çµå£é£ã®ç±³åå¼æä¼é·ã¯ï¼ï¼æ¥ã®ä¼è¦ã§ãã½ãããã³ã¯ã®å«æ£ç¾©ç¤¾é·ãçµå£é£ã®ã¨ãã«ã®ã¼æ¿çã«ç°è°ãå±ãããã¨ã«ã¤ãã¦ãã¾ã£ããããé¢ããçç±ã§ãç解ã«è¦ããçå±ã ã£ããåã«å対ã ã¨ããã®ã¯å°ã£ãçºè¨ã ãã¨æ¹å¤ããã çµå£é£ããå®å ¨æ§ã®ç¢ºèªãããåçºã®å稼åã極ãã¦éè¦ãã¨ããã¨ãã«ã®ã¼æ¿çã®æè¨ãã¾ã¨ãããã¨ã«ã¤ãã¦ãå«æ°ã¯ï¼ï¼æ¥ã®çµå£é£ã®çäºä¼ã§ãå½æ°ãå®å ¨ã»å®å¿ã«ä¸å®ãæã¤ä¸ãçµæ¸çãå©çåªå ã§ããã®ããã¨çºè¨ãç±³åä¼é·ã«ãåçºå稼åãæåªå ã¨åãåããããããªçºè¨ããã¹ãã§ãªããã¨æ±ããçã¨ããåçå¯è½ã¨ãã«ã®ã¼ãåªå ãã¹ãã ã¨è¿«ã£ãã ç±³åä¼é·ã¯ä¼è¦ã§ãï¼çäºä¼ã§å«æ°ã¯ï¼èª°ãããè³åãå¾ããããæè¨ã¯åæ¡éãæ¡æããããã¡ããã¨ããçå±ã§ãªãã£ããã¨ä¸è¹´ãããå«æ°ãçµå£é£ãè±ä¼ããå¯è½æ§ã«ã¤ãã¦ã¯ãããã¯æ¬äººããèãã«ãªããã¨ãã¨è¿°ã¹ãã«ã¨ã©ã¾ã£ãã çµå£é£ã®ã¨ãã«ã®ã¼æ¿çãããã£ã¦ã¯
1.1 ãã®ææ¸ã®ç®ç ãã¹ã¦ã®æåéå£ã¯ï¼ç¬èªã®è¨èªï¼æåï¼æ¸è¨ã·ã¹ãã ãæã¤ï¼ããããï¼åã ã®æ¸è¨ã·ã¹ãã ããµã¤ãã¼ã¹ãã¼ã¹ã«ç§»è»¢ãããã¨ã¯ï¼æåçè³ç£ã®ç¶æ¿ã¨ããæå³ã§ï¼æ å ±éä¿¡æè¡ã«ã¨ã£ã¦é常ã«éè¦ãªè²¬åã¨ããããï¼ ãã®è²¬åãå®ç¾ããããã®åºç¤çãªä½æ¥ã¨ãã¦ï¼ãã®ææ¸ã§ã¯ï¼æ¥æ¬èªã¨ããæ¸è¨ã·ã¹ãã ã«ãããçµçä¸ã®åé¡ç¹ãã¾ã¨ããï¼å ·ä½çãªè§£æ±ºçãæ示ãããã¨ã§ã¯ãªãï¼è¦æäºé ã®èª¬æããããã¨ã«ããï¼ããã¯ï¼å®è£ ã¬ãã«ã®åé¡ãèããåææ¡ä»¶ãã¾ãæ確ã«ãããã¨ãéè¦ã§ããã¨èããããã§ããï¼ 1.2 ãã®ææ¸ã®ä½ææ¹æ³ ãã®ææ¸ã®ä½æã¯ï¼W3C Japanese Layout Task Forceãè¡ã£ãï¼ãã®ã¿ã¹ã¯ãã©ã¼ã¹ã¯ï¼æ¬¡ã®ãããªã¡ã³ãã¼ã§æ§æããï¼ã¦ã¼ã¶ã¼ã³ãã¥ããã£ã¼ããã®è¦æã¨å°é家ã«ãã解決çã調åãããããã«æ§ã ãªè°è«ãè¡ã£ã¦ããï¼ æ¥æ¬èªçµçã®å°é家ï¼âJIS
