what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 25 of 2,126 RSS Feed

Operating System: Apple

Apple Security Advisory 10-29-2024-1
Posted Nov 1, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-29-2024-1 - Safari 18.1 addresses an information leakage vulnerability.

tags | advisory
systems | apple
advisories | CVE-2024-44229, CVE-2024-44244, CVE-2024-44259, CVE-2024-44296
SHA-256 | 0dd01065224021561e127b177e2c1247b87c84d4c78ddb4a6c229ce1b1475210
Apple Security Advisory 10-28-2024-8
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-8 - visionOS 2.1 addresses information leakage, out of bounds read, and use-after-free vulnerabilities.

tags | advisory, vulnerability
systems | apple
advisories | CVE-2024-44194, CVE-2024-44215, CVE-2024-44229, CVE-2024-44239, CVE-2024-44240, CVE-2024-44244, CVE-2024-44252, CVE-2024-44255, CVE-2024-44258, CVE-2024-44259, CVE-2024-44262, CVE-2024-44269, CVE-2024-44273, CVE-2024-44277
SHA-256 | 4a4d19451dcec351f697ed0716c2eb721eb13541df88e0e1b4b92f6f69c1f33a
Apple Security Advisory 10-28-2024-7
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-7 - tvOS 18.1 addresses information leakage, out of bounds read, and use-after-free vulnerabilities.

tags | advisory, vulnerability
systems | apple
advisories | CVE-2024-44215, CVE-2024-44239, CVE-2024-44240, CVE-2024-44244, CVE-2024-44252, CVE-2024-44255, CVE-2024-44258, CVE-2024-44273, CVE-2024-44277, CVE-2024-44282, CVE-2024-44285, CVE-2024-44296, CVE-2024-44297, CVE-2024-44302
SHA-256 | 4dbe9b15531204c936e91b6526bc21fb2f9cae885c9e0692664d45d67f54933a
Apple Security Advisory 10-28-2024-6
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-6 - watchOS 11.1 addresses information leakage, out of bounds read, and use-after-free vulnerabilities.

tags | advisory, vulnerability
systems | apple
advisories | CVE-2024-44194, CVE-2024-44215, CVE-2024-44239, CVE-2024-44240, CVE-2024-44244, CVE-2024-44254, CVE-2024-44255, CVE-2024-44269, CVE-2024-44273, CVE-2024-44274, CVE-2024-44278, CVE-2024-44282, CVE-2024-44285, CVE-2024-44296
SHA-256 | 525b4bdbe8cdfa817c5c7864cc44239e85f0ca6c2db97e406168b72347cf65dd
Apple Security Advisory 10-28-2024-5
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-5 - macOS Ventura 13.7.1 addresses bypass, information leakage, out of bounds access, out of bounds read, and out of bounds write vulnerabilities.

tags | advisory, vulnerability
systems | apple
advisories | CVE-2024-40855, CVE-2024-44122, CVE-2024-44126, CVE-2024-44137, CVE-2024-44156, CVE-2024-44159, CVE-2024-44196, CVE-2024-44197, CVE-2024-44213, CVE-2024-44215, CVE-2024-44216, CVE-2024-44222, CVE-2024-44236, CVE-2024-44237
SHA-256 | f6b8a6a11547a7ea1e34705f88f7b9e7a85e42d1e109ba73e3e767bae2914bad
Apple Security Advisory 10-28-2024-4
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-4 - macOS Sonoma 14.7.1 addresses buffer overflow, bypass, information leakage, out of bounds access, out of bounds read, and out of bounds write vulnerabilities.

tags | advisory, overflow, vulnerability
systems | apple
advisories | CVE-2024-40855, CVE-2024-44122, CVE-2024-44137, CVE-2024-44144, CVE-2024-44156, CVE-2024-44159, CVE-2024-44175, CVE-2024-44196, CVE-2024-44197, CVE-2024-44213, CVE-2024-44215, CVE-2024-44216, CVE-2024-44218, CVE-2024-44222
SHA-256 | 46109958546ee7aede47d47158c9f7c7b0bae37261b03c0409dd13eb565c77e5
Apple Security Advisory 10-28-2024-3
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-3 - macOS Sequoia 15.1 addresses bypass, information leakage, out of bounds access, out of bounds read, out of bounds write, and use-after-free vulnerabilities.

