$B%;%-%e%j%F%#%[!<%k(B memo

Last modified: Fri Dec 31 00:45:46 2010 +0900 (JST)
$BC;=L(B URL: http://goo.gl/pwSG$B!!(BQR $B%3!<%I(B: http://goo.gl/pwSG.qr


$B!!(BSecurity Watch $B$5$s$,E9$8$^$$$5$l$F$7$^$C$?$N$G!"(B $B8D?M$GDI$$$+$1$F$_$k%F%9%H$G$9!#(B $BHwK:O?$H$7$F=q$$$F$*$/$D$b$j$J$N$G!"(B Security Watch $B$5$s$N$h$&$J>\:Y$J$b$N$G$O$"$j$^$;$s!#(B $B4pK\E*$J%?!<%2%C%H$O(B UNIX$B!"(BWindows$B!"(BMac OS (priority $B=g(B) $B$H$7$^$9!#(B $B$^$?!"$3$N%Z!<%8$NFbMF$O$I$N%Z!<%8$K$bA}$7$FL5J]>Z$G$"$k$3$H$r@k8@$7$F$*$-$^$9!#A4$F$N>pJs$,=8$^$C$F$$$k$o$1$b$"$j$^$;$s!#(B

$B!!$3$3$K:\$;$k>pJs$K$D$$$F$O!"2DG=$J8B$j(B 1 $BpJs8;$X$N%j%s%/$r:n@.$7$F$*$-$^$9!#(B $B3F<+$G(B 1 $BpJs8;$NFbMF$r3NG'$7$F$/$@$5$$!#(B $B$3$N%Z!<%8$NFbMF$r$/$l$0$l$b1-0{$_$K$7$J$$$h$&$K!#(B $B4V0c$$$rH/8+$5$l$?J}!"5-:\$5$l$F$$$J$$>pJs$r$4B8CN$NJ}!"$<$R(B$B$*$7$($F$/$@$5$$(B$B!#$h$m$7$/$*4j$$$$$?$7$^$9!#(B

$B!!$3$N%Z!<%8$N>pJs$rMxMQ$5$l$kA0$K!"(B$BCm0U=q$-(B$B$r$*FI$_$/$@$5$$!#(B


$B!!(B[ $BDjHV>pJs8;(B ] $B!!2a5n$N5-;v(B: 2010 | 2009 | 2008 | 2007 | 2006 | 2005 | 2004 | 2003 | 2002 | 2001 | 2000 | 1999 | 1998


[SCAN Security Wire NP Prize 2001]

$B!V(BScan Security Wire$B!W(B $BSCAN Security Wire NP Prize 2001 $B$r^(B$B$7$^$7$?!#(B

$B!!(B

$B!V%M%C%H%i%s%J!o=,^$r!"%Y%9%H!&%*%V!&>o=,^$r^$7$^$7$?!#(B


www.iraqbodycount.org www.iraqbodycount.org

$BI|4)%j%/%(%9%H
$B%8%'%$%`%:(B.$B#F(B.$B%@%K%,%s!V(B $B?7!&@oAh$N%F%/%N%m%8!<(B$B!W(B($B8=:_(B44$BI<(B)
$BCf;3?.90!V(B$B%=%U%H%&%'%"$NK!E*J]8n(B$B!W(B ($B8=:_(B119$BI<(B) ($B%*%s%G%^%s%I9XF~2D(B)
$B%j%G%k!&%O!<%H!V(B$B@oN,O@!!4V@\E*%"%W%m!<%A(B$B!W(B ($B?7Lu=P$^$7$?(B: $B>e(B $B2<(B)
$BN&0f;0O:Lu!&JT!V(B$B%Y%H%J%`5"4TJ<$N>Z8@(B$B!W(B ($B8=:_(B108$BI<(B)
$BNS9nL@!V(B$B%+%U%+%9$N>.$5$J9q!!%A%'%A%'%sFHN)1?F0;OKv(B$B!W(B ($B8=:_(B176$BI<(B)

RSS $B$KBP1~$7$F$_$^$7$?!#(B $B>.%M%?$O4^$^$l$F$$$^$;$s!#!V@/<#$M$?%&%<%'!W$H$$$&?M$O(B RSS $B%Y!<%9$GFI$`$H9,$;$K$J$l$k$G$7$g$&(B ($B%&%6$/$J$$?M$O(B $B$3$C$A$N(B RSS $B$,$h$$$+$b$7$l$^$;$s(B)$B!#(B RSS 1.0 $B$G$9$N$G!"$"$/$^$G(B RDF Site Summary $B$G$9!#(B $B8=:_$O(B Really Simple Syndication $B$K$OBP1~$7$F$$$^$;$s!#(B
$B:#$9$0(B Really Simple Syndication $B$,$[$7$$?M$O!"$N$$$s$5$s$K$h$k(B Web $B%5%$%H$N(B RSS $B$r>! $B$r;2>H$7$F$/$@$5$$!#(B($B$N$$$s$5$s>pJs$"$j$,$H$&$4$6$$$^$9(B)

$B<BMQ(B SSH $BBh(B2$BHG(B: $B%;%-%e%
2 $B:~$,=P$^$7$?!#(B$B%*%i%$%j!<$GCmJ8$7(B$B!"Hw9MMw$K!VI,$:(B2$B:~$G$"$k$3$H!W$H=q$/$H(B 2 $B:~$r3N

@random $B$JJY6/2q(B$B$O=*N;$7$^$7$?!#%W%l%<%s%F!<%7%g%s$7$FD:$$$?$_$J$5$s!"$4;22C$$$?$@$$$?$_$J$5$s!"$"$j$,$H$&$4$6$$$^$7$?(B & $B$*$D$+$l$5$^$G$7$?!#(B

$B"#(B 2010.12.30

$B"#(B 3.0.4 Important Security Update
(WordPress.org, 2010.12.29)

$B!!(BWordPress 3.0.4 $BEP>l!#!V(Bit fixes a core security bug in our HTML sanitation library, called KSES$B!W$J$N$G!"2DG=$J8B$jB.$d$+$KE,MQ$7$F$/$@$5$$!"$@$=$&$G$9!#(B


$B"#(B 2010.12.29

$B"#(B $B$$$m$$$m(B (2010.12.29)
(various)


$B"#(B 2010.12.28


$B"#(B 2010.12.27


$B"#(B 2010.12.25

$B"#(B $B%8%c!<%J%j%9%H1(2lM[90F;$5$s$,BN83$7$?7Y;!$N2#K=(B
(togetter, 2010.12.25)

$B!!$$$^$I$-$N%1!<%5%D$O!"Ho32

$B#1#0!K$J$<$+K=9T!?=}32$NHo32$K4X78$,$J$$$N$K!V$J%5%s%W%k$r $B#1#1!K!VH9g$9$k!W$H8@$$=P$7$?$N$G!V$\$/$OHo32 ($BCfN,(B)
$B#1#6!K%/%j%9%^%9%$%V!"HS$b?)$($:$K94B+#6;~4V!#8aA0Nm;~$K$d$C$H2rJ|$5$l!"!V$"$l$O2?$@$C$?$s$@$m$&!W$H7Y;!@lLg2H$N;{_7M-$5$s$KEEOC$7$?$i!"$J$s$HA49q$N7Y;!$G(BDNA$B:N