2011å¹´11æ29æ¥ãWorld Wide Web Consortiumï¼W3Cï¼ãããæ¥æ¬èªçµçå¦çã®è¦ä»¶ãï¼Requirements for Japanese Text Layoutï¼ã®ç¬¬2çãå ¬éãã¾ãããæ¥æ¬èªçãå ¬éããã¦ãã¾ãï¼æ£å¼çã¯è±èªçã¨ããã¦ãã¾ãï¼ããã®ææ¸ã¯ãCSSãSVGãXSL-FOãªã©ã®æè¡ãé»åæ¸ç±é¢é£ã®æ¨æºã«ããã¦å®ç¾ãæ±ããããä¸è¬çãªæ¥æ¬èªçµçã®è¦ä»¶ãè¨è¿°ãããã®ã§ã主ã«JIS X 4051ï¼æ¥æ¬èªçµçè¦åï¼ã«åºã¥ãã¦ããããä¸é¨ãJIS X 4051ã«å«ã¾ããªãäºé ã«ã¤ãã¦ãè¿°ã¹ããã¦ããã¨ã®ãã¨ã§ãã æ¥æ¬èªçµçå¦çã®è¦ä»¶ï¼æ¥æ¬èªçï¼ç¬¬2ç http://www.w3.org/TR/2011/WD-jlreq-20111129/ja/ Requirements for Japanese Text Layout, 2nd editon http:/
2011å¹´12æ1æ¥ãå½ç«å½ä¼å³æ¸é¤¨ã¯ã2010å¹´6æã«å ¬éãããå½ç«å½ä¼å³æ¸é¤¨ãããªã³ã³ã¢ã¡ã¿ãã¼ã¿è¨è¿°ãï¼DC-NDLï¼ãæ¹è¨ãã2011å¹´12æçãã¦ã§ããµã¤ãã«æ²è¼ãã¾ããã主ãªæ¹è¨å 容ã¯ãæ°è¦èªå½ã®è¿½å ãRDFã«ãã表ç¾æ¹æ³ã®ä¸é¨æ¹è¨çã§ãã æ¸èªãã¼ã¿ä½æãã¼ã« â ã¡ã¿ãã¼ã¿åºæºï¼ãDC-NDL2011å¹´12æçãé¢é£ææ¸ãæ²è¼ï¼ http://www.ndl.go.jp/jp/library/data/meta.html åèï¼ æ¹è¨ããããå½ç«å½ä¼å³æ¸é¤¨ãããªã³ã³ã¢ã¡ã¿ãã¼ã¿è¨è¿°ï¼DC-NDLï¼ããå ¬é http://current.ndl.go.jp/node/16441
KDDIã¦ã§ãã³ãã¥ãã±ã¼ã·ã§ã³ãºã¯12æ1æ¥ãã¯ã©ã¦ãAPIãboundioï¼ãã¦ã³ãã£ãªï¼ãã®ãã¼ã¿çã®æä¾ãéå§ããã boundioã¯ãã¦ã§ããµã¤ããªã©ã«çµã¿è¾¼ããã¨ã§ããããä¸ããæå®ããé»è©±çªå·ã«é»è©±ããããããã¯ã©ã¦ãAPIãµã¼ãã¹ãã¦ã§ããµã¤ãä¸ããæºå¸¯é»è©±ãåºå®é»è©±ãªã©ã«çºä¿¡ãã¦ããããããã¢ãããã¼ãããé³å£°ãé³æ¥½ãåçã§ããã ããã¾ã§ãããä¸ããé»è©±ç¶²ã¸æ¥ç¶ããã«ã¯ãã¦ã¼ã¶ã¼èªèº«ã§PBXãIP-PBXãç¨æãã¦è¨å®ããã®ä¸ã§éä¿¡ãã£ãªã¢ã¨å¥ç´ãçµã¶å¿ è¦ããããã·ã¹ãã æ§ç¯ã«ã¯é«é¡ãªè²»ç¨ãå¿ è¦ã ã£ãã æä¾ãéå§ãããã¼ã¿çãµã¼ãã¹ã§ã¯ãç³ãè¾¼ãã å ¨ã¦ã®ã¦ã¼ã¶ã¼ã«å¯¾ãã¦ã1å¥ç´ã«ã¤ã500ãã¤ã³ããç¡æã§ä»ä¸ãããåºå®é»è©±ãã¦ã®çºä¿¡ã1çºä¿¡ããã15ãã¤ã³ããæºå¸¯é»è©±ãã¦ã®çºä¿¡ã1çºä¿¡ããã25ãã¤ã³ãã¨ãã¦ã500ãã¤ã³ããã¹ã¦ãæ¶åããã¾ã§ãä½åº¦ã§ãå©ç¨ã§ããã
ãã¬ãï¼ã©ã¸ãªãã¥ã¼ã¹ æ¹ããªãä½åãæ ååã®éå ï¼12æ2æ¥ï¼ ãã¹ããªã¼ä½å®¶ã»æ¹ããªãã®å°èª¬ãåä½ãåæ¡ã¨ãããã¬ããã©ããæ ç»ãç¸æ¬¡ãã§ç»å ´ãããï¼æåé¨ã大æ¨é士ï¼ï¼12æ2æ¥ï¼Â [å ¨æã¸] æ ç»è© ãç¡è¨æãï¼é¦æ¸¯ãä»ããã«ã®ã¼ï¼Â ï¼12æ2æ¥ï¼ ç£ç£ã®ã¯ã³ã»ãã³ã¯ãä¸çã®æ ç»ã®ãæå 端ã«ä½ç½®ãããã¨è¨ããã¦ãããå½éæ ç»ç¥ã§ã®è©ä¾¡ãããã証æããããä¸å½è¾ºå¢ã®ç æ¼ ã§è¦éãã人éã®å§¿ããæºãããªãè¦ç¹ã§ã¨ãããæ ç»ãç®ã«ããæã誰ããç´å¾ãããã¨ã ãããï¼12æ2æ¥ï¼Â [å ¨æã¸] æ ç»è© ããµã©ã®éµãï¼ä»ï¼Â ï¼12æ2æ¥ï¼ ï¼ï¼ï¼ï¼å¹´ãããã¹å é ä¸ã®ããªã§èµ·ããã¦ãã¤äººè¿«å®³äºä»¶ããã®åæéç¨ã§ç±³å½äººã¸ã£ã¼ããªã¹ãã®ã¸ã¥ãªã¢ï¼ã¯ãªã¹ãã£ã³ã»ã¹ã³ããã»ãã¼ãã¹ï¼åçï¼ã¯ããµã©ã¨ããã¦ãã¤äººå¥³æ§ã®åå¨ãç¥ããï¼12æ2æ¥ï¼Â [å ¨æã¸] æ ç»è© ããã¼ãã§ã¼ããªãã¿ã¼ãï¼ï¼´ï½ï½ï¼´
ããæ°ããã¿ã¤ãã®æ»æãã®å¯¾çã«åããè¨è¨ã»éç¨ã¬ã¤ãæ¹è¨2çããIPAããå ¬éããã¾ãããåçã¨ã®éããªã©ãç°¡åã«è§£èª¬ãã¾ãã ããæ°ããã¿ã¤ãã®æ»æãã®å¯¾çã«åããè¨è¨ã»éç¨ã¬ã¤ãæ¹è¨2çããå ¬éï½æ°ããªè¨è¨å¯¾çãçãè¾¼ãã æ¹è¨ç¬¬2çã®å ¬éï½ åçã§ã¯å ¥å£å¯¾çãåºå£å¯¾çã¨ãã£ãæ¦å¿µãç´¹ä»ããã¦ãã¾ããããä»åã¯ãããã®å 容ã«é¢ãã¦å çããã¦ããã®ã¯ãã¡ããã®ãã¨ã大ãã3ã¤ã®å 容ã«ã¤ãã¦æ¹è¨ãè¡ããã¦ãã¾ããæ¬ã¬ã¤ãã®æ¹è¨ã«ç§ãååããã¦ããã