A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.
Accessibility. A logging issue was addressed with improved data redaction.
Accessibility. An authentication issue was addressed with improved state management.
Accessibility. An authentication issue was addressed with improved state management.
Accounts. A logic issue was addressed with improved file handling.
Accessibility. This issue was addressed with improved redaction of sensitive information.
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Accessibility. A logging issue was addressed with improved data redaction.
Accounts. The issue was addressed with improved checks.
Accounts. The issue was addressed with improved checks.
Accounts. The issue was addressed with improved checks.
Accounts. The issue was addressed with improved checks.
A security vulnerability was found in zlib. The flaw triggered a heap-based buffer in inflate in the inflate.c function via a large gzip header extra field. This flaw is only applicable in the call inflateGetHeader.
A stack overflow vulnerability exists in the libexpat library due to the way it handles recursive entity expansion in XML documents. When parsing an XML document with deeply nested entity references, libexpat can be forced to recurse indefinitely, exhausting the stack space and causing a crash. This issue could lead to denial of service (DoS) or, in some cases, exploitable memory corruption, depending on the environment and library usage.
A flaw was found in libxml2. Parsing a XML document with the XMLPARSEHUGE option enabled can result in an integer overflow because safety checks were missing in some functions. Also, the xmlParseEntityValue function didn't have any length limitation.
A flaw was found in libxml2. When a reference cycle is detected in the XML entity cleanup function the XML entity data can be stored in a dictionary. In this case, the dictionary becomes corrupted resulting in logic errors, including memory errors like double free.
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may disclose sensitive information.
Accounts. A privacy issue was addressed with improved private data redaction for log entries.
Accelerate Framework. A memory consumption issue was addressed with improved memory handling.
Accelerate Framework. A memory consumption issue was addressed with improved memory handling.
afpfs. The issue was addressed with improved memory handling.
Accessibility. A logging issue was addressed with improved data redaction.
Accessibility. A logging issue was addressed with improved data redaction.
Accessibility. A logic issue was addressed with improved checks.
A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An attacker may be able to cause unexpected app termination.
Admin Framework. A path handling issue was addressed with improved validation.
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.