tags | advisory, vulnerability
systems | apple
advisories | CVE-2024-38476, CVE-2024-38477, CVE-2024-39573, CVE-2024-40858, CVE-2024-44156, CVE-2024-44159, CVE-2024-44194, CVE-2024-44195, CVE-2024-44196, CVE-2024-44197, CVE-2024-44211, CVE-2024-44213, CVE-2024-44215, CVE-2024-44216
SHA-256 | d5dbf0c65f72566b9be057760bac7a73e25237374e8c784ff7de9d54c776e93c
Apple Security Advisory 10-28-2024-2
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-2 - iOS 17.7.1 and iPadOS 17.7.1 addresses buffer overflow, information leakage, and out of bounds read vulnerabilities.

tags | advisory, overflow, vulnerability
systems | apple, ios
advisories | CVE-2024-44144, CVE-2024-44155, CVE-2024-44215, CVE-2024-44218, CVE-2024-44239, CVE-2024-44240, CVE-2024-44252, CVE-2024-44258, CVE-2024-44259, CVE-2024-44261, CVE-2024-44269, CVE-2024-44274, CVE-2024-44278, CVE-2024-44282
SHA-256 | 199f9a81e47da6d8a1755b0ad00579bb1352d7270a5b119f9c6e9e141053ef60
Apple Security Advisory 10-28-2024-1
Posted Oct 29, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-28-2024-1 - iOS 18.1 and iPadOS 18.1 addresses information leakage, out of bounds read, and use-after-free vulnerabilities.

tags | advisory, vulnerability
systems | apple, ios
advisories | CVE-2024-40851, CVE-2024-40867, CVE-2024-44194, CVE-2024-44215, CVE-2024-44218, CVE-2024-44229, CVE-2024-44235, CVE-2024-44239, CVE-2024-44240, CVE-2024-44244, CVE-2024-44251, CVE-2024-44252, CVE-2024-44254, CVE-2024-44255
SHA-256 | 58ebd9a8848273bbaf0756f4668c6c27304a6f655c30a087d66ed0abfba7c73e
Apple Security Advisory 10-03-2024-1
Posted Oct 8, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 10-03-2024-1 - iOS 18.0.1 and iPadOS 18.0.1 addresses an audio capturing issue and a logic issue related to passwords being read aloud.

tags | advisory
systems | apple, ios
advisories | CVE-2024-44204, CVE-2024-44207
SHA-256 | 7a39384feb5bf0709416f2a6a7dffb70b4e36d44e2e371744db1d68be2719b3c
iTunes For Windows 12.13.2.3 Local Privilege Escalation
Posted Oct 7, 2024
Authored by mbog14 | Site github.com

This is a thorough write up of how to exploit a local privilege escalation vulnerability in iTunes for Windows version 12.13.2.3. Apple fixed this in version 12.13.3.

tags | exploit, local
systems | windows, apple
advisories | CVE-2024-44193
SHA-256 | d695b4f1b1028346552105f4ee8239edee8add156e7b797895b5d5337070f75f
Apple iOS 17.2.1 Screen Time Passcode Retrieval / Mitigation Bypass
Posted Sep 24, 2024
Authored by SivertPL

A mitigation bypass / privilege escalation flaw has been discovered in Apple's iOS Screen Time functionality, granting one access to modify the restrictions. It allows a local attacker to acquire the Screen Time Passcode by bypassing the anti-bruteforce protections on the four-digit Passcode, and in consequence gaining total control over Screen Time (Parental Control) settings. Versions lower than 18 are affected.

tags | exploit, local, bypass
systems | apple, ios
SHA-256 | 75666d1dc71fb63eadc1180b8fde8bebebfa673977a37f948bb5e8bd009bd6f8
Apple Security Advisory 09-16-2024-10
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-10 - macOS Ventura 13.7 addresses buffer overflow, bypass, out of bounds access, out of bounds read, and spoofing vulnerabilities.