ãã¾ããã®ã§ãæ¹è¨çã«ãããçç®ãã¹ããã¤ã³ããããã¦ããããã¨æãã¾ãã æ°ããªè¨è¨ã»å¯¾çå 容ã®è¿½å æ°ããã¿ã¤ãã®æ»æã«ã¯ RAT(Remote Access Trojan) ãå©ç¨ãããã±ã¼ã¹ãå¤ããããã¨ãããRAT ãæ¤åºããããã® proxy ãµã¼ãã®è¨å®ä¾ããã°ç¢ºèªæ¹æ³ãç´¹ä»ããã¦ãã¾ããä»ã«ããæ»æ対象ã¨ãªãéè¦ãµã¼ãã®é²è·ã¨ãã¦
ãã®èå¼±æ§ã¯2011å¹´11æ2æ¥ã« Full Disclosure ML ã¸ã®æ稿ã«ããå ¬éããã¾ãããæ»æã«ä½¿ç¨ãã .htaccess ãã¡ã¤ã«ã®è¨ç½®ãå¿ è¦ã¨ããåææ¡ä»¶ãããã¾ããããªã¢ã¼ãããã®ä»»æã³ã¼ãå®è¡ãå¯è½ã§ãã Integer Overflow in Apache ap_pregsub via mod-setenvif éå»ã«å ML ã«ã¦ãããªãå ¬éããã Apache Killer ã®ä»¶ã¨ã¯ç°ãªããèå¼±æ§çºè¦è ã¯äºåã« Apache HTTPD ã®éçºè ã¸èå¼±æ§ã¨ãã¦ã®å ±åãè¡ã£ã¦ãããããæå³æ£ããèå¼±æ§æ å ±å ¬éã®æµãã«ãªã£ã¦ãã¾ãã ãã®è¾ºã®æµãã¯èå¼±æ§å ¬éè ã®ãã¼ã¸ã® Timeline é¨åããèªã¿åãã¾ããèå¼±æ§ã®è©³ç´°ãå½±é¿ãåé¿çãPoC ã¨ä¸éãã®æ å ±ã¯è¨è¼ããã¦ãã¾ãã http://www.halfdog.net/Security/2011/Apach
IPAï¼ç¬ç«è¡æ¿æ³äººæ å ±å¦çæ¨é²æ©æ§ãçäºé·ï¼è¤æ± ä¸æ£ï¼ã¯ã主å¬ãããè å¨ã¨å¯¾çç 究ä¼ãã«ããã¦ããæ°ããã¿ã¤ãã®æ»æãã®å¯¾çã«åããè¨è¨ã»éç¨ã¬ã¤ããã®æ¹è¨ç¬¬2çãã¾ã¨ãã2011å¹´11æ30æ¥ï¼æ°´ï¼ããIPAã®ã¦ã§ããµã¤ãã§å ¬éãã¾ããã URLï¼ãhttp://www.ipa.go.jp/security/vuln/newattack.html ã½ããã¦ã§ã¢ã®èå¼±ï¼ãããããï¼æ§ãæªç¨ããè¤æ°ã®æ¢åæ»æãçµã¿åãããã½ã¼ã·ã£ã«ã¨ã³ã¸ãã¢ãªã³ã°ã«ããç¹å®ä¼æ¥ãå ¬çæ©é¢ããããã対å¿ãé£ããå·æï¼ãã¤ããï¼ãªãµã¤ãã¼æ»æããIPA ã§ã¯ãæ°ããã¿ã¤ãã®æ»æãã¨å¼ãã§ãã¾ãããæ°ããã¿ã¤ãã®æ»æãã¯ããæ»æã«æ°ä»ããªãããããã¯ãã¢ãè¨ç½®ããããçã®ç¹å¾´ããããå¾æ¥ã®ã»ãã¥ãªãã£å¯¾çã§ã¯å®å ¨ãªé²å¾¡ãè¡ããªããªã£ã¦ãã¾ããå½å¤ã§ãã®ãããªãæ°ããã¿ã¤ãã®æ»æããè¤æ°çºçãããã¨ããããIP
