009-4444


$B"#(B 2009.12.30


$B"#(B 2009.12.28

$B"#(B $BDI5-(B

$B9u$$2hLL$K%^%&%9%+!<%=%k(B (Win32/Daonol)

$B!!4XO"(B:

[Full-disclosure] Cacti 0.8.7e: Multiple security issues

$B!!(B Cacti$B$NJ#?t$N@HZ%l%]!<%H(B (NTT $B%G!<%?!&%;%-%e%j%F%#(B, 2009.12.01)

[Full-disclosure] ** FreeBSD local r00t zeroday

$B!!(B FreeBSD$B$N(Brtld$B$N@HZ%l%]!<%H(B (NTT $B%G!<%?!&%;%-%e%j%F%#(B, 2009.12.04)

Firefox 3.5.6 / 3.0.16 $B%j%j!<%9(B

$B!!(BMFSA 2009-69 $B4XO"(B: Firefox$B$N(Blocation$B%*%V%8%'%/%H=hM}$N@HZ%l%]!<%H(B (NTT $B%G!<%?!&%;%-%e%j%F%#(B, 2009.12.25)

Microsoft IIS ASP Multiple Extensions Security Bypass

$B!!4XO"(B:


$B"#(B 2009.12.27

$B"#(B $BDI5-(B

$B9u$$2hLL$K%^%&%9%+!<%=%k(B (Win32/Daonol)

$B!!(B$B!ZCm0U4-5/![(BGumblar$B%&%$%k%9$NAH?%Fb46@w3HBg$H%[!<%`%Z!<%82~$6$sHo32A}2C$KH<$&BP:v$N3NG'(B (LAC, 2009.12.25)

$B46@w$7$?:]$K%"%/%;%9$9$kAw?.@h$N(BIP$B%"%I%l%9!'(B
67.212.81.67
67.215.237.98
67.215.238.194
67.215.246.34
91.215.156.74
91.215.156.75
91.215.156.76
94.76.250.73
94.229.65.174
193.104.12.20
195.24.76.250
210.51.166.228
216.45.48.66

$B"#(B 2009.12.26


$B"#(B 2009.12.25

$B"#(B Microsoft IIS ASP Multiple Extensions Security Bypass
(secunia, 2009.12.24)

$B!!>/$J$/$H$b(B IIS 6.0 $B$K7g4Y!#%"%C%W%m!<%IBP>]%U%!%$%k$N3HD%;R$r@)8B$7$F$$$k$h$&$J4D6-$G$b!"$?$H$($P(B file.asp;.jpg $B$N$h$&$K;XDj$9$k$3$H$G!"(B

$B$H$$$C$?%7%J%j%*$,9M$($i$l$k!#$=$N>l9g!"7k2L$H$7$F!"0U?^$7$J$$=hM}$,ISO9660 $B$N%;%_%3%m%s$H%P!<%8%g%sHV9f(B$B$r;W$$=P$7$?!#(B

2009.12.28 $BDI5-(B:

$B!!4XO"(B:

2009.12.31 $BDI5-(B:

$B!!4XO"(B:

2010.01.05 $BDI5-(B:

$B!!(BHow to configure uploads for IIS Web applications (Microsoft KB 979124)


$B"#(B 2009.12.24

$B"#(B $BDI5-(B

Adobe Reader / Acrobat 9.2 $B0JA0$K?7$?$J(B 0-day $B7g4Y(B (CVE-2009-4324)

$B!!4XO"(B:

$B!!$J$s$+$b$&7y$K$J$C$F$-$?$N$G!"(BFoxit Reader $B$r%$%s%9%H!<%k$7$F$_$?!#(B $BLdBj$J$/F0:n$9$k$_$?$$!#$b$A$m$s!"(BFoxit Reader $B$K7j$,$_$D$+$k2DG=@-$b$"$k(B ($BA0Nc$"$j(B) $B$G$9$1$I!#(B

$B!!5$$KF~$i$J$+$C$?$i!"4XO"IU$1$r(B Adobe Reader $B$KLa$;$P$$$$$@$1$@$7!#(B

Microsoft 2009 $BG/(B 10 $B7n$N%;%-%e%j%F%#>pJs(B

$B!!(BMS09-058 patch $B$K$OI{:nMQ$,$"$k$=$&$G(B: A terminal server that is running Windows Server 2003 Service Pack 2 restarts unexpectedly after hotfix 971280 or security update 971486 (MS09-058) is installed (Microsoft KB 978243)$B!#(BWindows Server 2003 $B>e$N%?!<%_%J%k%5!<%P$,FMA3Mn$A$?$j$9$k$_$?$$!#(Bhotfix $B$,MQ0U$5$l$F$^$9!#(B

$B9u$$2hLL$K%^%&%9%+!<%=%k(B (Win32/Daonol)

$B!!(B/*GNU GPL*/ /*CODE1*/ $B%?%$%W$NN.9T$rWeb $B%5%$%H7PM3$G$N%^%k%&%(%"46@w3HBg$K4X$9$kCm0U4-5/(B (JPCERT/CC, 2009.10.27) $B$,(B 12/24 $BIU$G99?7$5$l$F$$$^$9!#(B

* $B99?7(B: 2009$BG/(B12$B7n(B24$BF|DI5-(B ***************************************
2009$BG/(B12$B7n(B24$BF|8=:_!"0J2<$N@=IJ$N@Hl9g$O!"%$%s%9%H!<%k$7$J$$$h$&$KCm0U(B
  $B$7$F$/$@$5$$!#!K(B

    Java  $B%=%U%H%&%'%"$N%$%s%9%H!<%k>u67$N3NG'(B:
    http://www.java.com/ja/download/installed.jsp

  $B%$%s%9%H!<%k$5$l$F$$$k(B Java $B$,:G?7$G$J$$>l9g$O!"0J2<$N(B URL $B$h$j:G?7$N(B
Java $B$r%$%s%9%H!<%k$7$F$/$@$5$$!#(B

    $BA4%*%Z%l!<%F%#%s%0%7%9%F%`$N(B  Java $B$N%@%&%s%m!<%I0lMw(B
    http://java.com/ja/download/manual.jsp?locale=ja&host=java.com

  $B"((B Java $B$r:G?7$K99?7$7$?>l9g!"0lIt$N(B Java $B>e$GF0:n$9$k%"%W%j(B
     $B%1!<%7%g%s$,F0:n$7$J$/$J$k2DG=@-$,$"$j$^$9!#MxMQ$9$k%"%W%j%1!<(B
     $B%7%g%s$X$N1F6A$r9MN8$7$?>e$G!"99?7$rE,MQ$7$F$/$@$5$$!#(B