$B!!L5mc$N0lHL;TL1$N(B DNA $B%5%s%W%k$r

@kurodaizus @hatakezo @ukihiro IC$B%l%3!<%@!<;}$C$F$$$F$b!"1#$7;#$j$7$+J}K!$,$J$$!#$G$bD4$Y<<$G$O3s$NCf?H$rA4It=P$7$F7h:[H"$KF~$l!"7:;v$+$i8+$($k$H$3$m$KCV$1!"$H$$$&$N$@$h!#$3$l$O1#$7;#$j!"2D;k2=BP:v$G$O$J$$$G$9$+!)%]%1%C%H$NCf$b=P$;$H$$$&$s$G$9$h!#(B

$B!!$@$+$i!"A4LL2D;k2=$,IT2D7g$J$N$@!#(B

$BDL9T?M$NCf$K$O!";v7o$r8+$F$b$$$J$$$N$K@)I~$N$*=d$j$K$+$1$h$C$F!V$3$$$D$,0-$$$s$G$9!*8+$F$^$7$?!*!W!V$*A0!"$*$l$O8+$F$$$?!*!W$H8@$&%*%C%5%s$,#2?M$$$?!#$^$C$?$/%[%i!
$B$-$N$&;W$C$?$,!"$"$N$$$$2C8:$J!VL\7bZ8@$r$7$?$i$I$&$J$k$+!#!VCmL\$rMa$S$?$$$N$GHH:a$G$&$=$r??
$B1X$N$A$+$sQM:a$J$s$+$G$b!"$3$&$7$FC/$K$bMj$^$l$F$J$$$N$K!VL\7b

$B!!13$r$?$lN.$9!VL\7b

$B"#(B $BDI5-(B

$B$$$m$$$m(B (2010.12.13)

$B!!(BExim $B$D$E$-(B: Exim $B$X$N967b4QB,$H%;%-%e%j%F%#99?7$K$D$$$F$NCm0U4-5/(B (Debian JP Project, 2010.12.21)


$B"#(B 2010.12.24

$B"#(B JVNVU#725596: Microsoft WMI Administrative Tools $B$N(B ActiveX $B%3%s%H%m!<%k$K@H
(JVN, 2010.12.24)

$B!!(BWMI Administrative Tools (Microsoft) $B$KIUB0$9$k(B WBEMSingleView.ocx ActiveX $B%3%s%H%m!<%k$K7g4Y$,$"$j!"96N,(B Web $B%Z!<%8$r1\Mw$9$k$HG$0U$N%3!<%I$,

$B!!(Bpatch $B$O$^$@$J$$!#(BU#725596: Microsoft WMI Administrative Tools WBEMSingleView.ocx ActiveX control vulnerability $B$KE:IU$5$l$F$$$k(B .reg $B%U%!%$%k$r;H$C$F!"(BCLSID {2745E5F5-D234-11D0-847A-00C04FD7BB08} $B$rL58z2=$9$k$3$H$G2sHr$G$-$k!#(B

$B"#(B [SA42713] Microsoft IIS FTP Server Pre-Authentication Memory Corruption
(secunia, 2010.12.23)

$B!!(BIIS 7.5 $B$N(B FTP $B%5!<%S%9$KBP$9$k(B DoS $B967b$,2DG=$J7o!#$3$l(B:

$B!!(BDoS $B967b$7$+$G$-$J$$LOMM$G$9!#(B

$B"#(B $BDI5-(B

$B"#(B F-Secure Security Advisory FSC-2010-4
(F-Secure, 2010.12.15)

$B!!(BF-Secure Protection Service version 9$B!"(BF-Secure Internet Security 2010 / 2011$B!"(BF-Secure Anti-Virus 2010 / 2011$B!"(BF-Secure Client Security 9.00$B!A(B9.01$B!"(B F-Secure Anti-Virus 9.0 / 9.01 $B$K7g4Y!#>\:YITL@$@$,!"%G%#%9%/>e$N%P%$%J%j%U%!%$%k$N

$B!!(BF-Secure Protection Service version 9$B!"(BF-Secure Internet Security 2010 / 2011$B!"(BF-Secure Anti-Virus 2010 / 2011 $B$K$D$$$F$O!"<+F099?75!G=$K$h$C$F=$@5$5$l$F$$$k!#(BF-Secure Client Security 9.00 / 9.01$B!"(B F-Secure Anti-Virus 9.0 / 9.01 $B$K$D$$$F$O(B hotfix $B$NE,MQ$,I,MW!#(B


$B"#(B 2010.12.23

$B"#(B $B$$$m$$$m(B (2010.12.23)
(various)

$B"#(B $B?dB,$N:$Fq$J%Q%9%o!<%I$r@_Dj$7$F$b(BWindows$B$N%9%/%j!<%s%m%C%/$,?t==IC$G6/@)2r=|$5$l$k!)(B
(EnterpriseZine, 2010.12.22)

$B!!5HED$5$s$K$h$k(B IEEE1394 $BOC!#(B

$B$3$N

$B!!(BIEEE1394 $B$O!"(BUstream $BJ}LL$@$H:#$G$b8=Lr$J$s$@$h$M!D!D!#(B

$B!!4XO"(B: XP/Vista/7$B$KBP$7$F(BIEEE1394$B7PM3$N(BDMA$B$K$h$k%9%/%j!<%s%m%C%/$N6/@)2r=|$r;n$7$F$_$?(B (Eiji James Yoshida$B$N5-O?(B, 2010.11.18)

$B"#(B $BDI5-(B


$B"#(B 2010.12.22

$B"#(B $B$$$m$$$m(B (2010.12.22)
(various)

$B"#(B $BDI5-(B

Microsoft 2010 $BG/(B 12 $B7n$N%;%-%e%j%F%#>pJs(B

$B!!(BMS10-090 $B$G$9$,!"<+F099?7(B / WSUS $BJ}LL$G$b%H%i%V$C$F$$$k$h$&$G(B: MS10-090 (KB2416400) $B$N8!=P$HG[I[$K4X$9$kIT6q9g$K$D$$$F(B (Japan WSUS Support Team Blog, 2010.12.20)

$B!!$"$H!"(BJIS $BJ8;z2=$1$N7o$O!"(B MS10-090 $BF3F~8e$NIT6q9g$K$D$-$^$7$F(B (Internet Explorer $B%V%m%0(B ($BF|K\8lHG(B), 2010.12.17) $B$K$b=P$F$^$7$?!#(B

$B$$$m$$$m(B (2010.12.20)

$B!!%"%?%C%7%'%1!<%9$N7o!"(B$B%*%j%8%J%k%5%$(BH$B$,I|3h$7$F$$$^$9!#(BHODA $B$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#:G?7HG$O(B 2.72 $B$K$J$C$F$$$^$9!#(B


$B"#(B 2010.12.21

$B"#(B Outlook 2007$B$N<+F099?7%W%m%0%i%`$G%H%i%V%k$,H/@8!!(B $B%"%C%W%G!<%H$7$?7k2L!"F0:n$,CY$/$J$j!"0lIt5!G=$,MxMQITG=$K(B
($BF|7P%Q%=%3%s(B, 2010.12.20)

$B!!(BKB 2412171 $B=$@5%W%m%0%i%`$rE,MQ$9$k$H!"(BOutlook 2007 $B$GJ#?t$NIT6q9g$,H/@8$9$kLOMM!#(B

