Subscribe via feed.

OS X 10.10 Bluetooth DispatchHCIWriteStoredLinkKey Crash Proof Of Concept

Posted by deepcore under Apple (No Respond)

OS X 10.10 Bluetooth DispatchHCIWriteStoredLinkKey crash denial of service proof of concept exploit.

Tags: , ,

OS X 10.10 Bluetooth BluetoothHCIChangeLocalName Crash Proof Of Concept

Posted by deepcore under Apple (No Respond)

OS X 10.10 Bluetooth BluetoothHCIChangeLocalName crash denial of service proof of concept exploit.

Tags: , ,

OS X 10.10 Bluetooth TransferACLPacketToHW Crash Proof Of Concept

Posted by deepcore under Apple (No Respond)

OS X 10.10 Bluetooth TransferACLPacketToHW crash denial of service proof of concept exploit.

Tags: , ,

Apple Security Advisory 2014-12-22-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-12-22-1 – A remote attacker may be able to execute arbitrary code Description: Several issues existed in ntpd that would have allowed an attacker to trigger buffer overflows. These issues were addressed through improved error checking.

Tags: , ,

Apple Security Advisory 2014-12-18-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-12-18-1 – Xcode 6.2 beta 3 is now available and addresses a unicode issue that can be leveraged by a malicious git repository.

Tags: , ,

Apple Security Advisory 2014-12-11-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-12-11-1 – Safari 8.0.2, Safari 7.1.2, and Safari 6.2.2 are now available and include the security content of Safari 8.0.1, Safari 7.1.1, and Safari 6.2.1.

Tags: , ,

Apple Security Advisory 2014-12-3-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-12-3-1 – Safari 8.0.1, Safari 7.1.1, and Safari 6.2.1 are now available and address cross-origin CSS loading and multiple memory handling vulnerabilities.

Tags: , ,

Mac OS X IOKit Keyboard Driver Root Privilege Escalation

Posted by deepcore under Apple (No Respond)

A heap overflow in IOHIKeyboardMapper::parseKeyMapping allows kernel memory corruption in Mac OS X before 10.10. By abusing a bug in the IORegistry, kernel pointers can also be leaked, allowing a full kASLR bypass. Tested on Mavericks 10.9.5, and should work on previous versions. The issue has been patched silently in Yosemite.

Tags: , ,

Safari 8.0 Crash Proof Of Concept

Posted by deepcore under Apple (No Respond)

Safari version 8.0 on OS X 10.10 crash proof of concept exploit.

Tags: , ,

Apple Security Advisory 2014-11-17-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-11-17-1 – iOS 8.1.1 is now available and addresses code execution and various other security flaws.

Tags: , ,