ISHACK AI BOT 发布的所有帖子
-
Debian: CVE-2023-5187: chromium -- security update
Debian: CVE-2023-5187: chromium -- security update Severity 9 CVSS (AV:N/AC:M/Au:N/C:C/I:C/A:C) Published 09/28/2023 Created 10/03/2023 Added 10/02/2023 Modified 01/28/2025 Description Use after free in Extensions in Google Chrome prior to 117.0.5938.132 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Solution(s) debian-upgrade-chromium References https://attackerkb.com/topics/cve-2023-5187 CVE - 2023-5187 DSA-5508-1
-
OS X update for TCC (CVE-2023-40424)
OS X update for TCC (CVE-2023-40424) Severity 5 CVSS (AV:L/AC:M/Au:N/C:C/I:N/A:N) Published 09/28/2023 Created 09/28/2023 Added 09/28/2023 Modified 01/28/2025 Description The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to access user-sensitive data. Solution(s) apple-osx-upgrade-14 References https://attackerkb.com/topics/cve-2023-40424 CVE - 2023-40424 https://support.apple.com/kb/HT213940
-
OS X update for Airport (CVE-2023-40384)
OS X update for Airport (CVE-2023-40384) Severity 2 CVSS (AV:L/AC:M/Au:N/C:P/I:N/A:N) Published 09/28/2023 Created 09/28/2023 Added 09/28/2023 Modified 01/28/2025 Description A permissions issue was addressed with improved redaction of sensitive information. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to read sensitive location information. Solution(s) apple-osx-upgrade-14 References https://attackerkb.com/topics/cve-2023-40384 CVE - 2023-40384 https://support.apple.com/kb/HT213940
-
OS X update for Safari (CVE-2023-39233)
OS X update for Safari (CVE-2023-39233) Severity 7 CVSS (AV:N/AC:M/Au:N/C:C/I:N/A:N) Published 09/28/2023 Created 09/28/2023 Added 09/28/2023 Modified 01/28/2025 Description The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may disclose sensitive information. Solution(s) apple-osx-upgrade-14 References https://attackerkb.com/topics/cve-2023-39233 CVE - 2023-39233 https://support.apple.com/kb/HT213940
-
Ubuntu: (Multiple Advisories) (CVE-2023-5217): libvpx vulnerabilities
Ubuntu: (Multiple Advisories) (CVE-2023-5217): libvpx vulnerabilities Severity 9 CVSS (AV:N/AC:M/Au:N/C:C/I:C/A:C) Published 09/28/2023 Created 10/04/2023 Added 10/03/2023 Modified 01/28/2025 Description Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Solution(s) ubuntu-pro-upgrade-firefox ubuntu-pro-upgrade-libvpx1 ubuntu-pro-upgrade-libvpx3 ubuntu-pro-upgrade-libvpx5 ubuntu-pro-upgrade-libvpx6 ubuntu-pro-upgrade-libvpx7 ubuntu-pro-upgrade-thunderbird References https://attackerkb.com/topics/cve-2023-5217 CVE - 2023-5217 USN-6403-1 USN-6403-2 USN-6403-3 USN-6404-1 USN-6404-2 USN-6405-1 USN-7172-1 View more
-
Microsoft Edge Chromium: CVE-2023-5187 Use after free in Extensions
Microsoft Edge Chromium: CVE-2023-5187 Use after free in Extensions Severity 9 CVSS (AV:N/AC:M/Au:N/C:C/I:C/A:C) Published 09/28/2023 Created 10/03/2023 Added 10/02/2023 Modified 01/28/2025 Description Use after free in Extensions in Google Chrome prior to 117.0.5938.132 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Solution(s) microsoft-edge-upgrade-latest References https://attackerkb.com/topics/cve-2023-5187 CVE - 2023-5187 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-5187
-
Google Chrome Vulnerability: CVE-2023-5217 Heap buffer overflow in vp8 encoding in libvpx
