Subscribe via feed.
Archive for March, 2016

OS X Kernel Nvidia Driver Unchecked Array Index

Posted by deepcore under Apple (No Respond)

Mac OS X kernel has an issue where an unchecked array index can be used to read an object pointer then call a virtual method in the Nvidia GEForce driver.

Tags: , ,

OS X Kernel AppleUSBPipe::Abort Missing Bounds Checking

Posted by deepcore under Apple (No Respond)

Mac OS X kernel suffers from a code execution vulnerability due to a lack of bounds checking in AppleUSBPipe::Abort.

Tags: , ,

Achievo 1.4.5 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Achievo version 1.4.5 suffers from a cross site scripting vulnerability.

Adobe Flash Wild Pointer Crash

Posted by deepcore under exploit (No Respond)

Adobe Flash suffers from a crash due to a wild pointer 0x1808121a502959a4 decoding h.264.

Adobe Flash Corrupt Stack Crash

Posted by deepcore under exploit (No Respond)

Adobe Flash has an issue where a corrupt stack leads to misaligned XMM instruction decoding h.264.

Adobe Flash Negative Table Indexing Out-Of-Bounds Crash

Posted by deepcore under exploit (No Respond)

Adobe Flash suffers from an out-of-bounds crash due to a negative table indexing error loading an 8-byte wide value.

Adobe Flash AAC Audio Handling Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Adobe Flash suffers from an out-of-bounds read in AAC audio handling.

Adobe Flash Content Information Leak

Posted by deepcore under exploit (No Respond)

Adobe Flash suffers from an information leak that may render non-deterministic content that apparently contains pointers.

Adobe Flash Wild Write Crash

Posted by deepcore under exploit (No Respond)

Adobe Flash suffers from a wild write at 0x453b0cf0 in color conversion that causes a crash.

WordPress HB Audio Gallery Lite 1.0.0 Arbitrary File Download

Posted by deepcore under exploit (No Respond)

WordPress HB Audio Gallery Lite plugin version 1.0.0 suffers from an arbitrary file download vulnerability.