<script class="xss">$('.xss').parents().eq(1).find('a').eq(1).click();$('[data-action=retweet]').click();alert('XSS in Tweetdeck')</script>â¥
ECMAScriptã®ä»æ§ã§ã¯ã0x0A/0x0D以å¤ã«U+2028/2029ã®æåãæ¹è¡ã¨ãããã¨ãæè¨ããã¦ãã¾ãã ããã¯ãã¾ãç¥ããã¦ããªãããã«æãã¾ãã 以ä¸ã¯ã¢ã©ã¼ããåºãã¾ãã <script> //[U+2028]alert(1) </script> ç¥ããã¦ããªãã ãã§ãªããç¥ã£ã¦ããã¨ãã¦ããã¹ã¯ãªããã§æååãå¦çããã¨ãã«ãU+2028/2029ã¾ã§èæ ®ããéçºè ãã©ãã ãããã®ãã¨ãã話ã§ãã å®éãU+2028/2029ãæ¾ãè¾¼ãã¨æååãªãã©ã«å ã«ãã®æåãçã®ã¾ã¾é ç½®ãããã¨ã©ã¼ãåºããã¼ã¸ã¯æ¬å½ã«ããããããã¾ããã¾ããã¨ã©ã¼ãã§ãã ããªãã大æµã®å ´å大ããªåé¡ã«ã¯ãªãã¾ããã ã¨ããããU+2028/2029ã«ãã£ã¦XSSãå¼ãèµ·ãããã¦ãã¾ãå ´åã¨ããã®ãæè¿å®éã«è¦ã¾ããã Googleã®ãµã¼ãã¹ã§è¦ã¤ãã2ã¤ã®ã±ã¼ã¹ãåãä¸ãããã¨æãã¾ãã ã±
å¹³ç´ ããYahoo!ç¥æµè¢ããå©ç¨ããã ããããã¨ããããã¾ãã 2017å¹´11æ30æ¥ããã¡ã¾ãã¦ããç¥æµãã¼ããæ©è½ã®æä¾ãçµäºãããã¾ããã ããã¾ã§ãå©ç¨ããã ãã¾ããçæ§ã«ã¯ãè¿·æãããããããã¨ã¨ãªããèª ã«ç³ã訳ãããã¾ããã é·å¹´ã®ãæ顧ãå¿ããã礼ç³ãããã¾ãã å¼ãç¶ããYahoo!ç¥æµè¢ã®ãQ&Aãæ©è½ããå©ç¨ãã ããã Yahoo!ç¥æµè¢ããã ç¥æµãã¼ããµã¼ãã¹çµäºã®ãç¥ãã ãã©ã¤ãã·ã¼ - å©ç¨è¦ç´ - ã¡ãã£ã¢ã¹ãã¼ãã¡ã³ã - ã¬ã¤ãã©ã¤ã³ - ãæè¦ã»ãè¦æ - ãã«ãã»ãåãåãã JASRAC許諾çªå·ï¼9008249113Y38200 Copyright (C) 2018 Yahoo Japan Corporation. All Rights Reserved.
2013-07-22 Yahoo!ç¥æµè¢ã«XSSï¼(ãã®2) ãã³ã¡ããã netcraft XSS localStorageã®ä¿å件æ°ã5件ã¾ã§ãªã®ã§ã5件å®å ¨ãªè³ªåãè¦ãã°ã¹ã¯ãªããã¯å®è¡ãããªããªããã©ãä»ã«å±éºãªJSä»è¾¼ã¾ããå¯è½æ§ãããããYahooã対å¿ããã¾ã§ã¯åçã«ããã¦ã¼ã¶ã¼ã¹ã¯ãªãããå ¥ãã¦ãããæ¹ãè¯ã㪠ãããlocalStorageãªãã§ãããæ©éã質åè ãå¿ ããªããã«ãªãã¨ãããåã£ããããããç»å ´ãã¦ã¾ããï½ ï¼ã¢ã¤ã³ã³ãããã§ãã(ç¬)ã¨ãããããåçã«ããJavaScriptã使ãããWebãã©ã¦ã¶ã®ãã£ããããã¼ãã¼ã«ããlocalStorageãåé¤ãã¾ãããã Chromeã ã£ãããéçº/管ç -> ãã£ããããã¼ãã¼ã« -> Resouce -> Local Storage -> http://detail.chiebukuro.yahoo.