$B%a!<%k%U%)%k%@!<$r@Z$jBX$($k$?$S$K!"!VFI$_9~$_Cf!W$HI=<($5$l!"?tICBT$?$5$l$k$h$&$K$J$k!#$^$?!"!V8E$$%"%$%F%`$N@0M}!W5!G=$,F/$+$J$/$J$j!"%a%K%e!<$d@_Dj2hLL$+$i$bF19`L\$,>C$($F$7$^$&!#$3$NLdBj$O!V(BExchange Server$B!W$N%"%+%&%s%H$rMxMQ$7$F$$$k>l9g$OH/@8$;$:!"(BIMAP$B$d(BPOP3$B!"(BWindows Live Hotmail$B!J(BBOutlook Live Connector$B7PM3!K$N%"%+%&%s%H$r;HMQ$7$F$$$k>l9g$KH/@8$9$k$H$$$&!#(B

$B!!(BIssues with the recent update for Outlook 2007 (Microsoft Outlook 2010 blog, 2010.12.17) $B$K$O!">e5-$NB>$K$b$&(B 1 $B$DLdBj$,$"$k$H=q$+$l$F$$$k!#(B

Outlook fails to connect if Secure Password Authentication (SPA) is configured for an account and the mail server does not support SPA. This is important for Google Gmail users because Gmail does not support SPA. Outlook customers using Gmail who have the SPA option turned on cannot connect to Gmail.

$B!!2sHr$9$k$K$O!"Ev3:=$@5%W%m%0%i%`$r%"%s%$%s%9%H!<%k$9$k!#(B

$B"#(B $BDI5-(B

Microsoft 2010 $BG/(B 12 $B7n$N%;%-%e%j%F%#>pJs(B

$B!!(BMS10-090 $B$G(B JIS $B%3!<%IJ8;z2=$1$N7o!"(BMS10-090: Cumulative security update for Internet Explorer (Microsoft KB 2416400) $B$K=P$F$$$^$9!#(B $B2sHr:v$O(B 3 $B

  • Web $B%5!<%P$G!"(BHTTP $B%X%C%@$G$A$c$s$H;XDj$9$k(B

  • IE $B$G!"%j%m!<%I$9$k(B

  • IE $B$,F0:n$9$k(B PC $B$G!"(BHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING $B$r$$$8$k(B ($B@H

$B!!$"$H!"(B12$B7n(B15$BF|$N(B WindowsUpdate $B8e$K!"0lIt$N%Z!<%8$,J8;z2=$1$9$k$h$&$K$J$C$?(B [Ans00206] (Microsoft answers) $B$K$b>pJs$,$"$k$=$&$G$9!#Fs5\$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

$B!!4XO"(B: $B%5%$%HI=<(IT6q9g$N$*CN$i$;(B (TBS, 2010.12.16)


$B"#(B 2010.12.20

$B"#(B Opera 11.00 for Windows changelog
(Opera, 2010.12.16)

$B!!(BOpera 11.00 for Windows / Mac / Unix $B=P$^$7$?!#%;%-%e%j%F%#=$@5$b(B 4 $B7o4^$^$l$F$$$^$9!#(B

  • Fixed an issue where Web page content could display misleading security information; see our advisory.
  • Fixed an issue which could allow leaking of WAP form content to other sites; see our advisory.
  • Fixed a high severity issue; details will be disclosed at a later date.
  • Fixed further high severity issues; details will be disclosed at a later date.

$B!!$"$H!"(BOpera 11.00 $B$G$O%"%C%W%G!<%H5!G=$KJQ2=$,$"$k$h$&$G$9!#(B

Opera 11 $B$G$O%V%i%&%6$@$1$G$J$/!";HMQCf$N$9$Y$F$N3HD%5!G=$d(B Opera Unite $B%"%W%j%1!<%7%g%s$r<+F0E*$K:G?7HG$X%"%C%W%0%l!<%I$G$-$^$9!#%*!<%H%"%C%W%G!<%H5!G=$O!"40A4$K<+F0$G99?7:n6H$r9T$&$+!"MxMQ2DG=$J%"%C%W%G!<%H$,8+$D$+$C$?$H$-$KDLCN$9$k$H$$$$D$N%*%W%7%g%s$rA*Br$G$-$^$9!#(B

$B!!@_Dj2hLL$r8+$F$_$?$i!"A*Br;h$O(B 3 $B$D$"$k$h$&$G!#(B

  • $B%"%C%W%G!<%H$r3NG'$7$J$$(B

  • $BMxMQ2DG=$J%"%C%W%G!<%H$K$D$$$FDLCN$9$k(B

  • $B%"%C%W%G!<%H$r<+F0$G%$%s%9%H!<%k(B

$B"#(B APSB10-30: Security update available for Adobe Photoshop CS5
(Adobe, 2010.12.17)

$B!!(BWindows $BHG$N(B Adobe Photoshop CS5 12.0.1 $B0JA0$K!"(BDLL $BFI$_9~$_$K4X$9$k@H$B!#(B Mac $BHG$K$O1F6A$7$J$$!#(B CVE-2010-3127

$B!!(BPhotoshop CS5 12.0.3 $B$G=$@5$5$l$F$$$k!#(B $B99?7%W%m%0%i%`(B$B$rE,MQ$9$l$P$h$$!#(B

$B"#(B $B$$$m$$$m(B (2010.12.20)
(various)

2010.12.22 $BDI5-(B:

$B!!%"%?%C%7%'%1!<%9$N7o!"(B$B%*%j%8%J%k%5%$%H(B$B$,I|3h$7$F$$$^$9!#(BHODA $B$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#:G?7HG$O(B 2.72 $B$K$J$C$F$$$^$9!#(B

$B"#(B $BDI5-(B

$B$$$m$$$m(B (2010.12.13)

$B!!(BExim $B$D$E$-!#(B

$B"#(B Google Chrome Stable, Beta Channel Updates
(Google Chrome Release blog, 2010.12.13)

$B!!(BGoogle Chrome 8.0.552.224 / Chrome OS 8.0.552.343 $BEP>l!#(B5 $B7o$N7g4Y$,=$@5$5$l$F$$$k!#(B

$B!!$=$N8e!"$5$i$K(B 8.0.552.231 $B$,8x3+$5$l$F$$$k!#$3$A$i$O!"0BDj@-$N8~>e$N$_!#(B


$B"#(B 2010.12.19


$B"#(B 2010.12.17


$B"#(B 2010.12.16

$B"#(B au$B%9%^!<%H%U%)%s!V(BIS01$B!W$K(BBCC$B$NFbMF$,
(gigazine, 2010.12.16)

$B!!(BIS01 / LYNX $B6&$K!"(BBCC $B$N7o$O!VK\F|H/I=$5$l$?%"%C%W%G!<%H!W$G=$@5$5$l$F$$$k$=$&$G$9!#(B $B$,!"=$@59`L\$K5s$2$i$l$F$$$J$$$H$$$&!#5-:\$5$l$F$$$k$N$O(B

E$B%a!<%k(B (xxx@ezweb.ne.jp) $B$,l9g$,$"$j$^$9!#(B

$B$@$1!#$7$+$7$3$l$O$3$l$G!"(B

$BFCDj$N>r7o$K9gCW$9$k%a!<%k$rl9g!"$=$N%a!<%k0J9_r7o$r8x3+$7$F$7$^$$$^$9$H!"Bh;0\:Y$K$D$-$^$7$F$O8x3+$r95$($5$;$F$$$?$@$$$F$*$j$^$9!#(B