tags | advisory, overflow, spoof, vulnerability
systems | apple
advisories | CVE-2024-27876, CVE-2024-27886, CVE-2024-40791, CVE-2024-40797, CVE-2024-40814, CVE-2024-40844, CVE-2024-40847, CVE-2024-40848, CVE-2024-40850, CVE-2024-44128, CVE-2024-44129, CVE-2024-44151, CVE-2024-44158, CVE-2024-44160
SHA-256 | 83bec15ab00978bb0f11e5f9e97e565cb578510b79514deba529887e8947a015
Apple Security Advisory 09-16-2024-9
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-9 - macOS Sonoma 14.7 addresses buffer overflow, bypass, out of bounds access, out of bounds read, out of bounds write, and spoofing vulnerabilities.

tags | advisory, overflow, spoof, vulnerability
systems | apple
advisories | CVE-2024-27876, CVE-2024-27880, CVE-2024-40791, CVE-2024-40797, CVE-2024-40801, CVE-2024-40841, CVE-2024-40844, CVE-2024-40845, CVE-2024-40846, CVE-2024-40847, CVE-2024-40848, CVE-2024-40850, CVE-2024-40860, CVE-2024-44125
SHA-256 | 8c7c598c2151ce639d355f21defbebd09be8b2089b0d7ca88eaa2eab7d02cc0a
Apple Security Advisory 09-16-2024-8
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-8 - iOS 17.7 and iPadOS 17.7 addresses bypass, out of bounds access, and out of bounds read vulnerabilities.

tags | advisory, vulnerability
systems | apple, ios
advisories | CVE-2024-27876, CVE-2024-27879, CVE-2024-27880, CVE-2024-40791, CVE-2024-40844, CVE-2024-40850, CVE-2024-44127, CVE-2024-44158, CVE-2024-44164, CVE-2024-44165, CVE-2024-44169, CVE-2024-44171, CVE-2024-44176, CVE-2024-44183
SHA-256 | 4993b0fd28e2f9894d9a7a6b11b76fd5ab68a695255e84e47ffc88d2865ddeaf
Apple Security Advisory 09-16-2024-7
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-7 - Xcode 16 addresses unauthorized access issues.

tags | advisory
systems | apple
advisories | CVE-2024-40862, CVE-2024-44162, CVE-2024-44191
SHA-256 | a9f654caa833e22ec318c428a9c9ddca09390fb9d6b6567f2484d2d566bdb417
Apple Security Advisory 09-16-2024-6
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-6 - Safari 18 addresses cross site scripting and spoofing vulnerabilities.

tags | advisory, spoof, vulnerability, xss
systems | apple
advisories | CVE-2024-40857, CVE-2024-40866, CVE-2024-44187
SHA-256 | 8565030c81e5697f1f766f9a15d6dc4896c79e31fa63809ae8174b258ad1dd69
Apple Security Advisory 09-16-2024-5
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-5 - visionOS 2 addresses cross site scripting, integer overflow, out of bounds access, and out of bounds read vulnerabilities.

tags | advisory, overflow, vulnerability, xss
systems | apple
advisories | CVE-2023-5841, CVE-2024-27876, CVE-2024-27880, CVE-2024-40790, CVE-2024-40825, CVE-2024-40850, CVE-2024-40857, CVE-2024-44165, CVE-2024-44167, CVE-2024-44169, CVE-2024-44176, CVE-2024-44183, CVE-2024-44187, CVE-2024-44191
SHA-256 | c33139a06c51eeb99d320b409bf3dff9bf4f6d249df655edcfd84eafd70434a2
Apple Security Advisory 09-16-2024-4
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-4 - watchOS 11 addresses cross site scripting, integer overflow, out of bounds access, and out of bounds read vulnerabilities.

tags | advisory, overflow, vulnerability, xss
systems | apple
advisories | CVE-2024-27880, CVE-2024-40850, CVE-2024-40857, CVE-2024-44169, CVE-2024-44170, CVE-2024-44171, CVE-2024-44176, CVE-2024-44183, CVE-2024-44187, CVE-2024-44191, CVE-2024-44198
SHA-256 | cc37085fe262bc1e832562736dee07e94a59cea8867890657c7639a8a8399592
Apple Security Advisory 09-16-2024-3
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-3 - tvOS 18 addresses cross site scripting, integer overflow, out of bounds access, and out of bounds read vulnerabilities.