Googleã®èå¼±æ§å ±é ¬å¶åº¦ã®å ±é ¬ãã¢ããããã¾ãããï¼ Googleãèå¼±æ§æ å ±ã«æ¯æãå ±å¥¨éãå¤§å¹ ã¢ãã - ITmedia ã¨ã³ã¿ã¼ãã©ã¤ãº http://www.itmedia.co.jp/enterprise/articles/1306/10/news027.html Googleã¢ã«ã¦ã³ããã¼ã¸ã«åå¨ããã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ï¼XSSï¼ã®èå¼±æ§æ å ±ã«ã¤ãã¦ã¯3133.7ãã«ãã7500ãã« accounts.google.comã®XSSã¯$7,500 ã ããã§ããã¿ã¤ãããã§ããï¼ ã¿ã¤ããã®ã¯ããªãå³ããã¨æãã¾ããããã¤ã¦2ã¤ã¿ã¤ãããã¨ãããã¾ãã ä»æ¥ã¯ãã®ãã¡1ã¤ãç´¹ä»ãããã¨æãã¾ãã oeãã©ã¡ã¼ã¿ã使ã£ãXSS 2012å¹´12æ27æ¥ã«å ±åãä¿®æ£ãããåé¡ã§ãã Googleã¯ãä¸é¨ã®ãµã¼ãã¹ã§ãoeãã¨ããã¯ã¨ãªãã©ã¡ã¼ã¿ãä»å ãããã¨ã§ããã¼ã¸ã®è¡¨ç¤ºã«
ãªãã robots.txt ãããããªãã¼ã¯ã¼ãã«ãªã£ã¦ããã®ã§ä»ããç¥ã£ãã®ã§ãããéä¿¡æ©å¨ã¬ã³ã¿ã«ãµã¼ãã¹ã®ä¼ç¤¾ãããã¯ã¬ã¸ããã«ã¼ãæ å ±ãã©æ´¾æã«æµåºãããã件ã§ããµã¤ãã«è¨ç½®ããã¦ãã robots.txt ãè²ã ã¨æ®å¿µãªä»¶ã«ã¤ãã¦è©±é¡ã«ãªã£ã¦ãã¾ããã robots.txt ï¼ ã¯ã¦ãªããã¯ãã¼ã¯ ä¸æ£ã¢ã¯ã»ã¹ã«ããã客æ§æ å ±æµåºã«é¢ãããç¥ããã¨ãè©«ã³ ï¼ ã¨ã¯ã¹ã³ã ã°ãã¼ãã«æ ªå¼ä¼ç¤¾ æ å ±ãæµåºããç´æ¥ã®åå 㯠SQL ã¤ã³ã¸ã§ã¯ã·ã§ã³ã«ããæ»æãåããã¨ã®ãã¨ã§ãåãµã¤ãã® robots.txt ãä½ã®çµç·¯ã§è©±é¡ã«ãªã£ãã®ãã¯ãããã¾ããããrobots.txt ã®å 容ãããCMS ã« Drupal ã使ã£ã¦ãããããã¨ããDrupal ã®ããã±ã¼ã¸ã«å梱ããã¦ãã robots.txt ã»ã¼ãã®ã¾ã¾è¨ç½®ããã¦ãã件ãããã«ãã®ãDrupal ã®å¤ããã¼ã¸ã§ã³ã«ã¯ XSS
æåéåèªä½ã¯æ½è±¡çãªãæåã®éã¾ããã«éããªãã®ã§åç¬ã§åé¡ã«ãªããã¨ã¯ãªããï¼ç°ãªãæåéåã«å¤æããéã«ã¯åé¡ãçºçããå ´åããããæåéåãç°ãªãã¨ãããã¨ã¯ï¼å¯¾å¿ããæåã1対1対å¿ãã¦ããªãã®ã§ï¼å¤æå ã®æåéåã§å¯¾å¿ããæåããªãã±ã¼ã¹ãï¼å¤å¯¾1ã®å¯¾å¿ãçºçããå¯è½æ§ãããã å³1ã«ï¼Unicodeãããã¤ã¯ãã½ããæ¨æºãã£ã©ã¯ã¿ã»ããã«å¤æããå ´åãä¾ç¤ºããããã¤ã¯ãã½ããæ¨æºãã£ã©ã¯ã¿ã»ããã«ã¯ã骶ãï¼å°¾ã¦ã骨ã®âã¦ãâï¼ãï¼ãã³ã°ã«ãªã©ã¯ãªããã¾ãï¼ããã¯ã¹ã©ãã·ã¥ã\ãï¼U+005Cï¼ã¨åè¨å·ã\ãï¼U+00A5ï¼ãã¨ãã«JIS X 0201ã®ã\ãï¼0x5Cï¼ã«å¤æãããå ´åã«ã¤ãã¦ç¤ºãã¦ããã ãæ¼¢ãã®ããã«1対1対å¿ãã¦ããæåã¯åé¡ãªãããã³ã°ã«ãã骶ãã®ããã«å¯¾å¿ããã³ã¼ããã¤ã³ãããªãå ´åã¯ã¨ã©ã¼ã«ãªããæååããããã¤ã³ã¿ã¼ãããã§ãå°¾ 骨 ã³ã¦ããã¤ã
å ã«ããCVE-2008-5814ãå·¡ãåéºãã«ã¦ãCVE-2008-5814èå¼±æ§ãããã¨display_errorsãOnã®ç°å¢ä¸ã§XSSèå¼±æ§ã¨ãªãå ´åããããã¨ã説æãã¾ãããããããdisplay_errorsãOnã®ç°å¢ä¸ã§ã¯CVE-2008-5814èå¼±æ§ããªãã¦ããXSSèå¼±æ§ã¨ãªãå ´åããã°ãã°ããã¾ãã ããã¯ãdisplay_errorsã«ããã¨ã©ã¼ã¡ãã»ã¼ã¸è¡¨ç¤ºãHTMLã¨ã¹ã±ã¼ãããã¦ããªããã¨ãåå ã§ããç°¡åãªãµã³ãã«ã以ä¸ã«ç¤ºãã¾ãã <?php ini_set('display_errors', 1); // display_errorsãæå¹ã«ãã $a = array(); // é åã®çæ $index = $_GET['x']; // é åã®ã¤ã³ããã¯ã¹ãå¾ã $b = $a[$index]; // é åã®è¦ç´ ã«ã¢ã¯ã»ã¹ ãã®ã¹ã¯ãªããã«ãx=<sc
å æ¥ãtwitterä¸ã®ç¯è¡äºåã«ãã20æ³ã®éå¹´ãé®æãããããã§ããããªããã¾ãã«ãã誤èªé®æã§ã¯ãªãã£ãã®ãæ°ã«ãªãã¨ããã§ããããã§ãtwitterãããªããã¾ãæ稿ãã©ã®ç¨åº¦å¯¾çãã¦ãããã調ã¹ã¦ã¿ããã¨ã«ãã¾ãããtwitterã®å®å ¨æ§ã確èªãããã¨ãç®çã¨ããããããtwitterãå®æ½ãã¦ãã対çãç¥ããã¨ã«ãããçæ§ã®Webãµã¤ããå®å ¨ã«ããåèã«ãã¦ããã ããã°ã¨æãã¾ãã ä»å調ã¹ãããªããã¾ãæ稿ãã®ææ³ã¯ä¸è¨ã®éãã§ãã ã¯ãã¹ãµã¤ãã»ãªã¯ã¨ã¹ãã»ãã©ã¼ã¸ã§ãª(CSRF) ã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ï¼XSSï¼ HTTPãããã¼ã¤ã³ã¸ã§ã¯ã·ã§ã³ ã¯ãªãã¯ã¸ã£ããã³ã° DNSãªãã¤ã³ãã£ã³ã° ã¯ããã¼ã¢ã³ã¹ã¿ã¼ãã° ãã®ãã¡ãä¸ã®5ã¤ã®è§£èª¬ã¯æ稿ãâ誤èªé®æâãé²ãWebã»ãã¥ãªãã£å¼·åè¡ããæå¾ã®ã¯ããã¼ã¢ã³ã¹ã¿ã¼ãã°ã«ã¤ãã¦ã¯ãéå»ã®ã¨ã³ããªãã¯ããã¼ã¢ã³ã¹ã¿ã¼
