Monthly Archives: April 2017
WebKit WebCore::toJS Use-After-Free
WebKit suffers from a use-after-free vulnerability in WebCore::toJS.
Vuln: Faveo CVE-2017-7571 Cross Site Request Forgery Vulnerability
Faveo CVE-2017-7571 Cross Site Request Forgery Vulnerability
Vuln: ImageWorsener 'iwbmp_read_info_header()' Function Denial of Service Vulnerability
ImageWorsener ‘iwbmp_read_info_header()’ Function Denial of Service Vulnerability
Vuln: WebsiteBaker CVE-2017-7410 Multiple SQL Injection Vulnerabilities
WebsiteBaker CVE-2017-7410 Multiple SQL Injection Vulnerabilities
Vuln: ImageWorsener 'iwgif_record_pixel()' Function Denial of Service Vulnerability
ImageWorsener ‘iwgif_record_pixel()’ Function Denial of Service Vulnerability
MacOS/iOS Off-By-One Kernel Memory Corruption
MacOS/iOS suffers from a kernel memory corruption vulnerability due to an off-by-one in SIOCGIFORDER socket ioctl.
MacOS/iOS Bounds Checking Kernel Memory Corruption
MacOS/iOS suffer from a kernel memory corruption vulnerability due to bad bounds checking in SIOCSIFORDER socket ioctl.
WebKit Table Use-After-Free
WebKit suffers from a table related use-after-free vulnerability.
MacOS posix_spawn Use-After-Free
The MacOS kernel suffers from a use-after-free vulnerability due to a double-release in posix_spawn.