
Impact: Visiting a maliciously crafted website may lead to cookies being overwrittenĭescription: A parsing issue existed when handling cookies with different letter casing. This issue was addressed through improved validation of metadata.ĬVE-2015-7006 : Mark Dowd of Azimuth Security Impact: Unpacking a maliciously crafted archive may lead to arbitrary code executionĭescription: A file traversal vulnerability existed in the handling of CPIO archives. These issues were addressed through improved memory handling. Impact: Playing a malicious audio file may lead to arbitrary code executionĭescription: Multiple memory corruption issues existed in the handling of audio files. This issue was addressed through improved memory initialization.ĬVE-2015-7003 : Mark Brand of Google Project Zero Impact: A malicious application may be able to execute arbitrary codeĭescription: An uninitialized memory issue existed in coreaudiod. This issue was addressed through improved memory handling.ĬVE-2015-6985 : John Villamil Yahoo Pentest Team Impact: Visiting a maliciously crafted webpage may lead to an unexpected application termination or arbitrary code executionĭescription: A memory corruption issue existed in ATS.


These were addressed by updating PHP to versions 5.5.29 and 5.4.45. This issue was addressed through improved accessor element validation and improved object locking.ĭescription: Multiple vulnerabilities existed in PHP versions prior to 5.5.29 and 5.4.45.

Impact: Visiting a maliciously crafted website may lead to arbitrary code executionĭescription: A memory corruption issue existed in the Accelerate Framework in multi-threading mode. Available for: OS X Mavericks v10.9.5, OS X Yosemite v10.10.5, and OS X El Capitan 10.11