Twitterã¯2010å¹´ãããå¹´ãã¨ã«Twitterã®ãµã¼ãã¹ã®ã»ãã¥ãªãã£åé¡ã®å ±åè ã®ãªã¹ããæ²è¼ãã¦ãã¾ãã以ä¸ããã®ãã¼ã¸ã§ãã https://twitter.com/about/security 幸éã«ããåã¯æ¯å¹´è¼ããã¨ãã§ãã¦ããã®ã§ã2013å¹´ãæ©éè¼ã£ã¦ããããããªããã¨ãããã¨ã§é å¼µã£ã¦èå¼±æ§ãæ¢ãã¾ãããçµæã¯ãã¼ã¸ãè¦ã¦ãããã°ãããã¨æãã¾ããããªãã¨ãã¿ã¤ãããã¨ãã§ãã¾ãããä»åã¿ã¤ããåé¡ãã©ããªåé¡ã ã£ãããæ¸ãããã¨æãã¾ãã2ã¤ããã¾ãã 1. analytics.twitter.com ã®XSS analytics.twitter.comã¯ãTwitterãæä¾ãããµã¤ããªã¼ãã¼ã®ããã®è§£æãã¼ã«ãã ããã§ãããããªå ·åã«ããã°ã¤ã³ãã¼ã¸ã®ãã©ã¡ã¼ã¿ã§ã¨ã³ã³ã¼ãã£ã³ã°å¦çã«èµ·å ããXSSãããã¾ããã XSSãã¯ã¿ã«é¢ãã¦ç¹ã«é¢ç½ããã¨ã¯ãªãã®ã§
ææäºé Aä¸ã®(a)ã¯ãä»ãè¦ãªãã¦ããã»ãã¥ã¢ãå±æ§ã ã¨åããã¾ããã徳丸æ¬ï¼ä½ç³»çã«å¦ã¶ å®å ¨ãªWebã¢ããªã±ã¼ã·ã§ã³ã®ä½ãæ¹ï¼ã§ã¯ã4.8.2ã¯ããã¼ã®ã»ãã¥ã¢å±æ§ä¸å(P209)ã«èª¬æãããã¾ãã ææäºé Bã¯ãããã ãèªãã¨ãXSSã®ããã§ãããããµã¼ãã¼ãµã¤ãã®ã¹ã¯ãªããã¤ã³ã¸ã§ã¯ã·ã§ã³ã®ããã§ãããã¾ãããæ¤æ»ãã°ããXSSã§ãããã¨ããããã¾ãï¼ä¸å³ã¯IPAããã®å¼ç¨ï¼ãXSSã¯ã徳丸æ¬4.3.1ã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ï¼åºæ¬ç·¨ï¼ã¨4.3.2ã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ï¼çºå±ç·¨ï¼ã«ã¦èª¬æãã¦ãã¾ãã ããã¾ã§ã¯ãããåºæ¬çãªåé¡ã§ãããåé¡æP6ã«åºã¦ãã以ä¸ã®é¨åã¯ãå°ãã ãã²ãã£ã¦ã¾ããã ãã®ããã°ã©ã ã¯ãå©ç¨è ãå ¥åããæååããã¤ã¢ãã°ã«è¡¨ç¤ºããããã«ãåãåã£ããã©ã¡ã¿ã®å¤ãã¹ã¯ãªããã«åãè¾¼ã¿ãåçã«ã¹ã¯ãªãããçæãããå³4ã®(  c   )è¡ç®ã§ã¯
å æ¥ã®ã¨ã³ããªãå¦çéå§å¾ã®ä¾å¤å¦çã§ã¯ããµãã¿ã¤ãºããæå¹ãªå ´åããããã¯ãç´ æã®æ¶åä¸è¶³ãç§ã®è¡¨ç¾ã®æªççãããä¸é¨ã§èª¤è§£ãæãã¦ãã¾ã£ãããã§ç³ã訳ããã¾ãããã¢ããã¼ããå¤ãã¦ããµãã¿ã¤ãºã«ã¤ãã¦ããä¸åº¦èãã¦ã¿ããã¨æãã¾ããçµè«ããè¨ãã°ãæªããµãã¿ã¤ãºã¯ãã£ã¦ãããè¯ããµãã¿ã¤ãºãã¯ãªãã¨èãã¾ããããããªãããç¶æ³ã«ãã£ã¦ã¯å¦¥åã®ç£ç©ã¨ãã¦ãµãã¿ã¤ãºã使ããã¨ã¯ãããå¾ãã¨èãã¾ãã