| lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
|
Open Source and information security mailing list archives
| ||
|
Message-id: <0E406652-838A-42D7-A981-BD0950D9F0B0@lists.apple.com> Date: Tue, 14 Sep 2021 12:56:27 -0700 From: Apple Product Security via Fulldisclosure <fulldisclosure@...lists.org> To: security-announce@...ts.apple.com Subject: [FD] APPLE-SA-2021-09-13-5 Safari 14.1.2 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-2021-09-13-5 Safari 14.1.2 Safari 14.1.2 addresses the following issues. Information about the security content is also available at https://support.apple.com/HT212808. WebKit Available for: macOS Catalina and macOS Mojave Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: A use after free issue was addressed with improved memory management. CVE-2021-30858: an anonymous researcher Information will also be posted to the Apple Security Updates web site: https://support.apple.com/kb/HT201222 This message is signed with Apple's Product Security PGP key, and details are available at: https://www.apple.com/support/security/pgp/ -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEePiLW1MrMjw19XzoeC9qKD1prhgFAmFA99QACgkQeC9qKD1p rhhXhBAAnyG5KXHi4LOfLy3Y+SpiBg+MXRQT7aTlpSqvZbIyGzmllBxfhvS4qTsb fdxezXM8/Q5zvxJVeWv2KA1S09cVKy7fMc/JTvA7sIZdQKVyBR7KrV+subs/OqB6 yKxvXyw4RDT4eH/GTDzJjc4U85E8gMWVPABv6rXmvqaVLcaj/Wo/lz4A9cgZ5Ur3 qPxku37BdbESE967WBu78YimVnjLwWHnrHVS4w/xE3824JYG0BVDKQ06JdHo7/g8 q43zD8NGmie86JRdxN5yWyqBWjmvu50FqbuAr2l2A1GCPZPRolErYZZv9Bz1Ghm7 bfYrQlCl1NGlKdUP4VS2jX9jNy1cJNgpZTPPYuesY8mMHSyVH+Fb0zUuzeSyT1Z1 Q5qv28+MvtRgLrT5JX5br+9mL787dhNtUffjvmf37R7G5qsKHSEz0H2Y3Tx8BTX3 8aXdR0TIqQhXDZN2e8nPTfVpf5itsne7FEFBT37ODKbcbw+iApujSiS2m8SYYXo8 br4qm3f9rBq1tmAGyhrz8PFa7WRLRo68vbEkWbNUXfjr5xkQNAectMC0fXm2NzPz 8ONLl1vxcwQ2zJ2yxFV9E4aSnv5zRaBSsMkiDpzvJMA9SEeIwOSrRja4i/wGZyI6 3zhleO8LB0HwOK4mwStmlgZh7FCTy78I9cFX11a9s33xy31QVco= =DENA -----END PGP SIGNATURE----- _______________________________________________ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/
Powered by blists - more mailing lists