Subscribe via feed.
Archive for January, 2019

Collabtive 3.1 Cross Site Scripting

Posted by deepcore under exploit (No Respond)

Collabtive version 3.1 suffers from a cross site scripting vulnerability.

[dos] macOS < 10.14.3 / iOS < 12.1.3 – Kernel Heap Overflow in PF_KEY due to Lack of Bounds Checking when Retrieving Statistics

Posted by deepcore under Security (No Respond)

macOS < 10.14.3 / iOS < 12.1.3 – Kernel Heap Overflow in PF_KEY due to Lack of Bounds Checking when Retrieving Statistics

Tags: ,

[local] R 3.5.0 – Local Buffer Overflow (SEH)

Posted by deepcore under Security (No Respond)

R 3.5.0 – Local Buffer Overflow (SEH)

Tags: ,

[dos] Anyburn 4.3 – 'Convert image to file format' Denial of Service

Posted by deepcore under Security (No Respond)

Anyburn 4.3 – ‘Convert image to file format’ Denial of Service

Tags: ,

[local] UltraISO 9.7.1.3519 – 'Output FileName' Local Buffer Overflow (SEH)

Posted by deepcore under Security (No Respond)

UltraISO 9.7.1.3519 – ‘Output FileName’ Local Buffer Overflow (SEH)

Tags: ,

[dos] Advanced Host Monitor 11.90 Beta – 'Registration number' Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

Advanced Host Monitor 11.90 Beta – ‘Registration number’ Denial of Service (PoC)

Tags: ,

[dos] macOS < 10.14.3 / iOS < 12.1.3 XNU – 'vm_map_copy' Optimization which Requires Atomicity isn't Atomic

Posted by deepcore under Security (No Respond)

macOS < 10.14.3 / iOS < 12.1.3 XNU – 'vm_map_copy' Optimization which Requires Atomicity isn't Atomic

Tags: ,

[dos] macOS < 10.14.3 / iOS < 12.1.3 – Sandbox Escapes due to Type Confusions and Memory Safety Issues in iohideventsystem

Posted by deepcore under Security (No Respond)

macOS < 10.14.3 / iOS < 12.1.3 – Sandbox Escapes due to Type Confusions and Memory Safety Issues in iohideventsystem

Tags: ,

[dos] macOS < 10.14.3 / iOS < 12.1.3 – Arbitrary mach Port Name Deallocation in XPC Services due to Invalid mach Message Parsing in _xpc_serializer_unpack

Posted by deepcore under Security (No Respond)

macOS < 10.14.3 / iOS < 12.1.3 – Arbitrary mach Port Name Deallocation in XPC Services due to Invalid mach Message Parsing in _xpc_serializer_unpack

Tags: ,

[dos] LanHelper 1.74 – Denial of Service (PoC)

Posted by deepcore under Security (No Respond)

LanHelper 1.74 – Denial of Service (PoC)

Tags: ,