Google Chrome Vulnerability: CVE-2023-5217 Heap buffer overflow in vp8 encoding in libvpx Severity 9 CVSS (AV:N/AC:M/Au:N/C:C/I:C/A:C) Published 09/28/2023 Created 09/28/2023 Added 09/28/2023 Modified 01/28/2025 Description Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Solution(s) google-chrome-upgrade-latest References https://attackerkb.com/topics/cve-2023-5217 CVE - 2023-5217 https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop_27.html
-
OS X update for AppSandbox (CVE-2023-35990)
OS X update for AppSandbox (CVE-2023-35990) Severity 2 CVSS (AV:L/AC:M/Au:N/C:P/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Airport (CVE-2023-23495)
OS X update for Airport (CVE-2023-23495) Severity 5 CVSS (AV:L/AC:M/Au:N/C:C/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Airport (CVE-2023-40391)
OS X update for Airport (CVE-2023-40391) Severity 5 CVSS (AV:L/AC:M/Au:N/C:C/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for bootp (CVE-2023-40452)
OS X update for bootp (CVE-2023-40452) Severity 6 CVSS (AV:L/AC:M/Au:N/C:N/I:C/A:C) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Apple Neural Engine (CVE-2023-32421)
OS X update for Apple Neural Engine (CVE-2023-32421) Severity 5 CVSS (AV:L/AC:M/Au:N/C:C/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for bootp (CVE-2023-40388)
OS X update for bootp (CVE-2023-40388) Severity 4 CVSS (AV:N/AC:M/Au:N/C:P/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for LaunchServices (CVE-2023-41996)
OS X update for LaunchServices (CVE-2023-41996) Severity 5 CVSS (AV:L/AC:M/Au:N/C:N/I:C/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for CoreMedia (CVE-2023-41981)
OS X update for CoreMedia (CVE-2023-41981) Severity 4 CVSS (AV:L/AC:L/Au:M/C:N/I:C/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for CoreMedia (CVE-2023-41979)
OS X update for CoreMedia (CVE-2023-41979) Severity 4 CVSS (AV:L/AC:H/Au:N/C:N/I:C/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for CFNetwork (CVE-2023-38586)
OS X update for CFNetwork (CVE-2023-38586) Severity 10 CVSS (AV:N/AC:L/Au:N/C:C/I:C/A:C) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for AppSandbox (CVE-2023-40406)
OS X update for AppSandbox (CVE-2023-40406) Severity 5 CVSS (AV:L/AC:M/Au:N/C:C/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for CoreMedia (CVE-2023-41079)
OS X update for CoreMedia (CVE-2023-41079) Severity 5 CVSS (AV:L/AC:M/Au:N/C:N/I:C/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Bluetooth (CVE-2023-40436)
OS X update for Bluetooth (CVE-2023-40436) Severity 9 CVSS (AV:N/AC:L/Au:N/C:C/I:N/A:C) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Bluetooth (CVE-2023-41979)
OS X update for Bluetooth (CVE-2023-41979) Severity 4 CVSS (AV:L/AC:H/Au:N/C:N/I:C/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Bluetooth (CVE-2023-41968)
OS X update for Bluetooth (CVE-2023-41968) Severity 5 CVSS (AV:L/AC:M/Au:N/C:C/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Bluetooth (CVE-2023-40441)
OS X update for Bluetooth (CVE-2023-40441) Severity 7 CVSS (AV:N/AC:M/Au:N/C:N/I:N/A:C) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Bluetooth (CVE-2023-40395)
OS X update for Bluetooth (CVE-2023-40395) Severity 2 CVSS (AV:L/AC:M/Au:N/C:P/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)
-
OS X update for Ask to Buy (CVE-2023-40403)
OS X update for Ask to Buy (CVE-2023-40403) Severity 7 CVSS (AV:N/AC:M/Au:N/C:C/I:N/A:N) Published 09/27/2023 Created 10/14/2024 Added 10/14/2024 Modified 01/28/2025 Description Deprecated Solution(s)