DoS B967b2DG=$J@H

$B"#(B FBI$B!"(BOpenBSD$B$N(BIPSEC$B3+H/
(slashdot.jp, 2010.12.15)

$B"#(B JVNVU#634956: Microsoft Internet Explorer $B$KG$0U$N%3!<%I$,
(JVN, 2010.12.14)

$B!!7k6I!"(BMS10-090 $B$G$OD>$C$F$$$J$$$H$$$&$3$H$+$J$"!#(B $B$=$N$o$j$K$O!"%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#(B $B%"%I%P%$%6%j$,=P$F$$$J$$$h$&$J$N$@$1$I!#(B

2010.12.23 $BDI5-(B:

$B!!(BSA $BMh$^$7$?(B:

$B!!(BEMET $B$rMxMQ$9$k$3$H$G2sHr$G$-$k$=$&$G$9!#(B

2010.12.24 $BDI5-(B:

$B!!(BSA $BF|K\8lHG(B: $B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#(B $B%"%I%P%$%6%j(B (2488013) Internet Explorer $B$N@H (Microsoft, 2010.12.24)

$B"#(B Microsoft 2010 $BG/(B 12 $B7n$N%;%-%e%j%F%#>pJs(B
(Microsoft, 2010.12.15)

$B!!M=Dj$I$*$j=P$^$7$?!#(B($B$=$N$&$ADI5-(B)

$B!!$J$*!"(BMS10-090 patch $B$rE,MQ$9$k$H!"!V(BJIS $B%(%s%3!<%I@_Dj$r(B HTTP $B%X%C%@!<$G$O;XDj$;$:!"(BMETA $B%?%0$N$_$G;XDj$7$F!W$$$k(B Web $B%Z!<%8(B ($BNc(B: http://www.st.ryukoku.ac.jp/) $B$r1\Mw$7$?$H$-$K(B IE $B$GJ8;z2=$1$9$kLOMM$G$9!#(B $B%j%m!<%I$9$k$+!"$"$k$$$O(B HTTP $B%X%C%@$G$A$c$s$H;XDj$9$l$P(B ok $B!#(B $B8=:_=$@5:n6HCf$@$=$&$G$9!#(B $BJ8;z%(%s%3!<%G%#%s%0$M$?$N=$@5$,$?$/$5$sF~$C$F$$$k$+$i$+$J$"!#(B $B>>K\$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

2010.12.21 $BDI5-(B:

$B!!(BMS10-090 $B$G(B JIS $B%3!<%IJ8;z2=$1$N7o!"(BMS10-090: Cumulative security update for Internet Explorer (Microsoft KB 2416400) $B$K=P$F$$$^$9!#(B $B2sHr:v$O(B 3 $B

  • Web $B%5!<%P$G!"(BHTTP $B%X%C%@$G$A$c$s$H;XDj$9$k(B

  • IE $B$G!"%j%m!<%I$9$k(B

  • IE $B$,F0:n$9$k(B PC $B$G!"(BHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING $B$r$$$8$k(B ($B@H

$B!!$"$H!"(B12$B7n(B15$BF|$N(B WindowsUpdate $B8e$K!"0lIt$N%Z!<%8$,J8;z2=$1$9$k$h$&$K$J$C$?(B [Ans00206] (Microsoft answers) $B$K$b>pJs$,$"$k$=$&$G$9!#Fs5\$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

$B!!4XO"(B: $B%5%$%HI=<(IT6q9g$N$*CN$i$;(B (TBS, 2010.12.16)

2010.12.22 $BDI5-(B:

$B!!(BMS10-090 $B$G$9$,!"<+F099?7(B / WSUS $BJ}LL$G$b%H%i%V$C$F$$$k$h$&$G(B: MS10-090 (KB2416400) $B$N8!=P$HG[I[$K4X$9$kIT6q9g$K$D$$$F(B (Japan WSUS Support Team Blog, 2010.12.20)

$B!!$"$H!"(BJIS $BJ8;z2=$1$N7o$O!"(B MS10-090 $BF3F~8e$NIT6q9g$K$D$-$^$7$F(B (Internet Explorer $B%V%m%0(B ($BF|K\8lHG(B), 2010.12.17) $B$K$b=P$F$^$7$?!#(B

$B"#(B $B!V%5!<%S%9K832967b$NBP:vEyD4::!WJs9p=q$K$D$$$F(B $B!A%5!<%S%9K832967b"($N
(IPA, 2010.12.16)

$B!!;vNc$,K-IY$G6=L#?<$$!#$$$^$I$-$NJ8=q$J$N$G!"%/%i%&%I$K4X$9$k5-=R$b$"$k!#(B

$B!!$3$s$J5-=R$b(B:

$B!!$7$+$7$J$,$i!"%5!<%S%9K832$,8N0U$+2a<:$+$r6hJL$9$k$3$H$OHs>o$K:$Fq$G$"$k$?$a!"MxMQ]$N$_$r$b$C$FH=CG$7$?>l9g!"7k2L$H$7$F967b0U?^$r;}$?$J$$!V%5!<%S%9K832!W$+!V%5!<%S%9K832967b!W$+$rH=JL$9$k$3$H$,Fq$7$$!#(B
$B!!$=$3$G!"40A4$G$O$J$$$,!"%5!<%S%9K832$,8N0U$+2a<:$+6hJL$9$k$K$O0J2<$N?^$K<($9$h$&$JJ}K!$,M-8z$G$"$k!#>e5-$G<($7$?$H$*$j!"I=(B1.1$B$N%A%'%C%/%7!<%H$N=hM}G=NO$rD62a$9$k>l9g!"3:Ev%7%9%F%`$K$*$1$k!V%5!<%S%9K832!W$,H/@8$7$?2DG=@-$r9M$(!"l9g$,$"$k!#K832H/@8;~$K$O$^$:!"<+l9g$d!"l9g$K$O!"FHN)9T@/K!?M>pJs=hM}?d?J5!9=(B($B0J2$^$7$$$H$$$($k!#$3$N$h$&$K!"I,MW$JHO0O$rD6$($k%"%/%;%9Ey$K$h$kHo32$K!"967b0U?^$,2C$o$k$3$H$G!V%5!<%S%9K832967b!W$N2DG=@-$r9MN8$9$k$3$H$,=EMW$G$"$k!#(B
(4) $B=jB0$9$kETF;I\8)7Y;!(B
$B!!HH:a$K3:Ev$9$k$h$&$J(BDoS$B967b$K$h$kHo32$NFO=P$K$D$$$F$O!"B>$N%3%s%T%e!<%?HH:a$HF1MM!"=jB0$9$kETF;I\8)7Y$,Ak8}$H$J$k!# $B!!$J$*!">c32$J$I$N?M0YE*MW0x$K$h$i$J$$$b$N$r8m$C$FFO$1=P$k$3$H$G:.Mp$r>7$/62$l$b$"$k$N$G!"FO=P$K@hN)$A!">pJs%;%-%e%j%F%#$d>pJsDL?.%M%C%H%o!<%/$K4X$9$kCN<1$r$b$C$??M$KAjCL$9$k$3$H$,K>$^$7$$!#(B