******************************************************************

$B!!$"$H$3$3(B:

* $B99?7(B: 2009$BG/(B12$B7n(B24$BF|DI5-(B ***************************************
    IBM ISS
    $B%/%i%$%"%s%H%"%W%j%1!<%7%g%s$N@Hhttp://www-935.ibm.com/services/jp/index.wss/consultantpov/secpriv/b1333933?cntxt=a1010214

******************************************************************

$B!!(BMyJVN $B%P!<%8%g%s%A%'%C%+(B$B$b>R2p$9$l$P$$$$$N$K!#(B

$B!!4XO"(B:


$B"#(B 2009.12.23

$B"#(B $BDI5-(B

Adobe Reader / Acrobat 9.2 $B0JA0$K?7$?$J(B 0-day $B7g4Y(B (CVE-2009-4324)

$B!!4XO"(B: CVE-2009-3459, CVE-2009-4324, and one PDF trick (Macro Cova, 2009.12.19)

$B"#(B $B$$$m$$$m(B (2009.12.23)
(various)

$B"#(B $BFCDj%U%!%$%k$O%&%$%k%9%9%-%c%s$NBP>]30$K!"(BMS$B4+9p$K%Y%s%@!<$,7|G0(B
(ITmedia, 2009.12.22)

$B!!(BWindows Server 2008 R2$B!"(BWindows Server 2008$B!"(BWindows Server 2003$B!"(BWindows 2000$B!"(BWindows XP$B!"$^$?$O(B Windows Vista $B$rl9g$N?d>);v9`(B (Microsoft KB 822158) $B$N7o!#$3$l!"$:$$$V$s@N$+$iB8:_$9$kJ8=q$J$N$G$9$,(B (2009.12.22 $B8=:_!"F|K\8lHG$O(B 2009.10.02 $B99?7$N%j%S%8%g%s(B 11.0 $B$,:G?7!"(B$B1Q8lHG(B$B$O(B 2009.10.16 $B99?7$N(B Revision: 12.1 $B$,:G?7(B)$B!"2?$r$$$^$5$i$3$s$J$3$H$r8@$C$F$$$k$N$G$7$g$&!#(B

$B!!4XO"(B ($B%*%^%(%b%J!<(B):


$B"#(B 2009.12.22

$B"#(B $BDI5-(B

Consumer Anti-Malware Endpoint Protection Test Report Q3

$B!!(BAV-Comparatives.org $B$,;w$?$h$&$JFbMF$N%F%9%H$r(B 2010 $B%7%j!<%:$r;H$C$F

$B!!(B1 $BF|$"$?$j(B 15$B!A(B20 $B$N%F%9%H%1!<%9$r<}=8$G$-$?$,!"/$J$/$H$b(B 1/3 $B$O%F%9%H$G$-$J$C$?$3$H$K$J$k!#@5D>!"$3$l$O$A$g$C$H$J$!$H;W$&!#(B

$B!!(BNSSLabs $B$N%F%9%H$G$O!VEv3:(B URL $B$X$N%"%/%;%9$rM^;_$G$-$?$+!W!VEv3:%^%k%&%'%"$rAK;_$G$-$?$+!W$N(B 2 $B$D$N3QEY$+$i%F%9%H$ru67$NJQ2=$H$$$C$?%G!<%?$b8x3+$5$l$F$$$J$$!#(B

$B!!(BNSSLabs $B$N%F%9%H$G$O%F%9%HBP>]$O(B 2009 $B%7%j!<%:$@$,!"(BAV-Comparatives.org $B$N$b$N$O(B 2010 $B%7%j!<%:!#(B2010 $B%7%j!<%:$G$O!"3F

$B!!CmL\$9$Y$-$O!"C1BN$N%"%s%A%&%$%k%9%=%U%H%&%'%"@=IJ$G$"$k(B Microsoft Security Essentials 1.0 $B$,!"3F


$B"#(B 2009.12.21

$B"#(B wnpa-sec-2009-09: Multiple vulnerabilities in Wireshark version 0.9.0 to 1.2.4
(Wireshark.org, 2009.12.17)

$B!!(BWireshark 0.9.0$B!A(B1.2.4 $B$K(B 3 $B$D$N7g4Y!#(BWireshark 1.2.5 $B$G=$@5$5$l$F$$$k!#(B

$B"#(B $BDI5-(B

[memo:9718] $B%;%V%s(B&$B%"%$$NDLHN%5%$%H$N@H


$B"#(B 2009.12.20


$B"#(B 2009.12.19


$B"#(B 2009.12.18

$B"#(B $B$$$m$$$m(B (2009.12.18)
(various)

$B"#(B PHP 5.2.12 Release Announcement
(PHP.net, 2009.12.17)

$B!!%;%-%e%j%F%#=$@5(B 5 $B7o$"$j$^$9!#(B

$B"#(B $BDI5-(B

[memo:9718] $B%;%V%s(B&$B%"%$$NDLHN%5%$%H$N@H

$B"#(B $BJF73L5?M5!!'%$%i%/$J$I$NIpAu@*NO$,EAAw1GA|$rK5
($BKhF|(B, 2009.12.18)

$B!!85$M$?(B: Insurgents Hack U.S. Drones (Wall Street Journal, 2009.12.17)$B!#(B

$B!!L5?M5!(B Predator $B$d(B Reaper $B$+$iAw$i$l$k%i%$%V1GA|$O0E9f2=$5$l$F$$$J$$$?$a!"(B SkyGrabber $B$N$h$&$J%W%m%0%i%`$r;H$C$F4JC1$KK5


$B"#(B 2009.12.17

$B"#(B $BDI5-(B

$B9u$$2hLL$K%^%&%9%+!<%=%k(B (Win32/Daonol)

Adobe Reader / Acrobat 9.2 $B0JA0$K?7$?$J(B 0-day $B7g4Y(B (CVE-2009-4324)

$B!!4XO"(B:

$B"#(B $B$$$m$$$m(B (2009.12.17)
(various)


$B"#(B 2009.12.16

$B"#(B Firefox 3.5.6 / 3.0.16 $B%j%j!<%9(B
(mozilla.org, 2009.12.16)

$B!!=P$F$^$9!#9b66$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

$B!!D>$C$F$$$k$b$N(B ($B:G9b(B x 3$B!"9b(B x 1$B!"Cf(B x 2$B!"Dc(B x 1):