æ¬ç¨¿ã§ç¨ããããµãã¿ã¤ãºãã®å®ç¾© ãµãã¿ã¤ãºã¨ããç¨èªã¯ãæ´å²çã«é½åã®è¯ãããã«ä½¿ããã¦ããæ´å²ããããããããã¦ãããæ¤ç´¢ãã¦è¦ãã¨ãæ¬å½ã«å¤æ§ãªä½¿ããæ¹ããã¦ããã¨æãã¾ããããã®æ§åã¯ãé«æ¨æµ©å æ°ã®ããã°è¨äºãããµãã¿ã¤ãºãã¨ããè¨èã¯ããæ»ãã§ãããããã伺ãã¾ãã ããã§ã¯ãè°è«ã®é½åä¸ã以ä¸ããµãã¿ã¤ãºã®å®ç¾©ã¨ãã¦ç¨ãããã¨ã«ãã¾ãã ãµãã¿ã¤ãºã¨ã¯ã 主ã«ã»ãã¥ãªãã£ä¸ã®ç®çã§
Masato Kinugawaããã®ããã°ãMasato Kinugawa Security Blog: Googleã®metaãªãã¤ã¬ã¯ãã«åå¨ããåé¡ããèªãã§ã <meta http-equiv="refresh" content="0;url=http://good/;url=http://evil/"> ã¿ãããªæ¸ãæ¹ãããã¨IE6ãIE7ã§ã¯evilãªã»ãã«ãªãã¤ã¬ã¯ããããã¨ãããã¨ãåãã¦ç¥ã£ãããã§ããã©ããããTwitterä¸ã§è¨ã£ãã ã¿ããã«è¨ããã¦ãã¾ã£ã¦è»½ãã·ã§ãã¯åãããã§è¿½è©¦ãã¦ã¿ããã©ãã;ããã¨ã¹ã±ã¼ãããã㨠<meta http-equiv="refresh" content="0;url=http://good/;url=http://evil/"> ã¿ããã«æ¸ãã¦ããã;url=ãã¿ãããªæååãåºç¾ãã¦ãã¾ã£ã¦ããã£ã±ãevilã«ãªã
ãã¤ã¯ãã½ãã ã»ãã¥ãªãã£æ å ± MS11-099 - éè¦ : Internet Explorer ç¨ã®ç´¯ç©çãªã»ãã¥ãªãã£æ´æ°ããã°ã©ã (2618444) ã§ä¿®æ£ããããContent-Disposition ã®æ å ±æ¼ããã®èå¼±æ§ - CVE-2011-3404ãã«ã¤ãã¦æ¸ãã¦ããã¾ãã Content-Disposition: attachment ãHTTPã¬ã¹ãã³ã¹ãããã«æå®ããã¨ãä¸è¬çãªãã©ã¦ã¶ã§ã¯ã³ã³ãã³ãããã©ã¦ã¶å ã§ãããªãéãã®ã§ã¯ãªãããã¼ã«ã«ãã£ã¹ã¯ã¸ãã¦ã³ãã¼ããããã¨ã«ãªãã¾ããã¨ããããMS11-099ã«ã¦ä¿®æ£ãããèå¼±æ§ã使ç¨ããã¨ãç½ ãã¼ã¸ãçµç±ãããã¨ã§ Content-Disposition: attachment ã®ã¤ããhtmlãå¼·å¶çã«Internet Explorerå ã§éããã¨ãã§ãããããä¾ãã° Wiki ã Web ã¡ã¼ã«ã®æ·»ä»ãã¡