$B!!$h$/$o$+$i$J$$>l9g$O!"$^$:$O(B IPA $B$d(B JPCERT/CC $B$KAjCL$7$F$_$F$M!#$H$$$&$3$H$G!#(B


$B"#(B 2010.12.15

$B"#(B $BDI5-(B

050IP$BEEOC$NIT@5MxMQ$K$h$k9q:]DLOC$K4X$9$kCm0U4-5/$K$D$$$F(B

$B!!(BJPCERT/CC $B$N!V(B$BITE,@Z$J@_Dj$G(B Asterisk$B$rMxMQ$7$?>l9g$KH/@8$7F@$kIT@5MxMQ$K4X$9$kCm0U4-5/(B $B!W(B (JPCERT/CC, 2010.12.09) $B$,DI5-$5$l$F$$$?!#%"%+%&%s%H$KBP$9$k<-=q967b;vNc!#(B

$B"#(B RealPlayer gets security update
(Real.com, 2010.12.10)

$B!!(BRealPlayer 14.0.0 / RealPlayer Enterprise 2.1.4 / Mac RealPlayer 12.0.0.1548 / Linux RealPlayer 11.0.2.2315 $BEP>l!#7W(B 27 $B7o$N7g4Y$,=$@5$5$l$F$$$k!#(B


$B"#(B 2010.12.14

  • $B!U(B $BEl5~ET@D>/G/7rA40i@.>rNc(B(5$B!KJsF;8!>Z$H4pK\$+$i$N@bL@(B ($B2O9g44M:$NH/8@$N%V%m%0(B, 12/14)

    $B!!El5~ET@D>/G/7rA40i@.>rNc2~@50F$K$D$$$F!"JsF;5!4X$NJsF;$,$O$C$-$j8m$C$F$$$k$N$,L\$KIU$-$^$9!#!V2a7c$J@-IA/G/7rA40i@.>rNc!W$N2~@50F$K$D$$$F!W$H$$$&5-=R$,J#?t$NG^BN$G8+$i$l$k$N$O!"$3$l$O!"El5~ETB&$N@bL@$,1-F]$_$K$5$l$F;H$o$l$F$$$k$N$G$O$J$$$+$H?d;!$7$^$9!#(B ($BCfN,(B) $B$=$l$I$3$m$+$o$$$;$D%3%_%C%/$J$I$H$$$&8@MU$r;H$C$F5,@)$OI,MW$H$$$&8@@b$^$G<*$K$7$^$9!#$o$$$;$DJ*$NHNGd$O7:K!HH$G$"$j!">rNc2~@5$J$IA4$/ITMW$GBaJa$G$-$^$9!#$h$[$I$N4*0c$$$,9-$^$C$F$$$k$b$N$HM}2r$7$F$$$^$9!#$3$N$3$H$O!"5U$K!"K\Ev$N$3$H$,CN$lEO$l$P5,@)6/2=H?BPO@$,9-$/;X<($5$l$k$H$$$&$3$H$r0UL#(B$9$k$H9M$($^$9!#

    $B!!A7>l5.;R$5$s$O$o$+$j$^$7$?$+!#(B


$B"#(B 2010.12.13

$B"#(B $B$$$m$$$m(B (2010.12.13)
(various)

2010.12.20 $BDI5-(B:

$B!!(BExim $B$D$E$-!#(B

2010.12.25 $BDI5-(B:

$B!!(BExim $B$D$E$-(B: Exim $B$X$N967b4QB,$H%;%-%e%j%F%#99?7$K$D$$$F$NCm0U4-5/(B (Debian JP Project, 2010.12.21)


$B"#(B 2010.12.12


$B"#(B 2010.12.11


$B"#(B 2010.12.10

$B"#(B PHP 5.3.4 Released!
(PHP.net, 2010.12.10)

$B!!=P$^$7$?!#(B

* Fixed crash in zip extract method (possible CWE-170).
* Paths with NULL in them (foo\0bar.txt) are now considered as invalid (CVE-2006-7243).
* Fixed a possible double free in imap extension (Identified by Mateusz Kocielski). (CVE-2010-4150).
* Fixed NULL pointer dereference in ZipArchive::getArchiveComment. (CVE-2010-3709).
* Fixed possible flaw in open_basedir (CVE-2010-3436).
* Fixed MOPS-2010-24, fix string validation. (CVE-2010-2950).
* Fixed symbolic resolution support when the target is a DFS share.
* Fixed bug #52929 (Segfault in filter_var with FILTER_VALIDATE_EMAIL with large amount of data) (CVE-2010-3710).

$B"#(B Firefox$B$G0l;~5!G=E`7k!"(BWebSocket$B$K%W%m%H%3%k%l%Y%k$NLdBj$"$j(B
($B%^%$%3%_%8%c!<%J%k(B, 2010.12.09)

$B!!5!G=Dd;_$5$l$?$N$O(B Firefox 4 beta 8 $B$NOC$@$,!"CVE-2010-4508 $B$G$O!V(BFirefox 4 beta $B$K$*$1$k

$B$?$H$($P(BFirefox$B$O(BFirefox 4 Beta 7$B$G$b(BWebSocket$B$N5!G=$rDs6!$7$F$$$k!#%5%]!<%H$7$F$$$k%W%m%H%3%k%P!<%8%g%s$O(B76$B!#%P!<%8%g%s(B76$B$KBP1~$7$?(BWebSocket$B

$B!!B>$N%V%i%&%6$NF08~$O:#$N$H$3$mITL@$_$?$$!#(B

$B"#(B Firefox $B$H(B Thunderbird $B$N%;%-%e%j%F%#%"%C%W%G!<%H$r8x3+$7$^$7$?(B
(mozilla.jp, 2010.12.10)

$B!!(BFirefox: 3.6.13 / 3.5.16$B!"(B Thunderbird: 3.1.7 / 3.0.11 $B$,8x3+$5$l$F$$$^$9!#(B $B7W(B 11 $B7o(B (MFSA 2010-74 $B!A(B MFSA 2010-84) $B$N7g4Y$,=$@5$5$l$F$$$^$9!#(B

$B!!$J$*!"(BThunderbird 3.0 $B7ONs$O(B 3.0.11 $B$G=*N;$@$=$&$G$9!#(B

Thunderbird 3.0.11 $B$O(B Thunderbird 3.0 $B$N:G8e$N%;%-%e%j%F%#%"%C%W%G!<%H$H$J$j$^$9$N$G!"Aa$a$K(B 3.1 $B$X%"%C%W%0%l!<%I$7$F$/$@$5$$!#(B

$B!!(BFirefox 3.5 $B7ONs$O!"$^$@$^$@B3$/$s$G$9$+$M!D!D!#(B

$B!!(BSeaMonkey 2.0.11 $B$b=P$F$$$^$9!#(B

$B"#(B WordPress $B%P!<%8%g%s(B 3.0.3 $B$,%j%j!<%9$5$l$^$7$?(B
(WordPress.org, 2010.12.08)

$B!!%;%-%e%j%F%#=$@5$,4^$^$l$F$$$^$9!#$H$$$&$+!"%;%-%e%j%F%#=$@5$N$_(B?

