|
You are here |
m417z.com | ||
| | | | |
seclists.org
|
|
| | | | | [AI summary] An anonymous hacker disclosed a critical privilege escalation vulnerability in the Xbox 360 hypervisor and provided a proof of concept allowing arbitrary code execution through physical access. | |
| | | | |
reverse.put.as
|
|
| | | | | Today a local privilege escalation vulnerability was disclosed in this blog post. It describes a vulnerability in IOBluetoothFamily kernel extension (IOKit is a never-ending hole of security vulnerabilities). Mavericks and most probably all previous versions are vulnerable but not Yosemite. The reason for this is that Apple silently patched the bug in Yosemite. This is not a new practice, where Apple patches bugs in the latest and newly released OS X version and doesn't care about older versions. | |
| | | | |
www.atredis.com
|
|
| | | | | [AI summary] A detailed technical write-up analyzes a Windows Standard Collector Service privilege escalation vulnerability involving symlink attacks and arbitrary file creation, includes a proof-of-concept exploit, and describes the patch. | |
| | | | |
blog.infosectcbr.com.au
|
|
| | | Dr Silvio Cesare @silviocesare Summary Free list poisoning in a common heap exploitation technique which corrupts a heap allocators's ... | ||