Subscribe via feed.

Apple Security Advisory 2014-04-22-1

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-04-22-1 – Security Update 2014-002 is now available and addresses vulnerabilities in CFNetwork HTTPProtocol, CoreServicesUIAgent, FontParser, Heimdal Kerberos, ImageIO, Intel Graphics Driver, IOKit Kernel, the kernel, power management, Ruby, and more.

Tags: , ,

Apple Security Advisory 2014-04-22-2

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-04-22-2 – iOS 7.1.1 is now available and addresses vulnerabilities in IOKit Kernel, CFNetwork HTTPProtocol, Secure Transport, and WebKit.

Tags: , ,

Apple Security Advisory 2014-04-22-3

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2014-04-22-3 – Apple TV 6.1.1 is now available and addresses vulnerabilities related to credential compromise, ASLR bypass, code execution, and more.

Tags: , ,

PDF Album 1.7 Local File Inclusion

Posted by deepcore under Apple (No Respond)

PDF Album version 1.7 for iOS suffers from a local file inclusion vulnerability.

Tags: , ,

Apple Mac OS X Lion Kernel xnu Privilege Escalation

Posted by deepcore under Apple (No Respond)

Apple Mac OS X Lion kernel xnu versions 1699.32.7 except 1699.24.8 NFS mount privilege escalation exploit. This exploit leverage a stack overflow vulnerability to escalate privileges. The vulnerable function nfs_convert_old_nfs_args does not verify the size of a user-provided argument before copying it to the stack. As a result by passing a large size, a local […]

Tags: , ,

Zed Attack Proxy 2.3.0 Mac OS X Release

Posted by deepcore under Apple (No Respond)

The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications. It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing. ZAP provides automated scanners […]

Tags: , ,

BlueMe Bluetooth 5.0 Code Execution

Posted by deepcore under Apple (No Respond)

BlueMe Bluetooth version 5.0 for iOS suffers from a code execution vulnerability.

Tags: , ,

AppFish Offline Coder 2.2 Persistent Script Insertion

Posted by deepcore under Apple (No Respond)

AppFish Offline Coder version 2.2 for iOS suffers from a persistent script insertion vulnerability.

Tags: , ,

iVault Private P&V 1.1 Directory Traversal

Posted by deepcore under Apple (No Respond)

iVault Private P&V version 1.1 for iOS suffers from a directory traversal vulnerability.

Tags: , ,

Bluetooth Text Chat 1.0 Code Execution

Posted by deepcore under Apple (No Respond)

Bluetooth Text Chat version 1.0 for iOS suffers from a code execution vulnerability.

Tags: , ,