æ ¸çãµã¤ã¯ã«ãå·¡ããæ±äº¬é»åã¨çµæ¸ç£æ¥çã®åæ¹ã®é¦è³ãï¼ï¼å¹´ãé森çå ã±ææã®ä½¿ç¨æ¸ã¿æ ¸çæåå¦çäºæ¥ããã®æ¤éã«ã¤ãã¦æ¥µç§ã§åè°ãã¦ãããã¨ãé¢ä¿è ã®è¨¼è¨ãªã©ã§åãã£ãããã©ãã«ã®ç¶çºãï¼å åè¶ ã«å»ºè¨è²»ãè¨ããã ãã¨ãåããæ±é»ã®èæ¨æµ©ä¼é·ãåç´å社é·ãåä¿£æä¹ å¯ç¤¾é·ã¨çµç£çã®åºç¬åè²äºå次å®ï¼ããããå½æï¼ããæ¤éã®æ¹åã§æ¤è¨ãããã¨ã§åæããååè°ãããã¨ã決ããããããï¼ã«æå¾ãæ±äº¬é»åãã©ãã«é ããçºè¦ããèæ¨ãå両æ°ãå¼è²¬è¾ä»»ãããã¨ããå®ç¾ããªãã£ãã¨ããã âä¼é·ã®è¾ä»»ã§ç½ç´ã« æ¯æ¥æ°èã¯åºå¸è ã®æ°åãåè°ã®ææãç®çãªã©ãæ¸ãããçµç£çé¢ä¿è ã®ã¡ã¢ãå ¥æããåè°ã®é¢ä¿è ããã®è¨¼è¨ãå¾ããé¦è³ã«ããåè°ãå¤æããã®ã¯åãã¦ãæ ¸çãµã¤ã¯ã«ãå·¡ã£ã¦ã¯é«éå¢æ®ååçããããã ãã®å»çãå«ãç¶ç¶ã®å¯å¦ãæ¤è¨ãããè¦éãã§ãµã¤ã¯ã«ã®ããã²ã¨ã¤ã®æ±ã§ããåå¦çäºæ¥ã§ãæ±é»ãçµç£çã®ãã
âå¯éãé 赤å¤ç·å¹æã§æ»å³è±å¯ï¼ãããã®å£ã³ããå¨åãï¼ï¼å¹´ï¼æã«çºå£²ãããå½ç£ã®é³ç©ãã¼ãã¼éããã¼ããã¥ã©ãã人æ°ãéãã¦ããããã§ã«ï¼ä¸ï¼ï¼ï¼ï¼å以ä¸å£²ããï¼ï¼ææç¹ã®äºç´å¾ ã¡ã¯ç´ï¼ä¸ï¼ï¼ï¼ï¼äººãæ大ï¼ï¼ã«æå¾ ã¡ã«ãªã£ããã¨ããããä¾¡æ ¼ã¯ï¼ä¸ï¼ï¼ï¼ï¼ãï¼ä¸ï¼ï¼ï¼ï¼åï¼ç¨è¾¼ã¿ï¼ã¨å®ãã¯ãªãã®ã«ããªã売ããã®ãã人æ°ã®ç§å¯ãæ¢ã£ãããåç°é¶åããæ±äº¬é½ç®é»åºã«ä½ã主婦ï¼ï¼ï¼ï¼ã¯ãã¼ããã¥ã©ãè³¼å ¥ãããã©ãããå¤ããããè¿·ã£ã¦ããããä»å¹´ã®å¤ãå人ããã¼ããã¥ã©ã§ä½ã£ãã©ã¿ãã¥ã¤ã¦ãæ¯ãèã£ã¦ããã¦ããã¾ãã®ããããã«ç§ãã»ããã¨æãããã«ãªã£ããã¨è©±ãããªãããã¼ãã³ãªã©éèã®çã¿ããã£ããåºã¦ãããã¼ãã³å«ãã®æ¯åãæ®ããé£ã¹ããã¨ããããããã«é©ããã®ã¯å人ãããæ°´ãç½ã¯ã¤ã³ã使ããã«èª¿çãããã¨èãããã¨ã ããé£æããåºãæ°´åãçããã®ã§ãéèã®ãã¾ã¿ãçã¿ãåºããã®ã ãããã¨èå³