XML-RPC $B%j%b!<%H%Q%V%j%C%7%s%0%$%s%?!<%U%'!<%9$N0lDj$N4D6-$K$*$$$F!"Ej9Fr16803)

$B"#(B $B%^%$%/%m%=%U%H(B $B%;%-%e%j%F%#>pJs$N;vA0DLCN(B - 2010 $BG/(B 12 $B7n(B
(Microsoft, 2010.12.10)

$B!!6[5^(B x 2$B!"=EMW(B x 14$B!"7Y9p(B x 1 = 17 $B7o(B ($B7g4Y?t(B: 40)$B!#(BIE $B$"$j(B ($B6[5^(B x 1)$B!"(BOffice $B$"$j(B ($B=EMW(B x 2)$B!"(BExchange $B$"$j(B ($B7Y9p(B x 1)$B!#(BSharePoint $B$b$"$k$h!#(B

$B!!4XO"(B:


$B"#(B 2010.12.09

$B"#(B $BDI5-(B

050IP$BEEOC$NIT@5MxMQ$K$h$k9q:]DLOC$K4X$9$kCm0U4-5/$K$D$$$F(B

$B!!4XO"(B:

$B!!!V(BNTT Com $B$N(B050IP$BEEOC%5!<%S%9$G$O?d>)$7$F$$$J$$(BIP-PBX$B%=%U%H%&%'%"$r$4MxMQ$N>l9g!W$G$9$+$M!D!D!#(B

$B"#(B NASA$B$,%9%Z!<%9%7%c%H%k$N6KHk>pJsF~$j%3%s%T%e!<%?$r%G!<%?>C5n$;$:$KGd5Q(B
(gigazine, 2010.12.09)

$B!!85$M$?$O$3$A$i(B: PREPARING FOR THE SPACE SHUTTLE PROGRAM$B!G(BS RETIREMENT: A REVIEW OF NASA$B!G(BS DISPOSITION OF INFORMATION TECHNOLOGY EQUIPMENT (NASA, 2010.12.07)$B!#%1%M%G%#$*$h$S%8%g%s%=%s1'Ch%;%s%?!ComputerWorld $B$+$i$NB90z$-$J$N$G!"$$$^$$$A$h$/$o$+$i$J$$46$,!#(B

$B!!;HMQ:Q$_%3%s%T%e!<%?$rGd5Q$9$k:]$K$O!"%G!<%?$r>C5n$7!"$+$D!">C5n$5$l$F$$$k$3$H$r8!>Z$9$kI,MW$,$"$k$N$@$1$l$I!"(B

  • $B%1%M%G%#$N4IM}Z$K<:GT$7$?>l9g$G$bDLCN$r

  • $B%8%g%s%=%s$H%(%$%`%:$G$O!"$=$b$=$b8!>Z$r9T$C$F$$$J$+$C$?!#(B

  • $B%1%M%G%#!"%8%g%s%=%s!"%(%$%`%:$G$O!">5G'$5$l$F$$$J$$%=%U%H%&%'%"$r;HMQ$7$F$$$?!#$3$N$&$A%1%M%G%#$@$1$O!"FHN)@AIi6HZ$r9T$C$F$$$?!#(B

    730 $B$NFb(B 14 $B$K!"%G!<%?$,;D$C$?$^$^$@$C$?!#(B $B$3$l$i$O8!>Z$K<:GT$7$?$3$H$r<($9%i%Y%k$r$D$1$i$l(BFGQ4~;\@_$KLa$5$l$?$,!"$=$3$+$i$*$*$b$H$N;}$AC$5$l$F$$$k PC $B$H$$$C$7$g$K30It$K=P$5$l$F$7$^$C$?!#(B

  • NASA $B$G>5G'$5$l$F$$$k$N$O(B Secure Erase$B!"(BDBAN$B!"(BWipeDrive/WipeDrive Pro $B$N$_!#(B

    • $B%1%M%G%#$H%8%g%s%=%s$N@/I\;\@_$G$O(B Symantec $B$N(B DataGone $B$,;H$o$l$F$$$?$,!"$3$l$O(B NASA $B$@$1$G$J$/!"O"K.@/I\$N$$$:$l$N5!4X$G$b>5G'$5$l$F$$$J$$!#(B

    • $B%8%g%s%=%s$N@AIi6H5G'$5$l$F$$$J$$!#(B

    • $B%(%$%`%:$N4IM})$7$F$$$?!#(B $B$3$l$O(B DOD $B$K$O>5G'$5$l$F$$$k$,!"(BNASA $B$K$O>5G'$5$l$F$$$J$$!#(B

  • $B%3%s%T%e!<%?$r30It$K=P$9:]$K%O!<%I%G%#%9%/$r

    $BB??t$N%O!<%I%G%#%9%/$,E>$,$C$F$$$k%4%_H"$N

  • $B%1%M%G%#$NGQ4~;\@_$K$*$$$F$O!"HNGd=`Hw$,$J$5$l$?$O$:$N(B PC $B$K!"(B NASA $B$N(B IP $B%"%I%l%9>pJs$,5-:\$5$l$?$^$^$K$J$C$F$$$?!#(B

$B"#(B $B$$$m$$$m(B (2010.12.09)
(various)


$B"#(B 2010.12.08

$B"#(B About the security content of QuickTime 7.6.9
(Apple, 2010.12.07)

$B!!(BQuickTime 7.6.9 $BEP>l!#(B15 $B7o$N7g4Y$,=$@5$5$l$F$$$k!#(B

$B"#(B [$B=EMW(B] $B%;%-%e%j%F%#%"%C%W%G!<%H(B Movable Type 5.04 $B$*$h$S(B 4.28$B$NDs6!$r3+;O(B
(sixapart.jp, 2010.12.08)

$B"#(B $BDI5-(B

$B"#(B [Clamav-announce] announcing ClamAV 0.96.5
(ClamAV, 2010.11.30)

$B!!(BClamAV 0.96.5 $B$K4X$7$F!"0J2<$N(B CVE $B$,=P$F$$$^$9!#(B

  • CVE-2010-4260$B!#(Bpdf.c $B$K7g4Y$,$"$j!"96N,(B PDF $BJ8=q$K$h$C$F(B remote $B$+$i(B DoS $B967b!"$"$k$$$OG$0U$N%3!<%I$N

  • CVE-2010-4261$B!#(B icon_cb $B4X?t$K(B off-by-one $B%(%i!<$,$"$j!"(Bremote $B$+$i(B DoS $B967b!"$"$k$$$OG$0U$N%3!<%I$N

  • CVE-2010-4479$B!#(Bpdf.c $B$K7g4Y$,$"$j!"96N,(B PDF $BJ8=q$K$h$C$F(B remote $B$+$i(B DoS $B967b!"$"$k$$$OG$0U$N%3!<%I$NCVE-2010-4260 $B$H$OJL$N7g4Y!#(B

$B"#(B APSB10-29: Security update available for Adobe Illustrator CS5
(Adobe, 2010.12.03)

$B!!(BWindows $BHG$N(B Adobe Illustrator CS5 15.0.1 $B0JA0$K!"(BDLL $BFI$_9~$_$K4X$9$k@H$B!#(B Mac $BHG$K$O1F6A$7$J$$!#(B CVE-2010-3152

$B!!(BIllustrator CS5 15.0.2 $B$G=$@5$5$l$F$$$k!#(B $B99?7%W%m%0%i%`(B$B$rE,MQ$9$l$P$h$$!#(B


$B"#(B 2010.12.07

$B"#(B CGI.pm / CGI::Simple $B$K(B CRLF $B%$%s%8%'%/%7%g%s@H
(NIST, 2010.12.06)

CVE-2010-2761

$B!!(BCGI.pm < 3.50 $B$*$h$S(B CGI::Simple <= 1.112 $B$K$*$$$F!"(B MIME $B6-3&J8;zNs$,8GDj$5$l$F$$$k$?$a$K!"(Bremote $B$+$iG$0U$N(B HTTP $B%X%C%@$rA^F~$7$F(B HTTP response splitting $B967b$r

CVE-2010-4410

$B!!(BCGI.pm < 3.50 $B$*$h$S(B CGI::Simple <= 1.112 $B$K(B CRLF $B%$%s%8%'%/%7%g%s$r5v$97g4Y$,$"$j!"(Bremote $B$+$iG$0U$N(B HTTP $B%X%C%@$rA^F~$7$F(B HTTP response splitting $B967b$r

CVE-2010-4411

$B!!(BCVE-2010-2761 $B$O(B CGI.pm 3.50 $B$G=$@5$5$l$?$O$:$,!"$j@Z$C$F$$$J$$LOMM!#(B

$B"#(B $BDI5-(B

Microsoft Security Essentials $B$O%*%W%7%g%s$N99?7%W%m%0%i%`$H$7$FDs6!$5$l$^$9(B

$B!!$3$l!"(BKB 2267621 (2010$BG/(B11$B7n(B17$BF|(B - $B%j%S%8%g%s(B: 1.0) $B$K$O!V(BWindows Update$B!W$H=q$+$l$F$$$k$N$G$9$,!"