SA $B=EMWEY(B $B%?%$%H%k(B
MFSA 2009-71 $BDc(B GeckoActiveXObject $B$NNc30%a%C%;!<%8$rMxMQ$7$?%$%s%9%H!<%k:Q$_(B COM $B%*%V%8%'%/%H$NNs5s(B
MFSA 2009-70 $BCf(B $B%/%m!<%`$N(B window.opener $B$rDL$8$?FC8">:3J(B
MFSA 2009-69 $BCf(B $B%m%1!<%7%g%s%P!<56AuLdBj(B
MFSA 2009-68 $B9b(B NTLM $B%j%U%l%/%7%g%s@H
MFSA 2009-67 $B:G9b(B libtheora $BF02h%i%$%V%i%j$K$*$1$k@0?t%*!<%P!<%U%m!<$H%/%i%C%7%e(B
MFSA 2009-66 $B:G9b(B liboggplay $B%a%G%#%"%i%$%V%i%j$K$*$1$k%a%b%j0BA4@-$N=$@5(B
MFSA 2009-65 $B:G9b(B $B%a%b%jGK2u$N7A@W$,$"$k%/%i%C%7%e(B (rv:1.9.1.6/ 1.9.0.16)

$B!!Cm(B: MFSA 2009-66, 67 $B$O(B Firefox 3.0.x $B$K$O1F6A$7$J$$!#B>$O(B 3.0.x / 3.5.x $BN>J}$K1F6A!#(BSeaMonkey 2 $B$O(B 3.5.x $B$HF1MM!#(BSeaMonkey 2.0.1 $B$G=$@5$5$l$F$$$k!#(B

2009.12.28 $BDI5-(B:

$B!!(BMFSA 2009-69 $B4XO"(B: Firefox$B$N(Blocation$B%*%V%8%'%/%H=hM}$N@HZ%l%]!<%H(B (NTT $B%G!<%?!&%;%-%e%j%F%#(B, 2009.12.25)

$B"#(B $BDI5-(B

Vulnerability Note VU#800113 - Multiple DNS implementations vulnerable to cache poisoning (Kaminsky attack $BOC(B)

$B!!$^$?$b$d(B MS08-037 patch $B$NI{:nMQ$M$?!#(B

$B%"%a!<%P$"$7$"$H$A$g$&(B

$B!!$K$;$O$^$A$A$c$s$K$h$k967b$,9T$o$l!"Ho32pJs$"$j$,$H$&$4$6$$$^$9!#(B

Adobe Reader / Acrobat 9.2 $B0JA0$K?7$?$J(B 0-day $B7g4Y(B (CVE-2009-4324)

BIND Dynamic Update DoS


$B"#(B 2009.12.15

$B"#(B ZFS bug - candidate for Security Advisory?
(freebsd-security ML, 2009.12.15)

$B!!(BZFS $B$K4X$9$k=EMW$J(B fix $B$,!"(BFreeBSD 8.0 $B$KF~$C$F$$$J$$$H$$$&OC!#(B

"There was important bug in ZFS replay code. If there were setattr logs (not related to permission change) in ZIL during unclean shutdown, one can end up with files that have mode set to 07777.
This is very dangerous, especially if you have untrusted local users, as this will set setuid bit on such files. Note that FreeBSD will remove setuid bits when someone will try to modify the file, but it is still dangerous."

$B!!$3$N%a!<%k(B: HEADS UP: Important bug fix in ZFS replay code!

2010.01.14 $BDI5-(B:

$B!!(BAdvisory $B=P$F$^$9(B: FreeBSD-SA-10:03.zfs: ZFS ZIL playback with insecure permissions (FreeBSD.org, 2010.01.06)

$B"#(B Adobe Reader / Acrobat 9.2 $B0JA0$K?7$?$J(B 0-day $B7g4Y(B (CVE-2009-4324)
(Adobe PSIRT, 2009.12.14)

$B!!(BAdobe Reader / Acrobat 9.2 $B0JA0$K?7$?$J(B 0-day $B7g4Y$@$=$&$G$9!#(B

2009.12.16 $BDI5-(B:

$B!!(BSA $B=P$^$7$?(B: APSA09-07: Security Advisory for Adobe Reader and Acrobat (Adobe, 2009.12.15)$B!#7Z8::v$H$7$F!"(BAdobe Reader / Acrobat $B$G$N(B JavaScript $BL58z2=$H!"(BWindows $B$G$N(B DEP ($B%G!<%? $B$,5s$2$i$l$F$$$^$9!#$?$@$7(B DEP $B$,8z$/%P!<%8%g%s$NAH$_$"$o$;$K$O8B$j$,$"$k$h$&$G(B:

Windows $B%P!<%8%g%s(B Acrobat / Adobe Reader $B%P!<%8%g%s(B
Windows XP SP3 Acrobat 8.1.7 / 9.2, Adobe Reader 8.1.7 / 9.2
Windows Vista SP1 Acrobat 8.1.7 / 9.2, Adobe Reader 8.1.7 / 9.x
Windows 7 Acrobat 8.1.7 / 9.2, Adobe Reader 8.1.7 / 9.x

$B!!(BVista SP2 $B$O!D!D(B SP1 $B$HF1$8$G$$$$$s$G$9$+$M!#(B

$B!!4XO">pJs(B: Adobe Acrobat$B%<%m%G%$J,@O(B ($B%(%U%;%-%e%"%V%m%0(B, 2009.12.15)

2009.12.16 $BDI5-(B2:

$B!!(BSA $B$,2~D{$5$l!"=$@5HG$NM=DjF|$,L@5-$5$l$^$7$?!#(B2010.01.12 $B$@$=$&$G$9!#(B $BF|K\;~4V$@$H(B 2010.01.13 $B$G$9$+$M!#(B

2009.12.17 $BDI5-(B:

$B!!4XO"(B:

2009.12.23 $BDI5-(B:

$B!!4XO"(B: CVE-2009-3459, CVE-2009-4324, and one PDF trick (Macro Cova, 2009.12.19)

2009.12.24 $BDI5-(B:

$B!!4XO"(B:

$B!!$J$s$+$b$&7y$K$J$C$F$-$?$N$G!"(BFoxit Reader $B$r%$%s%9%H!<%k$7$F$_$?!#(B $BLdBj$J$/F0:n$9$k$_$?$$!#$b$A$m$s!"(BFoxit Reader $B$K7j$,$_$D$+$k2DG=@-$b$"$k(B ($BA0Nc$"$j(B) $B$G$9$1$I!#(B

$B!!5$$KF~$i$J$+$C$?$i!"4XO"IU$1$r(B Adobe Reader $B$KLa$;$P$$$$$@$1$@$7!#(B

2010.01.05 $BDI5-(B:

