ããã«ã¡ã¯ãã¢ããã¯ã¹ã¿ã¸ãªã§ã»ãã¥ãªãã£ã¨ã³ã¸ãã¢ããã¦ãã岡å´ã§ãã çæ§ãå¹´æ«å¹´å§ã¯ãã£ããã§ãã¾ããã§ãããããç§ã¯å¹´å§ã«å ¬éããããMeltdown and Spectreãã®ãé°ã§å¹´å§æ©ã ãæ å ±æ´çã«è¿½ããã¦ã¾ããã ä»åã¯ãå æ¥ãMeltdown and Spectreãã®èå¼±æ§ã®ãã¨ããããèå¼±æ§æ å ±ã®è¦æ¹ã¨èå¼±æ§æ å ±APIæ´»ç¨ã«ã¤ãã¦ãæ¸ããã¦ããã ãã¾ãã ï¼ï¼èå¼±æ§æ å ±ã®è¦æ¹ ã¨ã³ã¸ãã¢ã®æ¹ã§ããã°ãèå¼±æ§æ å ±ã確èªããä¸ã§CVEãCVSSãªã©ãç®ã«ãããã¨ãå¤ãã¨æãã¾ããããããã©ã®ãããªæå³ãæã¡ãã©ã®ããã«è¦ãã®ããç¥ã£ã¦ããã¾ãããã å æ¥ãã£ããMeltdown and Spectreããä¾ã«è¦ã¦ããã¾ãããã https://meltdownattack.com/ https://spectreattack.com/ ã¾ãããã®ãããªèå¼±æ§æ å ±ãå ¬éãã
ã¨ã°ã¼ã¯ãã£ããµã㪠WordPress 4.7ã¨4.7.1ã®REST APIã«ãèªè¨¼ãåé¿ãã¦ã³ã³ãã³ããæ¸ãæããããèå¼±æ§ãåå¨ãããæ»æã¯æ¥µãã¦å®¹æã§ããã®å½±é¿ã¯ä»»æã³ã³ãã³ãã®æ¸ãæãã§ãããããé大ãªçµæãåã¼ãã対çã¯WordPressã®ææ°çã«ãã¼ã¸ã§ã³ã¢ãããããã¨ã§ããã æ¬ç¨¿ã§ã¯ãèå¼±æ§æ··å ¥ã®åå ã«ã¤ãã¦å ±åããã ã¯ããã« WordPressæ¬ä½ã«ä¹ ãã¶ãã«é大ãªèå¼±æ§ãè¦ã¤ãã£ãã¨çºè¡¨ããã¾ããã ãããªé¢¨ã«æ¸ãã¨ãWordPressã®èå¼±æ§ãªãã¦ããã£ã¡ã ãè¦ã¤ãã£ã¦ããã¨ããæè¦ãããããã§ãããè½åçãã¤èªè¨¼ãªãã«ãä¾µå ¥ã§ããèå¼±æ§ã¯ããæ°å¹´åºã¦ããªãããã«æãã¾ããããããã¯ã©ã¹ã®ãã®ãä¹ ãã¶ãã«è¦ã¤ãã£ãã¨ãããã¨ã§ããã WordPressãæ´æ°çã§æ·±å»ãªèå¼±æ§ãä¿®æ£ãå®å ¨ç¢ºä¿ã®ããæ å ±å ¬éãå éã Make WordPress Core Conten
ã¯ããã« glibcã§ã¤ãã¡ãªèå¼±æ§ãã¿ã¼ï¼ ãglibcãã©ã¤ãã©ãªã«èå¼±æ§ãLinuxã®å¤§é¨åã«æ·±å»ãªå½±é¿ - ITmedia ã¨ã³ã¿ã¼ãã©ã¤ãº Google Online Security Blog: CVE-2015-7547: glibc getaddrinfo stack-based buffer overflow CVE-2015-7547: Critical Vulnerability in glibc getaddrinfo - SANS Internet Storm Center Carlos O'Donell - [PATCH] CVE-2015-7547 --- glibc getaddrinfo() stack-based buffer overflo å 容è¦ãã«ãgetaddrinfoã®ååæ解決æã«æªæããDNSã¬ã¹ãã³ã¹ãã±ããé£ããããã¨exploitçºå
æè¿ã¯å®¤å 娯楽ã¨ãã¦ãªã³ã©ã¤ã³ã«ã¸ãã話é¡ã¨ãªã£ã¦ãã¾ãããã®ãããªç°å¢ã®ä¸ã¤ã³ã¿ã¼ãããã§éãã ãä½ããè²·ã£ãããããã¨ãå¤ããªããå ¥åºéæ¹æ³ãå¤æ§åãã¦ãã¾ãã æ¬è¨äºã§ã¯ããªã³ã©ã¤ã³ã«ã¸ãã§å©ç¨å¯è½ãªå ¥åºéã®ç¨®é¡ã«ã¤ãã¦èª¬æãã¾ããã¾ããããããã®æ±ºæ¸æ¹æ³ãç´¹ä»ãã¾ãã ãªã³ã©ã¤ã³ã«ã¸ãã§å©ç¨å¯è½ãªå ¥åºéã®ç¨®é¡ ãªã³ã©ã¤ã³ã«ã¸ãã§å©ç¨å¯è½ãªå ¥åºéã®ç¨®é¡ã«ã¯ãåºæ¬çã«ã¯ã¬ã¸ããã«ã¼ããé»å決æ¸ãµã¼ãã¹ãéè¡æ¯è¾¼ãä»®æ³é貨ãªã©ãããã¾ãã ã©ã®æ±ºæ¸æ¹æ³ã1çªèªåã«ãã£ã¦ãããã¯ããªã³ã©ã¤ã³ã«ã¸ããµã¤ãã«ãã£ã¦ãããã£ã¦ããã¨æãã®ã§ãèªèº«ã«ãã£ãå ¥åºéæ¹æ³ãã¿ã¤ãã¦ã«ã¸ãã²ã¼ã ã楽ããã§ãã ããã ã¯ã¬ã¸ããã«ã¼ãã»ããããã«ã¼ã ã¯ã¬ã¸ããã«ã¼ããããããã«ã¼ãã¯ãå¤ãã®ãªã³ã©ã¤ã³ã«ã¸ããµã¤ãã§å©ç¨å¯è½ãªæ±ºæ¸æ¹æ³ã®1ã¤ã§ãããã®ãããå¤ãã®æ±ºæ¸æ¹æ³ãå©ç¨å¯è½ã«ãªã£ã¦ãã¾ãããä¸ã§ãã¯ã¬
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}