$B!!!D!DG0$N$?$a3NG'$7$F$_$?$i!"(BKB 2267621 $B1Q8lHG(B$B$K$O$A$c$s$H(B Microsoft Update $B$H=q$+$l$F$$$?!#(B

Microsoft is offering Microsoft Security Essentials as an optional update to Windows XP, Windows Vista, and Windows 7 users who subscribe to Microsoft Updates.

OpenSSL Security Advisory: TLS extension parsing race condition

$B!!2~D{HG$,=P$F$$$k(B: http://www.openssl.org/news/secadv_20101116-2.txt$B!#(B OpenSSL 1.0.0b $B$K$*$1$k=$@5$K$OIT6q9g$,$"$j!"(BOpenSSL 1.0.0c $B$G=$@5$5$l$F$$$k$=$&$@!#(B

$B"#(B CVE-2010-4478: OpenSSH / J-PAKE
(NIST, 2010.12.06)

$B!!(BOpenSSH 5.3 $B0J9_$KZ$r@.8y$5$;$k$3$H$,$G$-$F$7$^$&!#(BCVE-2010-4478

$B!!(BCVS $B>e$G$O=$@5$5$l$F$$$k!#(B

$B"#(B OpenSSL Security Advisory [2 December 2010]
(OpenSSL.org, 2010.12.02)

$B!!(BOpenSSL 0.9.8$B!A(B0.9.8p / 1.0.0$B!A(B1.0.0b $B$K(B 2 $B$D$N7g4Y!#(B

  • $B@N$N(B bug workaround $B%3!<%I$,860x$G!"(B $B%/%i%$%"%s%HB&$+$i0E9f6/EY$r2<$2$5$;$k$3$H$,$G$-$k7g4Y!#(B CVE-2010-4180

  • OpenSSL 1.0.0 $B7ONs$KZ$r@.8y$5$;$k$3$H$,$G$-$F$7$^$&!#(BCVE-2010-4252

$B!!(BOpenSSL 0.9.8q / 1.0.0c $B$G=$@5$5$l$F$$$k!#$^$?!"(BCVE-2010-4180 $BMQ$N(B patch $B$,E:IU$5$l$F$$$k!#(B

$B!!$J$*!"(BOpenSSL 1.0.0b $B$K$*$1$k(B OpenSSL Security Advisory: TLS extension parsing race condition $B$N=$@5$K$OIT6q9g$,$"$j!"$"$o$;$F(B OpenSSL 1.0.0c $B$G=$@5$5$l$F$$$k!#(B


$B"#(B 2010.12.06

$B"#(B Microsoft Security Essentials $B$O%*%W%7%g%s$N99?7%W%m%0%i%`$H$7$FDs6!$5$l$^$9(B
(Microsoft, 2010.11.17)

$B!!(BMSE $B$r(B Windows Update $B$GN.$9$N7o$N(B KB$B!#F|K\$G$b$O$8$^$C$F$$$k$=$&$G$9!#>e@>$5$s$+$i(B ($B>pJs$"$j$,$H$&$4$6$$$^$9(B)

$B%&%$%k%9BP:v%=%U%H$rF3F~$7$F$$$J$$(B Windows XP SP3 $B$G(B Microsoft Update $B$r$+$1$?$H$3$m!"(B

$B!VDI2C$GA*Br$G$-$k%=%U%H%&%'%"99?7%W%m%0%i%`!W9`$N(B
$B!V(BMicrosoft Security Essentials Free Antivirus$B!W%+%F%4%j$K$*$$$F!"(B
$B!V(BMicrosoft Security Essentials - KB2267621$B!W$,A*Br2DG=$H$J$C$F$$$^$9!#(B

$B
----------------------------------------------------------------------
$B$*;H$$$N(B PC $B$K%^%k%&%'%"BP:v%=%j%e!<%7%g%s$,F3F~$5$l$F$$$J$$$h$&$G$9!#(B
$B$3$N$?$a!"$*;H$$$N(B PC $B$,%&%$%k%9!"%9%Q%$%&%'%"!"$*$h$S$=$NB>$N0-0U$N$"(B
$B$k%=%U%H%&%'%"$N4m81$K$5$i$5$lB3$1$k$*$=$l$,$"$j$^$9!#(BMicrosoft
Security Essentials $B$O@55,IJ$N(B Windows $B$r9XF~$5$l$?(B Windows $B%f!<%6!<$r(B
$BBP>]$H$7$?L5NA$N%^%k%&%'%"BP:v%=%U%H%&%'%"$G$9!#$4<+Bp$N(B PC $B$^$?$O(B 10
$BBf0J2<$N(B PC $B$r=jM-$9$k>.5,LO%*%U%#%9$G$4MxMQ$$$?$@$1$^$9!#(B
----------------------------------------------------------------------

2010.12.07 $BDI5-(B:

$B!!$3$l!"(BKB 2267621 (2010$BG/(B11$B7n(B17$BF|(B - $B%j%S%8%g%s(B: 1.0) $B$K$O!V(BWindows Update$B!W$H=q$+$l$F$$$k$N$G$9$,!"

$B!!!D!DG0$N$?$a3NG'$7$F$_$?$i!"(BKB 2267621 $B1Q8lHG(B$B$K$O$A$c$s$H(B Microsoft Update $B$H=q$+$l$F$$$?!#(B

Microsoft is offering Microsoft Security Essentials as an optional update to Windows XP, Windows Vista, and Windows 7 users who subscribe to Microsoft Updates.