$B!!(BSophisticated, targeted malicious PDF documents exploiting CVE-2009-4324 (SANS ISC, 2010.01.04)

2010.01.13 $BDI5-(B:

$B!!$d$C$H=P$^$7$?(B: APSB10-02: Security updates available for Adobe Reader and Acrobat (Adobe, 2010.01.12)$B!#(BAcrobat / Adobe Reader 7.x $B$N%5%]!<%H$O4{$K=*N;$7$F$$$k$N$GCm0U!#(B

2010.01.14 $BDI5-(B:

$B!!4XO"(B:

$B"#(B $B%^%$%/%m%=%U%H!"!V(BOffice 2003$B!W$NIT6q9g$r=$@5(B--$B860x$O>ZL@=q$NM-8z4|8B@Z$l(B
(CNET, 2009.12.15)

$B!!(BOffice 2003 + Rights Management Service (RMS) $B$N4D6-$G!"(B2009.12.10 ($BF|K\;~4V(B) $B0J9_!"(BOffice $BJ8=q$r3+$1$J$/$J$k;v>]$,H/@8$7$F$$$?LOMM!#860x$O>ZL@=q$N4|8B@Z$l!#(B Office 2003 / Word Viewer / Excel Viewer $B$X$N(B Hotfix $B$NE,MQ$GBP1~$G$-$k!#(B

$B!!=BC+$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

$B!!!D!DF|K\8l$N>pJs$b=P$F$^$7$?(B: Office 2003 $B$K$*$1$k(B IRM $B$G@)8B$5$l$?%U%!%$%k$N;2>H!&:n@.$,$G$-$J$$LdBj$K$D$$$F(B (Microsoft, 2009.12.15)$B!#>.Ln;{$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

$B"#(B $B%"%a!<%P$"$7$"$H$A$g$&(B
($B$\$/$O$^$A$A$c$s!*(B($B%"%a!<%P(B), 2009.12.14)

$B!!(BAmeba $B$J$&(B$B$J$s$F=x$N8}$@$C$?$N$G$9$M!D!D!#(B

$B!!$$$d$O$d!D!D!#;38}$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

2009.12.16 $BDI5-(B:

$B!!$K$;$O$^$A$A$c$s$K$h$k967b$,9T$o$l!"Ho32pJs$"$j$,$H$&$4$6$$$^$9!#(B

$B"#(B [memo:9718] $B%;%V%s(B&$B%"%$$NDLHN%5%$%H$N@H
(memo ML, 2009.12.14)

$B!!(B$BF~NO:n6H%_%9(B$B$J$s$F=x$N8}$@$C$?$N$G$9$M!D!D!#(B

$B!!$$$d$O$d!D!D!#(B

2009.12.18 $BDI5-(B:

$B!!$J$s$@$+$H$s$G$b$J$$>u67$K$J$C$F$$$k$h$&$G!D!D(B

$B!!$$$d$O$d!D!D!#(B

2009.12.21 $BDI5-(B:

$B!!(B7&Y$B%M%C%H%7%g%C%T%s%0$N%=!<%9%3!<%I!"%G%#%l%/%H%j%H%i%P!<%5%k$GN.=P(B? ($B?eL57n$P$1$i$N$($SF|5-(B, 2009.12.19)


$B"#(B 2009.12.14

$B"#(B Yahoo!Japan $B$N56%5%$%H$KCm0U(B
(Security.GS Magazine, 2009.12.13)

2009$BG/(B12$B7n(B13$BF|$K!$(BTwitter$B$J$I$GOCBj$K$J$C$?!V(Bwww.twakuwakuland.info$B!W$H$$$&%5%$%H$,$"$k!#(B
$B$3$l$O!$(BYahoo! Japan $B$HF10l$NFbMF$rI=<($9$k%5%$%H$G$"$k!#(B
$B;EAH$_$H$7$F$O!$(BDNS$B$N%l%3!<%I$r(BCNAME$B$G(Byahoo.co.jp$B$K8~$1!$(BYahoo!Japan$B$N%5!<%P$N(BIP$B%"%I%l%9$rJV$9$h$&$K$J$C$F$$$k!#(B
$B8=:_!$(BGoogle$B$G!V(Byahoo.co.jp$B!W$r8!:w$9$k$H!$%H%C%W$K$3$N56%5%$%H$,%R%C%H$9$k$h$&$K$J$C$F$$$k!#(B

$B!!$&$o!

$B!!!D!D(B 12:42 $B8=:_!"(BGoogle $B8!:w7k2L$O=$@5$5$l$?LOMM$G$9!#(Bwww.twakuwakuland.info $B$,(B yahoo.co.jp $B$r;X$7$F$$$k>u67$OJQ$o$C$F$^$;$s$,!#(B

$B!!!D!D(B $B4XO"(B: Yahoo Japan$B$N56%5%$%H!)(B (slashdot.jp, 2009.12.14)$B!#%9%i%I%/%*%j%F%#A43+$N$h$&$G!D!D!#(B

$B"#(B Active! mail 2003 $B$KJ#?t$N7g4Y(B
(TransWARE, 2009.12.07)

$B!!(BActive! mail 2003 Build 2003.0139.0871 $B0JA0$KJ#?t$N7g4Y!#(B

$B!!(BActive! mail 2003 Build 2003.0139.0911 $B0J9_$G=$@5$5$l$F$$$k!#(B $B:G?7HG$O(B 2003.0139.0939 $B$@$=$&$@!#(B

$B"#(B $BDI5-(B

$B9u$$2hLL$K%^%&%9%+!<%=%k(B (Win32/Daonol)

$B"#(B URL$BF'$`$H!V$3$s$K$A$O!!$3$s$K$A$O(B!!$B!W!!(BAmeba$B$J$&$N(BCSRF$B@H
(ITmedia, 2009.12.11)

$B!!!V(BAmeba $B$J$&!W$K(B CSRF $B7g4Y$,$"$j!"$O$^$A$A$c$s$,$^$?$d$C$?$i$7$$!#(B


$B"#(B 2009.12.13


$B"#(B 2009.12.11

$B"#(B $BDI5-(B

Microsoft Security Essentials Beta

$B!!(BMS$BL5NA%&%$%k%9BP:v%=%U%H$G$G$-$k$3$H!"$G$-$J$$$3$H!!(B $B!V(BMicrosoft Security Essentials$B!WF3F~%l%]!<%H(B (Internet Watch, 2009.12.11)

