×
Login Register an account
Top Submissions Explore Upgoat Search Random Subverse Random Post Colorize! Site Rules
12
2 comments block

try 2 points 2.9 years ago

Feds on voat.xyz will downvote my warnings but the exploits being leveraged by glowniggers this month, and disseminated using "new" catbox are real , found using coherent fuzzing tools.

four remote leverage-able exploits being patched by apple next month, hopefully

July 22, 2021:
https://www.mpeeters.nl/zdi-21-890-0day-apple-macos-audiotoolboxcore-loas-file-parsing-out-of-bounds-read-information-disclosure-vulnerability/

https://www.mpeeters.nl/zdi-21-891-0day-apple-macos-imageio-tiff-file-parsing-out-of-bounds-write-remote-code-execution-vulnerability/

https://www.mpeeters.nl/zdi-21-892-0day-apple-macos-imageio-webp-file-parsing-out-of-bounds-read-information-disclosure-vulnerability/

https://www.mpeeters.nl/zdi-21-893-0day-apple-macos-imageio-webp-file-parsing-out-of-bounds-read-information-disclosure-vulnerability/



several UNRELATED recent Chrome remote critical zero days too (revealed only after fixed by google) :

https://www.cvedetails.com/cve/CVE-2021-30530/
Out of bounds memory access in WebAudio in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page.

https://www.cvedetails.com/cve/CVE-2021-30535/
Double free in ICU in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

https://www.cvedetails.com/cve/CVE-2021-30542/

https://www.cvedetails.com/cve/CVE-2021-30543/


Why do fed glowniggers suppress free speech and suppress warnings about their attacks on machines of voat.xyz users ?