$B"#(B $BDI5-(B

Operation $B!H(BAurora$B!I(B Hit Google, Others

$B!!4XO"(B:

$B"#(B $B;0I)EE5!(BIS$B$O7k6I2q8+$G2?$rEA$($?$+$C$?$N$+(B $B2,:j?^=q4[;v7o(B(11)
($B9bLZ9@8w!w<+Bp$NF|5-(B, 2010.12.04)

$B!!$3$l$rFI$s$G!";0I)EE5!%$%s%U%)%a!<%7%g%s%7%9%F%`%:$N8@$&!V$BJ@ ($B;0I)EE5!%$%s%U%)%a!<%7%g%s%7%9%F%`%:(B, 2010.11.30) $B$K$*$$$F(B

$BJ@J$7$F$*$j$^$9!#@8$8$?LdBj$N:,K\860x$OJ@

$B$H$^$G=q$$$F$*$-$J$,$i!"(B

$B?@ED5-/$76qBNE*$K65$($F$/$@$5$$!#(B

$BLgOFJ$r?=$7>e$2$?$H$$$&$3$H$G$4$6$$$^$9!#(B

$B!JN,!"0lC6JL$NOCBj$X!K(B

$BFIGd?7J9;3:j5-u67$N$3$H$r!VIT2w$J;W$$!W$H;X$7$F$$$k$N$+!"$=$l$H$b!"7Y;!$KBaJa$5$l$F
$BLgOFDL$j$NF0$-$r$7$J$+$C$?$H$$$&$h$&$J$3$H$K4X$7$F!"Hs>o$K(BSIer$B$H$7$F?=$7Lu$J$$$H$$$&%3%a%s%H$G$4$6$$$^$9!#(B

$B;3:j5-$N%f!<%6$5$s$b$D$J$$$G$$$kJ}$O$?$/$5$s$$$i$C$7$c$C$F!"$O$C$-$j8@$&$H!"$=$NJ}$K$@$1

$B$3$N5-e$2!VBaJa!W!V8{N1!W$5$;$F$7$^$C$?!V7k2L@UG$!W$r$R$-$&$1$k$D$b$j$OA4$/$J$$$h$&$@!#(B

$B!!$3$&$$$&$3$H$r$d$C$F$$$k$+$i!"%9%j!<%@%$%d$O56Au$N$7$k$7$K$J$C$A$c$&$s$@$h!#(B $B<+J,C#$,2?$r7G$2$F$$$k$N$+$r$b$&$$$A$I8+D>$7$F$[$7$$!#(B

$B!!!V4k6H$N


$B"#(B 2010.12.04


$B"#(B 2010.12.03

$B"#(B $B@H
($B%^%+%U%#!<(B, 2010.12.02)

$B!!2r7hJ}K!$H$7$F$O!"(BMS10-042 patch $B$rE,MQ$9$k(B ($B?d>)(B) $B$+!"!V%P%C%U%!%*!<%P%U%m!e$G!"!H(BDisable HCP URLs" in Internet Explorer$B!I$rM-8z$K$9$k!"$N$@$=$&$G!#(B

$B"#(B Google Chrome Stable, Beta Channel Updates
(Google Chrome Release blog, 2010.12.02)

$B!!(BGoogle Chrome 8.0.552.215 $BEP>l!#(B13 $B7o$N7g4Y$,=$@5$5$l$F$$$k!#(B PDF $B%S%e!<%"$,FbB"$5$l$?!#$3$l$b(B Chrome $B$N(B sandbox $B$GJ]8n$5$l$F$$$k!#(B

$B!!4XO"(B: $B%P!<%8%g%sHV9f$O;`$s$@!#(BGoogle$B!":G?7HG(BChrome 8$B$rCOL#$K8x3+(B (techcrunch, 2010.12.03)

$B"#(B iPhone$B$G(BURL$B$r56Au$G$-$kLdBj!"%U%#%C%7%s%0$K0-MQ$5$l$k62$l!!(B $B8&5f
($BF|7P(B IT Pro, 2010.12.02)

$B!!(BUI Spoofing Safari on the iPhone (SANS SSI, 2010.11.29) $B$N7o!#;EMM$@$=$&$G$9!#(B

$B!!(BiOS$B$N;EMM$G$O!"(BWeb$B%5%$%HB&$+$i!"(BSafari$B$N%"%I%l%9%P!<$r1#$9$3$H$,$G$-$k!#6qBNE*$K$O!"(BWeb$B%Z!<%8!J(BHTML$B%U%!%$%k!K$K$"$k5-=R$r$7$F$*$1$P!"(BSafari$B$K$=$N(BWeb$B%Z!<%8$rI=<($5$;$?8e!"(BWeb$B%Z!<%8$r>e$K%9%/%m!<%k$5$;$k$3$H$G!"%"%I%l%9%P!<$r1#$9$3$H$,$G$-$k!# $B!!:#2s;XE&$5$l$?$N$O!"$3$N;EMM$NLdBjE@!#$3$N;EMM$r0-MQ$9$l$P!"5=$J$I$K0-MQ$5$l$k62$l$,$"$k!#(B

$B"#(B [Security-announce] VMSA-2010-0018 VMware hosted products and ESX patches resolve multiple security issues
(VMware, 2010.12.02)

$B!!(BVMware $B@=IJ$K(B 4 $B$D$N7g4Y!#(BWorkstation 7.1.3 / 6.5.5, Player 3.1.3 / 2.5.5, Fusion / Fusion Lite 3.1.2 / 2.0.8 $B$G=$@5$5$l$F$$$k!#(B $B$^$?(B ESXi 4.1 / 4.0 / 3.5, ESX 4.1 / 4.0 / 3.5 $BMQ$N(B patch $B$,Ds6!$5$l$F$$$k!#(B

$B"#(B $B$$$m$$$m(B (2010.12.03)
(various)

$B"#(B $BDI5-(B


$B"#(B 2010.12.02

$B"#(B [ProFTPD-announce] ProFTPD ftp.proftpd.org compromise
(ProFTPD.org, 2010.12.01)

$B!!(B2010.11.28 20:00 UTC $B$4$m$K(B ftp.proftpd.org $B$,%O%/$i$l!"FGF~$j$N(B ProFTPD 1.3.3c $B$r@_CV$5$l$?$=$&$G!#$=$N8e!"$3$l$O%_%i!<%5%$%H$K$b9T$-EO$C$?LOMM!#(B $B$J$N$G!"(B2010.11.28$B!A(B2010.12.02 $B$N4V$K(B ProFTPD 1.3.3c $B$r%@%&%s%m!<%I$7$??M$O!"FGF~$j$N2DG=@-$,$"$k$N$G3NG'$5$l$?$$!#(B $B@5$7$$$b$N$N(B MD5 $B$O

8571bd78874b557e98480ed48e2df1d2  proftpd-1.3.3c.tar.bz2
4f2c554d6273b8145095837913ba9e5d  proftpd-1.3.3c.tar.gz

$B!!$3$A$i$K$b$"$k$N$G;2>H(B: [ProFTPD-announce] ProFTPD 1.3.3c released! (ProFTPD.org, 2010.10.29)

$B!!$3$,$5$s>pJs$"$j$,$H$&$4$6$$$^$9!#(B

2010.12.03 $BDI5-(B:

$B!!4XO"(B:

$B"#(B BIND 9.7.2-P3, 9.6.2-P3, 9.6-ESV-R3 and 9.4-ESV-R4 are now available
(ISC, 2010.12.01)

$B!!(BBIND 9.7.2-P3 / 9.6.2-P3 / 9.6-ESV-R3 / 9.4-ESV-R4 $BEP>l$7$F$$$^$9!#(B $BJ#?t$N7g4Y$,=$@5$5$l$F$$$^$9!#(B

$B!!(BJPRS $B$+$i$b=P$^$7$?(B:

$B"#(B McAfee Security Bulletin - McAfee VirusScan Enterprise 8.5i and earlier DLL Side Load issue
(McAfee, 2010.12.01)


$B"#(B 2010.12.01

$B"#(B $B$$$m$$$m(B (2010.12.01)
(various)


$B2a5n$N5-;v(B: 2010 | 2009 | 2008 | 2007 | 2006 | 2005 | 2004 | 2003 | 2002 | 2001 | 2000 | 1999 | 1998


[$B%;%-%e%j%F%#%[!<%k(B memo]