$B!!B>$N%=%U%H%&%'%"$J$I$HHf$Y$?>l9g$GL\N)$D$N$O!"%9%Q%`$X$NBP1~$@$m$&$+!#8=:_$G$O!"%&%$%k%9$d%o!<%`$rD>@\G[I[$9$k$h$&$J967b$OLGB?$K8+$+$1$J$/$J$C$F$*$j!"%9%Q%`%a!<%k$J$I$K5-:\$7$?(BURL$B$rDL$8$F%f!<%6!<$rIT@5$J(BWeb$B%5%$%H$KM6F3$7$?>e$G!"%U%#%C%7%s%0:>5=$r;E3]$1$?$j%9%Q%$%&%'%"$J$I$r%@%&%s%m!<%I$5$;$?$j$H$$$C$?%=!<%7%c%k%(%s%8%K%"%j%s%0E*$J$N%=%U%H%&%'%"$KG$$;$k$H$$$&$3$H$N$h$&$@!#(B

$B!!$U$%$`!D!D!#(B

  • anti-spam $B$K$D$$$F$O(B Windows Live $B%a!<%k(B$B$K

  • $B%^%k%&%'%"BP:v$H$7$F$N(B URL $B%U%#%k%?%j%s%0(B ($B7Y9p5!G=(B) $B$O(B Internet Explorer 8 $B$KSmartScreen $B%U%#%k%?(B)

$B$H$$$&$3$H$J$N$G$O!#(B


$B"#(B 2009.12.10

$B"#(B $B%H%l%s%I%^%$%/%m(BURL$B%U%#%k%?%j%s%0%(%s%8%s$K$*$1$k@H
($B%H%l%s%I%^%$%/%m(B, 2009.12.10)

$B!!%&%$%k%9%P%9%?!<(B2008 $B$N(B URL $B%U%#%k%?%j%s%0%(%s%8%s$K7g4Y!#D9Bg$J(B URL $B$K$h$C$F(B buffer overflow $B$,H/@8!"%W%m%0%i%`$,%/%i%C%7%e$9$k!#(B 2009.12.10 $B$N(B ActiveUpdate $B$G<+F0E*$K99?7!&BP1~$5$l$k!#(B

$B"#(B $B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#(B $B%"%I%P%$%6%j(B(974926) $BE}9g(B Windows $BG'>Z$N!";q3J>pJs$NCf7Q967b(B
(Microsoft, 2009.12.09)

$B!!$"$N!A(B Microsoft $B$5$s!"(BKB 974926 $B$K%"%/%;%9$9$k$H!"!V?=$7Lu$"$j$^$;$s!#$*C5$7$N%Z!<%8$O8+$D$+$j$^$;$s$G$7$?!#!W$H8@$o$l$F$7$^$&$N$G$9$,!D!D!#(B

$B"#(B $B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#(B $B%"%I%P%$%6%j(B (954157) Indeo $B%3!<%G%C%/$N%;%-%e%j%F%#6/2=5!G=(B
(Microsoft, 2009.12.09)

$B!!(BWindows 2000 / XP / Server 2003 $B$K7g4Y!#(BIndeo Codec (ir32_32.dll $B$J$I(B) $B$K7g4Y$,$"$j!"96N,%a%G%#%"%U%!%$%k(B (.avi $B$J$I(B) $B$r;H$C$FG$0U$N%3!<%I$rMicrosoft Windows Indeo32 Codec Parsing Heap Corruption Vulnerability (iDefense, 2009.12.08)$B!"(B CVE-2009-4313

$B!!(BMicrosoft Security Advisory: Description of the AppCompat update for Indeo codec: December 08, 2009 (Microsoft KB 955759) $B$rE,MQ$9$k$H!"(BInternet Explorer $B$H(B Windows Media Player $B$,(B Indeo Codec $B$r;H$o$J$$$h$&$K@_Dj$5$l$k(B (AppCompatFlags $B$K$h$C$F(B)$B!#(B KB 955759 $B$K=P$F$$$k$N$O1Q8lHGD>%j%s%/$C$]$$$N$G(B ($B=BC+$5$s>pJs$"$j$,$H$&$4$6$$$^$9(B)$B!"(B $BI,MW$G$"$l$P!"(B$B%@%&%s%m!<%I%;%s%?!<$G(B 955759 $B$r8!:w(B$B$7$F%@%&%s%m!<%I$7$^$7$g$&!#$U$D$&$O<+F099?7(B / Microsoft Update $B$GE,MQ$9$l$P$h$$$O$:$G$9$,!#(B

$B"#(B $BDI5-(B

$B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#(B $B%"%I%P%$%6%j(B(973811) $BG'>Z$KBP$9$kJ]8n$N6/2=(B

$B!!(BSA 973811 $B$,99?7$5$l$?!#(B

2009/12/09: $B$3$N%"%I%P%$%6%j$r99?7$7!"!V$h$/4s$;$i$l$kpJs$rDI2C$7$^$7$?!#(B

$B!!$J$K$J$K!D!D(B

2009 $BG/(B 12 $B7n(B 9 $BF|!"%^%$%/%m%=%U%H$O
  • $B%5%]!<%H5;=Q>pJs(B 971737 $B$K$O!"%;%-%e%j%F%#0J30$N99?7%W%m%0%i%`$,4^$^$l!"(BMicrosoft Windows HTTP $B%5!<%S%9(B (WinHTTP) API $B$rM-8z$K$7$FG'>Z$KBP$9$kJ]8n$N6/2=$rA*Br$G$-$^$9!#(B

  • $B%5%]!<%H5;=Q>pJs(B 970430 $B$K$O!"%;%-%e%j%F%#0J30$N99?7%W%m%0%i%`$,4^$^$l!"(BHTTP $B%W%m%H%3%k(B $B%9%?%C%/(B (http.sys) $B$rM-8z$K$7$FG'>Z$KBP$9$kJ]8n$N6/2=$rA*Br$G$-$^$9!#(B

  • $B%5%]!<%H5;=Q>pJs(B 973917 $B$K$O!"%;%-%e%j%F%#0J30$N99?7%W%m%0%i%`$,4^$^$l!"%$%s%?!<%M%C%H(B $B%$%s%U%)%a!<%7%g%s(B $B%5!<%S%9(B (IIS) $B$rM-8z$K$7$FG'>Z$KBP$9$kJ]8n$N6/2=$rA*Br$G$-$^$9!#(B

  • $B!!$U$`$s!D!D!#(B

    IE6 and IE7 0-Day Reported

    Vulnerability Note VU#800113 - Multiple DNS implementations vulnerable to cache poisoning (Kaminsky attack $BOC(B)

    Consumer Anti-Malware Endpoint Protection Test Report Q3

    $B!!%(%s%?!<%W%i%$%:8~$1@=IJ%l%]!<%H$,!"F|K\8l2=$5$l!"$+$DL5NA$GF~$B%H%l%s%I%^%$%/%m3t<02q (techtarget, 2009.12.09)$B!#%H%l%s%I%^%$%/%m@=IJ$,$$$$@.@S$@$C$?$+$iGc$$

    $B!!$=$l$O$H$b$+$/!"%3%s%7%e!<%^8~$1$H%(%s%?!<%W%i%$%:8~$1$H$G$O!"7k2L$,$+$J$j0[$J$k$N$,6=L#?<$$!#0J2<$O!"%3%s%7%e!<%^8~$1@=IJ$N!V(B8 $B;~4V$4$H$K!"0-0U$N$"$k(B URL $B$N%i%$%V%;%C%H$r%F%9%H$7$?7k2L!W$N0zMQ!#(B

    $B!!

