Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-3 Additional information for APPLE-SA-2023-09-21-3 iOS 16.7 and iPadOS 16.7
iOS 16.7 and iPadOS 16.7 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213927 .
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
App Store
Available for: iPhone 8 and later, iPad Pro…
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-2 macOS Sonoma 14
macOS Sonoma 14 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213940 .
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
Airport
Available for: Mac Studio (2022 and later), iMac (2019 and later), Mac
Pro (2019 and later), Mac mini (2018 and…
Posted by Apple Product Security via Fulldisclosure on Oct 02
APPLE-SA-09-26-2023-1 Safari 17
Safari 17 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/kb/HT213941 .
Apple maintains a Security Updates page at
https://support.apple.com/HT201222 which lists recent
software updates with security advisories.
Safari
Available for: macOS Monterey and macOS Ventura
Impact: Visiting a website that frames malicious content may lead to UI…
Posted by SEC Consult Vulnerability Lab, Research via Fulldisclosure on Oct 02
SEC Consult Vulnerability Lab Security Advisory < 20230927-0 >
=======================================================================
title: Multiple Vulnerabilities
product: SAP® Enable Now Manager
vulnerable version: 10.6.5 (Build 2804) Cloud Edition
fixed version: May 2023 Release
CVE number: N/A (cloud)
impact: high
homepage: https://www.sap.com/about.html …
Posted by SEC Consult Vulnerability Lab, Research via Fulldisclosure on Oct 02
SEC Consult Vulnerability Lab Security Advisory < 20230925-0 >
=======================================================================
title: Stored Cross-Site Scripting
product: mb Support broker management solution openVIVA c2
vulnerable version: <20220801
fixed version: =>20220801
CVE number: CVE-2022-39172
impact: Medium
homepage: https://mbsupport.de …
Multiple security issues were discovered in Thunderbird, which could
result in denial of service or the execution of arbitrary code.
The Qualys Research Labs discovered a buffer overflow in the dynamic
loader’s processing of the GLIBC_TUNABLES environment variable. An
attacker can exploit this flaw for privilege escalation.
FEDORA-2023-0806784f24
Packages in this update:
python-urllib3-1.26.17-1.fc37
Update description:
Update to 1.26.17: fix CVE-2023-43804 (GHSA-v845-jxx5-vc9f)
Posts navigation
News, Advisories and much more