tags | advisory, overflow, vulnerability, xss
systems | apple
advisories | CVE-2023-5841, CVE-2024-27880, CVE-2024-40850, CVE-2024-40856, CVE-2024-40857, CVE-2024-44169, CVE-2024-44176, CVE-2024-44183, CVE-2024-44187, CVE-2024-44191, CVE-2024-44198
SHA-256 | c843d6fa186a698c1ffac01558f67ac6e0b1a38e1a1b300aaa7215b653a61d6f
Apple Security Advisory 09-16-2024-2
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-2 - macOS Sequoia 15 addresses buffer overflow, bypass, cross site scripting, integer overflow, out of bounds access, out of bounds read, out of bounds write, and spoofing vulnerabilities.

tags | advisory, overflow, spoof, vulnerability, xss
systems | apple
advisories | CVE-2023-4504, CVE-2023-5841, CVE-2024-23237, CVE-2024-27795, CVE-2024-27858, CVE-2024-27860, CVE-2024-27861, CVE-2024-27869, CVE-2024-27875, CVE-2024-27876, CVE-2024-27880, CVE-2024-39894, CVE-2024-40770, CVE-2024-40791
SHA-256 | 11e0895c93cecb300d8a33d6e28f17812bc77aab5debcbcbe16f0a04cf9334cb
Apple Security Advisory 09-16-2024-1
Posted Sep 17, 2024
Authored by Apple | Site apple.com

Apple Security Advisory 09-16-2024-1 - iOS 18 and iPadOS 18 addresses bypass, cross site scripting, integer overflow, out of bounds access, and out of bounds read vulnerabilities.

tags | advisory, overflow, vulnerability, xss
systems | apple, ios
advisories | CVE-2023-5841, CVE-2024-27869, CVE-2024-27874, CVE-2024-27876, CVE-2024-27879, CVE-2024-27880, CVE-2024-40791, CVE-2024-40826, CVE-2024-40830, CVE-2024-40840, CVE-2024-40850, CVE-2024-40852, CVE-2024-40856, CVE-2024-40857
SHA-256 | fa8e9aa24c477ac62dac02f1d7ffb2d3727adf70a3fa512f104f0036e314d08e
Apple Airport Extreme Password Extraction (WDBRPC)
Posted Aug 31, 2024
Authored by Jay Turla | Site metasploit.com

This Metasploit module can be used to read the stored password of a vulnerable Apple Airport Extreme access point. Only a small number of firmware versions have the WDBRPC service running, however the factory configuration was vulnerable. It appears that firmware versions 5.0.x as well as 5.1.x are susceptible to this issue. Once the password is obtained, the access point can be managed using the Apple AirPort utility.

tags | exploit
systems | apple
SHA-256 | 2fd6adb947740556bec13b31bd6224dcc19a86dab49c5a548ca5ac8935074e42
Firefox PDF.js Browser File Theft
Posted Aug 31, 2024
Authored by temp66, fukusa | Site metasploit.com

This Metasploit module abuses an XSS vulnerability in versions prior to Firefox 39.0.3, Firefox ESR 38.1.1, and Firefox OS 2.2 that allows arbitrary files to be stolen. The vulnerability occurs in the PDF.js component, which uses Javascript to render a PDF inside a frame with privileges to read local files. The in-the-wild malicious payloads searched for sensitive files on Windows, Linux, and OSX. Android versions are reported to be unaffected, as they do not use the Mozilla PDF viewer.

tags | exploit, arbitrary, local, javascript
systems | linux, windows, apple
advisories | CVE-2015-4495
SHA-256 | 51c57f3920e9435bf62bbd93f1635f5a4935408c0f9db23d25b25d8babebaaee
Apple OSX/iOS/Windows Safari Non-HTTPOnly Cookie Theft
Posted Aug 31, 2024
Authored by Jouko Pynnonen, joev | Site metasploit.com

A vulnerability exists in versions of OSX, iOS, and Windows Safari released before April 8, 2015 that allows the non-HTTPOnly cookies of any domain to be stolen.

tags | exploit
systems | windows, apple, ios
advisories | CVE-2015-1126
SHA-256 | 4a33fb3750429fbc48b60b65f9266ada10b36414af7a3f3d44b49aac0e5a6e4f
Page 1 of 86
Back12345Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    20 Files
  • 13
    Nov 13th
    63 Files
  • 14
    Nov 14th
    18 Files
  • 15
    Nov 15th
    8 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    18 Files
  • 19
    Nov 19th
    7 Files
  • 20
    Nov 20th
    13 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close