Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Dirk-Willem Van Gulik

#20511of 53,633
12.5Total CVSS
Vulnerabilities · 2
Medium
2
PT-2020-15831
5.7
2020-09-29
Google/Apple · Gaen · CVE-2020-24721
**Name of the Vulnerable Software and Affected Versions** GAEN (Google/Apple Exposure Notifications) protocol through 2020-09-29 **Description** The issue allows a user to be coerced into proving or disproving an exposure notification due to the persistent state of a private framework in COVID-19 applications on Android and iOS. **Recommendations** For GAEN protocol through 2020-09-29, consider restricting access to the private framework to minimize the risk of coercion or data leakage until a fix is available.
PT-2012-2761
6.8
2012-05-11
Apple · Libsecurity · CVE-2012-0654
**Name of the Vulnerable Software and Affected Versions** Apple Mac OS X versions prior to 10.7.4 **Description** The issue allows remote attackers to execute arbitrary code or cause a denial of service via a crafted X.509 certificate, due to libsecurity accessing uninitialized memory locations during certificate processing. **Recommendations** For versions prior to 10.7.4, update to version 10.7.4 or later to resolve the issue.