风沐云烟

6 posts

风沐云烟 banner
风沐云烟

风沐云烟

@binary_fmyy

Beigetreten Aralık 2019
40 Folgt558 Follower
Gergely Kalman
Gergely Kalman@gergely_kalman·
macOS 15.6 came with a few CVEs: CVE-2025-43199: I have no idea whivh bug this is yet :) CVE-2025-43232: collab with @theevilbit CVE-2025-43268: classified as kernel but I reported anything like that All in all: it's chaos as usual, but patch your systems ASAP!
English
8
8
61
4.5K
风沐云烟
风沐云烟@binary_fmyy·
CVE-2024-23208: it' is new code introduced on XNU with macOS 14.0, here it does not increase the refcount of group-pointer
风沐云烟 tweet media
English
12
15
148
61.1K
风沐云烟
风沐云烟@binary_fmyy·
@zhuowei No, it’s not in vm, I’m not sure if I can disclose the details about it, but it is a UAF vulnearbility caused by reference counting
English
3
3
17
9.4K
Zhuowei Zhang
Zhuowei Zhang@zhuowei·
Interesting: macOS 14.3 added a check to `vm_object_coalesce` to confirm that `prev_offset + prev_size` and `prev_offset + prev_size + next_size` don't overflow. #L5181" target="_blank" rel="nofollow noopener">github.com/apple-oss-dist… I wonder if this is CVE-2024-23208?
English
3
4
61
16.4K