ãããã»ã³ã¼ãã¬ã¼ã·ã§ã³ã¯ï¼æ¥ãï¼ï¼ï¼ï¼å¹´ã«çã¾ãã赤ã¡ããã®ååã®äººæ°ã©ã³ãã³ã°ãçºè¡¨ããã ç·ã®åã®ï¼ä½ã¯ï¼ï¼å¹´ããï¼ï¼å¹´ã¾ã§ãããã ã£ãã大ç¿ï¼ã²ãã¨ï¼ãããæ¨å¹´ã®ï¼ä½ããè¿ãå²ããã女ã®åã¯ãæ¨å¹´ï¼ä½ã ã£ããçµè¡£ï¼ããï¼ããï¼ï¼å¹´ã®èª¿æ»éå§ä»¥æ¥ãåãã¦ï¼ä½ã¨ãªã£ãã ä»å¹´ãç¹ã«äººæ°ãä¸ãã£ãã®ã¯å¥³ã®åã®ãæèï¼ã¾ãªï¼ããä»å¹´ã®ï¼®ï¼¨ï¼«ç´ ç½æåæ¦ã¸ã®åºå ´ã決ã¾ã£ãè¦ç°æèããã®æ´»èºãå½±é¿ããã¨ã¿ãããï¼ï¼ä½ããï¼ä½ã«æ¥ä¸æãããä¸æ¹ãç·ã®åã§ã¯ãç¿å¤ªï¼ããããï¼ããæ¨å¹´ã®ï¼ï¼ä½ããï¼ä½ã«ããé½æï¼ã¯ãã¨ï¼ããåï¼ï¼ä½ããï¼ä½ã¨ãªã£ããå社ã¯ãä¸æ³ãéç½ãªã©ã§ä¸ç¸ãæãä¸ãåã©ãã«ã¯åå¼·ãæããè²ã£ã¦ã»ãããã¨ãã親ã®é¡ããæãããããã¨åæãã¦ããã
æ²ç¸å¥³å æ´è¡äºä»¶ã詳細ç¥ããªããâ¦ä¸å·é²è¡ç¸Â ï¼12æ2æ¥ 07:24ï¼ æ¶è²»å¢ç¨ãå½æ°ãã«ã«ããã¨éã¤ãä¸ããå°æ²¢æ°Â ï¼12æ1æ¥ 19:57ï¼ å°æ²¢å 代表ãç¶æ°ã®ä¼ãæ¹åæ§ã¯åãã ã ï¼11æ30æ¥ 21:52ï¼ æ°ä¸»ããåã©ãæå½ãææ¡ã¸â¦æ°çµ¦ä»å¶åº¦ã®å称 ï¼11æ30æ¥ 20:39ï¼ å°æ²¢æ°ãåé¢é¸ã§ï¼ï¼é£å¶ã«åäºç¾ï½ï¼ç¾ä¸å ï¼11æ30æ¥ 20:19ï¼ æ°ä¸»å ãåãã¦èªæ°å ä¸åãâ¦æ¿æ²»è³é ï¼11æ30æ¥ 19:53ï¼ å°æ²¢å 代表ã¸ã®è²¬ä»»æ³¢åãæ³åãããâ¦å¤§ä¹ ä¿æ°Â ï¼11æ30æ¥ 14:59ï¼ æ°ä¸»ãå¤å½äººå å¡ãã®ä»£è¡¨é¸æ票è³æ ¼è¦ç´ãã¸Â ï¼11æ29æ¥ 21:01ï¼ ååæ°ãç¶æ°äººæ°ã§æ¿çæºããã®ã¯ããããã ï¼11æ29æ¥ 20:33ï¼ é«éã»å å ¬æåé¢è°å¡ã®å é£å®æ¿åä¸èµ·ç¨ãæ念 ï¼11æ28æ¥ 20:55ï¼ æ°ä¸»å
ã©ã³ãã³ã°
é害
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}