    $B!!%(%s%?!<%W%i%$%:8~$1$NJ}$,%.%6%.%6$,B?$$(B ($BFC$K%^%+%U%#!<$H(B Norman) $B$3$H!"(B $B%(%s%?!<%W%i%$%:8~$1$N%H%l%s%I%^%$%/%m$O%3%s%7%e!<%^8~$1$N$h$&$K!V05>!!W$H$$$&$o$1$G$O$J$$$3$H!"$,FI$_$H$l$k!#FCDj;~4|$K$*$1$k%^%+%U%#!

    $B!!$J$<%3%s%7%e!<%^8~$1$H%(%s%?!<%W%i%$%:8~$1$H$G!"$3$s$J$K$b0c$$$,H/@8$9$k$N$@$m$&!#$h$/$o$+$i$J$$!#(B


    $B"#(B 2009.12.09

    $B"#(B Vulnerability Note VU#568372: NTP mode 7 denial-of-service vulnerability
    (US-CERT, 2009.12.08)

    $B!!(Bxntp2 $B!A(B ntp 4.2.4p7 / 4.2.5 $B$K7g4Y!#(B NTP mode 7 (MODE_PRIVATE) $B%Q%1%C%H$N07$$$K7g4Y$,$"$j!"(Brestrict $B@_Dj$K$h$k@)8B$,$J$$>l9g$K!"(B $B96N,%Q%1%C%H$r;H$C$F!"(BNTP $B%5!<%P(B 2 $BBf$N4V$G(B NTP mode 7 $B%Q%1%C%H$r%T%s%]%s$5$;$k$3$H$,2DG=!#7k2L$H$7$F(B DoS $B967b$,@.N)$9$k!#(B CVE-2009-3563

    $B!!(Bntp 4.2.4p8 / 4.2.6 $B$G=$@5$5$l$F$$$k!#(B ntp 4.2.4p7 $B$H$N(B diff $B$r8+$F$_$?$N$@$,!"(Bntpd/ntp_request.c $B$r=$@5(B$B$9$l$P$$$$$H$$$&$3$H$G$9$+$M!#(B

    $B!!4XO"(B: Resolved Vulnerabilities: DoS attack from certain NTP mode 7 packets (ntp.org)

    2009.12.11 $BDI5-(B:

    $B!!(BJVNVU#568372: NTP $B$K$*$1$k%5!<%S%91?MQK832(B (DoS) $B$N@H (JVN, 2009.12.09)

    $B"#(B APSB09-19: Security updates available for Adobe Flash Player
    (Adobe, 2009.12.08)

    $B!!(BFlash Player 10.0.42.34$B!"(BAIR 1.5.3 $B=P$^$7$?!#(B7 $B$D$N7g4Y(B ($BG$0U$N%3!<%I$NpJsO31L(B x 1) $B$,=$@5$5$l$F$^$9!#(B CVE-2009-3794 CVE-2009-3796 CVE-2009-3797 CVE-2009-3798 CVE-2009-3799 CVE-2009-3800 CVE-2009-3951

    $B!!(BFlash Player 9 $B$N99?7HG$O=P$^$;$s!#(BFlash Player 10.0.42.34 $B$K%"%C%W%0%l!<%I$7$F$/$@$5$$!#(B Flash Player 9 $B$N99?7HG(B 9.0.260.0 $B$O(B Flash Player 9 for Unsupported Operating Systems (Adobe) $B$+$iF~pJs$"$j$,$H$&$4$6$$$^$9!#(B

    $B!!$"$H!"$3$s$JJ8>O$,(B:

    Note: The Adobe Flash Player 10.1 release, expected in the first half of 2010, will be the last version to support Macintosh PowerPC-based G3 computers. Adobe will be discontinuing support of PowerPC-based G3 computers and will no longer provide security updates after the Flash Player 10.1 release. This unavailability is due to performance enhancements that cannot be supported on the older PowerPC architecture.

    $B!!(BPowerPC $B$O$$$h$$$h%G%#%9%3%s$G$9$+!D!D!#(B

    $B!!4XO"(B: Adobe Flash Player $B$N%P!<%8%g%s%F%9%H(B (Adobe) ($BG0$N$?$a5{Bs(B)

    $BpJs$r<($7$^$9!#(B

    $B%W%i%C%H%U%)!<%`(B $B%V%i%&%6(B Player $B$N%P!<%8%g%s(B
    Windows Internet Explorer 10.0.32.18

    $B!!BLL\$8$c$s!D!D!#(B

    2010.02.24 $BDI5-(B:

    $B!!F|K\8lHG(B: APSB09-19: Adobe Flash Player$BMQ$N%;%-%e%j%F%#%"%C%W%G!<%H8x3+(B (Adobe)

    $B"#(B Microsoft 2009 $BG/(B 12 $B7n$N%;%-%e%j%F%#>pJs(B
    (Microsoft, 2009.12.09)

    $B!!M=Dj$I$*$j=P$^$7$?!#(B

    MS09-069 - $B=EMW(B: Local Security Authority Subsystem Service (LSASS) $B$N@H

    MS09-070 - $B=EMW(B: Active Directory $B%U%'%G%l!<%7%g%s(B $B%5!<%S%9$N@H

    $B!!(BWindows Server 2003 / 2008 $B$N(B Active Directory $B%U%'%G%l!<%7%g%s%5!<%S%9(B (ADFS) $B$K(B 2 $B$D$N7g4Y!#(B