Flash Playerã®æ´æ°çã§å¯¾å¦ããã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ï¼XSSï¼ã®èå¼±æ§ã¯ãWebã¡ã¼ã«ãªã©ãçã£ãæ»æã«æªç¨ããã¦ããã¨ããã ç±³Adobe Systemsã¯ãFlash Playerã®ã»ãã¥ãªãã£ã¢ãããã¼ãã6æ5æ¥ä»ã§å ¬éããã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã°ï¼XSSï¼ã®èå¼±æ§ã«å¯¾å¦ãããããã«åããã¦Googleãåæ¥ãWebãã©ã¦ã¶Chromeã®å®å®çã®ã¢ãããã¼ããå ¬éãã¦ããã Adobeã®ã»ãã¥ãªãã£æ å ±ã«ããã¨ãèå¼±æ§ã¯Flash Player 10.3.181.16ã¾ã§ã®ãã¼ã¸ã§ã³ï¼WindowsãMacãLinuxãSolarisåãï¼ã¨10.3.185.22ã¾ã§ã®ãã¼ã¸ã§ã³ï¼Androidåãï¼ã«åå¨ããããã®èå¼±æ§ãæªç¨ããæªè³ªãªãªã³ã¯ãä»è¾¼ãã é»åã¡ã¼ã«ãéãä»ãã¦ã¯ãªãã¯ããããã¨ããæå£ã横è¡ãã¦ããã¨ã®å ±åãããã¨ããã ã¦ã¼ã¶ã¼ããã®æå£ã«ã
ããã«ã¡ã¯ãã»ãã¥ãªãã£åå¼·ä¼ãªã©ã§è¬å¸«ãæ å½ãã¦ããockeghem夫ã§ããç§ã¯å¦æ´ãç¥èãããã¾ããããã»ãã¥ãªãã£ã«é¢ãã¦ã¯ãããã§ãã·ã§ãã«ãä»åã¯ãã¢ããã»ãã¥å¥³ååã磨ãããã®4ã¤ã®å¿å¾ãçããã«ãæããããã¨æãã¾ãã 1. ããã¦2ã3ä¸ä»£åã®æ¸ç±ã®ç¥èã§å¯¾çãã ããã¦2ã3ä¸ä»£åã®æ¸ç±ã®ç¥èã§èå¼±æ§å¯¾çããããã«ãã¾ããããããã¦åå¼·ä¼ã®æã¡ä¸ãã§å¥½ã¿ã®ç·ãããã話ãããã¿ã¾ããããããããï¼ãaddslashesæ¬å½ã«ãã¸ã§ãã§ã¼ã ã«ã¤ããã§ããã©ããããï¼ãã¨è¨ã£ã¦ãç·ã«ãã©ãããã®ï¼ãã¨è¨ããã¾ããããè¨ãããããã大æåããSQLã¤ã³ã¸ã§ã¯ã·ã§ã³ã¨ã詳ãããªãã¦ããï¼ ãµãææ¬ã«è¼ã£ã¦ããããã£ã¨addslashes使ã£ã¦ããã§ããã©ããï¼ æ¥æ¬èªãåãããã§ãã ãï¼ ã·ãã·ããããï¼æï¼ãã¨è¨ãã¾ããããã ãããã®ç·ã¯æ°ããæ¸ç±ãæã¡ãããç¿æ§ãããã®ã§ãå¤ã
è¦ããã«ã解決ãããã¾ã§ã¯ãã°ã¢ã¦ããã¨ãã¨ãããã¨ã ãããã¹ã ã2011/04/20 12:20 追è¨ãã²ãã£ã¯ã¼çãªãã¾ãã追å ãã¾ããã ã2011/04/20 00:30 追è¨ãå¤åããã§æå¾ã以é㯠Evernote ã®æ£å¼çºè¡¨ãå¾ ã£ãä¸ã§ããããä¿¡ç¨ãã¦å©ç¨ãããã©ããã¯åå人ã®å¤æã«ãä»»ããã¾ãã ã2011/04/19 17:05 追è¨ãåå¾ã®é¨è¿½è¨ããªããã¨ã³ããªãèµ·ãããã¦ããæ¹ãããã¾ããã®ã§ãç´¹ä»ãï¼ãbulkneetsæ°ã«ãã£ã¦å ±åãããEvernoteã®XSSèå¼±æ§ã¨ã¯ å±éºã¨å¯¾çã( http://d.hatena.ne.jp/pichikupachiku/20110419/1303158373 ) ç¶ããèªã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}