Government funding will help more sixth-form students get into cyber
Monthly Archives: October 2023
Fifth of Brits Suspect They’ve Been Monitored by Employers
USN-6404-1: Firefox vulnerabilities
Multiple security issues were discovered in Firefox. If a user were
tricked into opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, obtain sensitive
information across domains, or execute arbitrary code. (CVE-2023-5169,
CVE-2023-5170, CVE-2023-5171, CVE-2023-5172, CVE-2023-5175, CVE-2023-5176)
Ronald Crane discovered that Firefox did not properly manage memory when
non-HTTPS Alternate Services (network.http.altsvc.oe) is enabled. An
attacker could potentially exploit this issue to cause a denial of service.
(CVE-2023-5173)
Clément Lecigne discovered that Firefox did not properly manage memory when
handling VP8 media stream. An attacker-controlled VP8 media stream could
lead to a heap buffer overflow in the content process, resulting in a
denial of service, or possibly execute arbitrary code. (CVE-2023-5217)
CVE-2023-21673
Improper Access to the VM resource manager can lead to Memory Corruption.
APPLE-SA-09-26-2023-9 tvOS 17
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-9 tvOS 17
tvOS 17 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213936.
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
Airport
Available for: Apple TV HD and Apple TV 4K (all models)
Impact: An app may be able to read sensitive location information…
APPLE-SA-09-26-2023-8 watchOS 10
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-8 watchOS 10
watchOS 10 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213937.
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
App Store
Available for: Apple Watch Series 4 and later
Impact: A remote attacker may be able to break out of Web Content
sandbox…
APPLE-SA-09-26-2023-7 iOS 17 and iPadOS 17
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-7 iOS 17 and iPadOS 17
iOS 17 and iPadOS 17 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213938.
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
Airport
Available for: iPhone XS and later, iPad Pro 12.9-inch 2nd generation
and later, iPad Pro 10.5-inch,…
APPLE-SA-09-26-2023-6 Xcode 15
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-6 Xcode 15
Xcode 15 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213939.
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
Dev Tools
Available for: macOS Ventura 13.5 and later
Impact: An app may be able to gain elevated privileges
Description: This issue was…
APPLE-SA-09-26-2023-5 Additional information for APPLE-SA-2023-09-21-7 macOS Monterey 12.7
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-5 Additional information for APPLE-SA-2023-09-21-7 macOS Monterey 12.7
macOS Monterey 12.7 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213932.
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
Apple Neural Engine
Available for: macOS Monterey
Impact: An app…
APPLE-SA-09-26-2023-4 Additional information for APPLE-SA-2023-09-21-6 macOS Ventura 13.6
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-4 Additional information for APPLE-SA-2023-09-21-6 macOS Ventura 13.6
macOS Ventura 13.6 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213931.
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
Apple Neural Engine
Available for: macOS Ventura
Impact: An app may…