    • ADFS $B$N%7%s%0%k(B $B%5%$%s(B $B%*%s$N$J$j$9$^$7$N@HCVE-2009-2508

      $B$3$N@H $B%$%s%?!<%M%C%H%-%*%9%/$J$I!"6&M-%"%/%;%9$r;}$D%3%s%T%e!<%?!<$G!"967bl9g!"JL$N0JA0$NG'>Z$5$l$?%f!<%6!<$,8"8B$r;}$D%j%=!<%9$K%"%/%;%9$5$l$k2DG=@-$,$"$j$^$9!#$3$N967b$O(B ADFS $B4IM}
      $B967b $B967bZ$r9T$&$3$H$K$h$j!"$3$N@HZ$5$l$?%;%C%7%g%s$rL58z$K$9$k$?$a!"967bpJs$r:F;HMQ$G$-$J$/$J$j$^$9!#(B

      $B:FAw967b$G$9$+!#(BExploitability Index: 3

    • ADFS $B$G%j%b!<%H$G%3!<%I$,CVE-2009-2509

      $B967b

    MS09-071 - $B6[5^(B: $B%$%s%?!<%M%C%HG'>Z%5!<%S%9$N@H

    MS09-072 - $B6[5^(B: Internet Explorer $BMQ$NN_@QE*$J%;%-%e%j%F%#99?7%W%m%0%i%`(B (976325)

    $B!!(BIE 5.01 / 6 / 7 / 8 $B$K(B 5 $B$D$N7g4Y!#(B

    • ATL COM $B$N=i4|2=$N@HCVE-2009-2493

      tdc.ocx $B$K7g4Y!#(BATL / ActiveX $B$M$?!#(B Exploitability Index: N/A

    • $B=i4|2=$5$l$F$$$J$$%a%b%jGKB;$N@HCVE-2009-3671

      $BFCDj$N(B HTML $B%?%0$N=hM}$K7g4Y$,$"$j!"%a%b%jGK2u$,H/@8!"G$0U$N%3!<%I$NZDI-09-086: Microsoft Internet Explorer XHTML DOM Manipulation Memory Corruption Vulnerability$B!#(B Exploitability Index: 1

    • HTML $B%*%V%8%'%/%H$N%a%b%jGKB;$N@HCVE-2009-3672

      IE6 and IE7 0-Day Reported $B$N7o!#(B Exploitability Index: 1

    • $B=i4|2=$5$l$F$$$J$$%a%b%jGKB;$N@HCVE-2009-3673

      2 $B$D$N%(%l%a%s%H$N4V$G!"9b$$B.EY$G$/$j$+$($7$F%/%j%C%/$7B3$1$k$H6%9g>uBV$H$J$j%a%b%jGK2u$,H/@8!"G$0U$N%3!<%I$NZDI-09-087: Microsoft Internet Explorer CSS Race Condition Code Execution Vulnerability$B!#(B Exploitability Index: 1

    • $B=i4|2=$5$l$F$$$J$$%a%b%jGKB;$N@HCVE-2009-3674

      CAttrArray $B%*%V%8%'%/%H$N07$$$K7g4Y$,$"$j!"(BWeb $B%"%W%j%1!<%7%g%s$+$i!"(BCAttrArray $B%*%V%8%'%/%H$r2rJ|$7$?%a%b%j$K%"%/%;%9$G$-$F$7$^$&!#(B $B7k2L$H$7$FG$0U$N%3!<%I$NZDI-09-088: Microsoft Internet Explorer IFrame Attributes Circular Reference Dangling Pointer Vulnerability $B!#(B Exploitability Index: 1

    $B!!4XO"(B: KB 976325$B!#(B patch $B$K4^$^$l$k!"%;%-%e%j%F%#$G$O$J$$=$@5(B ($B7W(B 5 $B7o(B) $B$K4X$9$k>pJs$"$j!#(B

    MS09-073 - $B=EMW(B: $B%o!<%I%Q%C%I$*$h$S(B Office $B%F%-%9%H(B $B%3%s%P!<%?!<$N@H

    MS09-074 - $B6[5^(B: Microsoft Office Project $B$N@H

    2010.01.31 $BDI5-(B:

    $B!!(BMS09-054 / MS09-072 patch + IE 6 + HTTP 1.1 $B$G%O%s%0$k$3$H$,$"$C$?$=$&$G(B: After the installation of security update 974455 or 976325, Internet Explorer 6 may stop responding (hang) when accessing Web sites that provide compressed content (Microsoft KB 978722)$B!#(B MS10-002 patch $B$GD>$C$F$$$k$=$&$G$9!#(B

    $B"#(B Ruby 1.9.1-p376 $B%j%j!<%9(B
    (ruby-lang.org, 2009.12.07)

    $B!!(Bruby 1.9.1-p376 $BEP>l!#(Bheap overflow $B$9$k7g4Y(B CVE-2009-4124 $B$,=$@5$5$l$F$$$k!#$3$N7g4Y$O(B ruby 1.8 $B7ONs$K$OB8:_$7$J$$!#(B


    $B"#(B 2009.12.08

    $B"#(B $BDI5-(B

    $B"#(B $B$$$m$$$m(B (2009.12.08)
    (various)

    $B"#(B JVN#79762947: EC-CUBE $B$K$*$1$k>pJsO3$($$$N@H
    (JVN, 2009.12.07)


    $B"#(B 2009.12.07


    $B"#(B 2009.12.06

    $B"#(B $BDI5-(B

    $B"#(B $B$$$m$$$m(B (2009.12.06)
    (various)

    2010.02.16 $BDI5-(B:

    $B!!(Bi$B%b!<%I(BID$B$rMQ$$$?!V$+$s$?$s%m%0%$%s!W$N(BDNS Rebinding$B@H (HASH$B%3%s%5%k%F%#%s%0(B, 2009.11.24) $B$,(B 2010.01.21 $BIU$G99?7$5$l$F$$$k!#(B

    $BD{@5!J(B2010$BG/(B1$B7n(B21$BF|!K(B
    $BEv=i%j%j!<%9$G!V(BFOMA$B%+!<%I@=B$HV9f$J$I$rMQ$$$F$$$k>l9g$O1F6A$rl9g$b1F6A$rl9g!"MxMQe$K3NG'2hLL$,I=<($5$l$k$N$G!"$=$3$G%f!<%6$,5q@d$9$l$P967b$K$"$o$J$$$,!"9*L/$JM6F3$J$I$K$h$j967b$5$l$l$P!"Ho32$KAx$&%f!<%6$b=P$F$/$k$H9M$($i$l$k!#(B

    $B"#(B 2009.12.05

    $B"#(B $BDI5-(B

    Potential Adobe Illustrator CS4 issue

    $B!!B3Js(B: Adobe Illustrator issue update (adobe, 2009.12.04)$B!#(B Illustrator CS4 / CS3 for Windows / Mac $B$K7g4Y$"$j!"(B 2009.12.07 $B$K(B SA $B$r=P$9!"$@$=$&$G$9!#(B


    $B"#(B 2009.12.04

    $B"#(B $BDI5-(B

    $B"#(B Fuzzing Reader - Lessons Learned
    (Adobe Secure Software Engineering Team, 2009.12.01)

    $B!!(BAdobe Reader / Acrobat $B$r(B Fuzzing $B$7$F$_$^$7$?OC!#(B Adobe Reader $B$N?MC#$O(B Peach $B$r;H$C$F$$$k$=$&$G$9!#(B

    Peach provides:
    • A rich set of data mutators
    • Several mechanisms for extension and modification (including extending the engine itself since it's open source)
    • Excellent Monitoring/Logging, using the !exploitable (bang exploitable) tool from Microsoft.

