Apple Security Advisory 2017-05-15-5 - iCloud for Windows 6.2.1 is now available and addresses memory corruption issues.
1050246e681450942693f3382f1b2ecf40b18c05b1a5676f21f38239abba21f6
Apple Security Advisory 2017-05-15-4 - watchOS 3.2.1 is now available and addresses memory corruption, code execution, and various other vulnerabilities.
cf0bfa4226002838972ba9c0e3f6481f00d38377970bfca121c3f6a42cc11d2a
Apple Security Advisory 2017-05-15-3 - tvOS 10.2.1 is now available and addresses memory corruption, code execution, and various other vulnerabilities.
779674addaa1654d40d2e4065c9f2ddff94260c3da33d4a8ac031a2f79f2f303
Admidio version 3.2.8 suffers from a cross site request forgery vulnerability.
bccda097848e48286eb8e4b8526e4364a507cf370a29636b624eed0ff0fa4399
INFOR EAM version 11.0 build 201410 suffers from a remote SQL injection vulnerability.
71fef17ecd1c6e2d315557a38a116f6cf61ae651c4a2c30fb6f539d179fe0115
INFOR EAM version 11.0 build 201410 suffers from a stored cross site scripting vulnerability.
55f1ec43bae5021c740f11dd472d4548a63eb2e748881b09516d8a7389cba4f4
Apple Security Advisory 2017-05-15-2 - iOS 10.3.2 is now available and addresses memory corruption, code execution, and various other vulnerabilities.
f5820ea52b00fc116734e8b0de08fa5acad42cef92c5e3010010e8bff44f5cea
Secunia Research has discovered a vulnerability in FLAC, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to an error in the "read_metadata_vorbiscomment_()" function (stream_decoder.c), which can be exploited to cause a memory leak via a specially crafted FLAC file. The vulnerability is confirmed in version 1.3.2. Other versions may also be affected.
d03ed41c1a85fa12e6800c764a04ca3563c34ca3fa216a796399c5524c580f65
LibRaw version 0.18.1 suffers from a parse_tiff_ifd() memory corruption vulnerability.
8f498d873a6b8b8c276e753027950cf8851c888b2c1ac2b4664ef5afe3b545a7
Ubuntu Security Notice 3286-1 - Sebastian Krahmer discovered that the KDE-Libs Kauth component incorrectly checked services invoking D-Bus. A local attacker could use this issue to gain root privileges.
03634ccbfa798acc61ee8d677328fe1fb99e3ebe3ef1b6c3b445f79614923931
Debian Linux Security Advisory 3853-1 - It was discovered that bitlbee, an IRC to other chat networks gateway, contained issues that allowed a remote attacker to cause a denial of service (via application crash), or potentially execute arbitrary commands.
0ae2e756d359a8f85cd211d2cdafd6d770efd1a4c760cdf700690643e939498b
Ubuntu Security Notice 3287-1 - Timo Schmid discovered that the Git restricted shell incorrectly filtered allowed commands. A remote attacker could possibly use this issue to run an interactive pager and access sensitive information.
cdf148f00c10d4f5548f08bb4b5ceaa61ba376f7096316241c0b5a359617d8ce
Apple Security Advisory 2017-05-15-1 - macOS 10.12.5 is now available and addresses certificate validation, privilege escalation, and various other vulnerabilities.
c8e7fabadfea08c552a96a322996223bd75739ad1b76b9e5498a79914d41c38a
This Metasploit module exploits a buffer overflow in the Cerberus FTP client version 8.0.10.3 that is triggered by sending a bad char "A" in the command "MLST".
f6b505ea1428a3f5f93df139b72623113999eac71ef627594621b4e58ddbd048
This archive contains a zip file of EXR images that cause segmentation faults in the OpenEXR library version 2.2.0.
1865e85495f25d1e947a73c7cddc392c1eb7891d3c07ba9b51859f7909ea697b