Subscribe via feed.
Archive for December, 2016

ASP.NET Core 5-RC1 HTTP Header Injection

Posted by deepcore under exploit (No Respond)

ASP.NET Core version 5.-RC1 suffers from an HTTP header injection vulnerability.

Apache mod_session_crypt 2.5 Padding Oracle

Posted by deepcore under exploit (No Respond)

Apache mod_session_crypto versions 2.3 through 2.5 suffer form a padding oracle vulnerability.

Microsoft Edge Internationalization Type Confusion

Posted by deepcore under exploit (No Respond)

Microsoft Edge suffers from a type confusion vulnerability in internationalization initialization.

Mac OS IOKit Registry Code Execution

Posted by deepcore under exploit (No Respond)

Mac OS suffers from a kernel code execution vulnerability due to writable privileged IOKit registry properties.

IBM AIX 6.1 / 7.1 / 7.2 Bellmail Privilege Escalation

Posted by deepcore under exploit (No Respond)

IBM AIX versions 6.1, 7.1, and 7.2 suffer from a Bellmail privilege escalation vulnerability.

Vesta Control Panel 0.9.8-16 Local Privilege Escalation

Posted by deepcore under exploit (No Respond)

Vesta Control Panel versions 0.9.7 through 0.9.8-16 suffer from a local privilege escalation vulnerability.

Mac OS X / iOS ipc_port_t Reference Count Leak / Use-After-Free

Posted by deepcore under Apple (No Respond)

There is an ipc_port_t reference count leak due to incorrect externalMethod overrides that lead to a Mac OS X / iOS kernel use-after-free vulnerability.

Tags: , ,

Mac OS / iOS Privileged Port Name Replacement

Posted by deepcore under Apple (No Respond)

A broken kernel mach port name uref handling on iOS and Mac OS can lead to privileged port name replacement in other processes.

Tags: , ,

Mac OS X / iOS Missing Error Check Use-After-Free

Posted by deepcore under Apple (No Respond)

A lack of error checking leads to a reference count leak and OS X / iOS kernel use-after-free vulnerability in _kernelrpc_mach_port_insert_right_trap.

Tags: , ,

Mac OS / iOS syslogd Arbitrary Port Replacement

Posted by deepcore under Apple (No Respond)

syslogd on Mac OS and iOS suffers from an arbitrary port replacement vulnerability.

Tags: , ,