    $B"#(B Potential Adobe Illustrator CS4 issue
    (Adobe PSIRT blog, 2009.12.03)

    $B!!(BAdobe Illustrator CS4 $B$K(B 0day $B$J7g4Y$,$"$k$C$F$3$H$G$9$+$M!D!D!#(B

    $B!!!D!D$3$l$G$9$+(B: Adobe Illustrator CS4 v14.0.0 Encapsulated Postscript (.eps) Buffer Overflow Exploit (exploit-db.com)

    $B!!(BCVE-2009-4195

    2009.12.05 $BDI5-(B:

    $B!!B3Js(B: Adobe Illustrator issue update (adobe, 2009.12.04)$B!#(B Illustrator CS4 / CS3 for Windows / Mac $B$K7g4Y$"$j!"(B 2009.12.07 $B$K(B SA $B$r=P$9!"$@$=$&$G$9!#(B

    2009.12.08 $BDI5-(B:

    $B!!(BSA: APSA09-06: Security Advisory for Adobe Illustrator CS4 and Adobe Illustrator CS3 (Adobe, 2009.12.07)$B!#(B2010.01.08 $B$K=$@5HG$,EP>lM=Dj$@$=$&$G!#(B

    2009.12.23 $BDI5-(B:

    $B!!F|K\8lHG(B: APSA09-06 - Adobe Illustrator CS4$B$H(BAdobe Illustrator CS3$B$K4X$9$k%;%-%e%j%F%#>pJs(B (Adobe)

    2010.01.13 $BDI5-(B:

    $B!!(Bpatch $B=P$F$^$9(B: APSB10-01: Security updates available for Adobe Illustrator CS4 and CS3 (Adobe, 2010.01.07)$B!#<+F099?7$G$O$J$/!"

    2010.02.24 $BDI5-(B:

    $B!!F|K\8lHG(B: APSB10-01: Adobe Illustrator CS3$B$*$h$S(BCS4$BMQ%;%-%e%j%F%#%"%C%W%G!<%H8x3+(B (Adobe)

    $B"#(B Pre-Notification - Security Update for Adobe Flash Player
    (Adobe PSIRT blog, 2009.12.03)

    $B!!(BMicrosoft Update $B$NF|$K(B Flash Player $B$N99?7$b=P$k$=$&$G!#(B Adobe Reader $B$O2?EY$bMh$F$^$9$1$I!"(BFlash Player $B$O$R$5$7$V$j$G$9$M$(!#(B

    The update addresses critical security issues in the product.

    $B"#(B $B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#>pJs$N;vA0DLCN(B - 2009 $BG/(B 12 $B7n(B
    (Microsoft, 2009.12.04)

    $B!!$&$%!"$b$&$=$s$J5(@a$J$N$+!#6[5^(B x 3$B!"=EMW(B x 3 $B$rM=Dj!#(B Office (Word, Project, Office Converter Pack) $B$d(B IE $B$N=$@5$,4^$^$l$^$9!#(B Office 2007 $B$K$O7g4Y$O$J$$$h$&$G$9!#(B IE6 and IE7 0-Day Reported $B$OD>$k$+$J$"!#(B

    $B!!4XO"(B: 2009$BG/(B12$B7n(B9$BF|$N%;%-%e%j%F%#%j%j!<%9M=Dj(B ($BDjNc(B) ($BF|K\$N%;%-%e%j%F%#%A!<%`(B, 2009.12.04)$B!#(B IE6 and IE7 0-Day Reported $B$bD>$kM=Dj$HL@5-$5$l$F$^$7$?!#(B


    $B"#(B 2009.12.03


    $B"#(B 2009.12.02


    $B"#(B 2009.12.01

    • $B!U(B ThreatExpert Report: Mal/EncPk-EG, Trojan:Win32/Inhoo.A, Worm:Win32/Taterf.B (threatexpert.com)$B!#%3%l$K%d%i%l$F$$$??M$r3XFb$GH/8+!#(B

      The data identified by the following URLs was then requested from the remote web server:
      o http://www.yahoo1xh.com/1rb/ar1.rar
      o http://www.yahoo1xh.com/1rb/ar.rar

      $B!!(Bproxy server $B$N(B log $B$rD4$Y$F$_$?$i!"B>$K$b(B www.yahoo1xh.com $B$K%"%/%;%9$7$F$$$k?M$rH/8+!#(Borz

    $B"#(B [Full-disclosure] ** FreeBSD local r00t zeroday
    (Full-disclosure ML, 2009.12.01)

    $B!!(BFreeBSD 7.0 / 7.1 / 7.2 / 8.0 $B$K7g4Y!#(BRun-Time Link-Editor (rtld) $B$K$*$1$k(B LD_PRELOAD $B4D6-JQ?t$N=hM}$K7g4Y$,$"$j!"(Blocal user $B$,(B root $B8"8B$rC%CVE-2009-4146 CVE-2009-4147

    $B!!6[5^(B patch $B$,8x3+$5$l$F$$$k(B: ANNOUNCE: [FreeBSD-Announce] Upcoming FreeBSD Security Advisory

    2009.12.04 $BDI5-(B:

    $B!!(BSecurity Advisory $B=P$^$7$?(B: ANNOUNCE: [FreeBSD-Announce] FreeBSD Security Advisory FreeBSD-SA-09:16.rtld

    2009.12.28 $BDI5-(B:

    $B!!(B FreeBSD$B$N(Brtld$B$N@HZ%l%]!<%H(B (NTT $B%G!<%?!&%;%-%e%j%F%#(B, 2009.12.04)


    [$B%;%-%e%j%F%#%[!<%k(B memo]