惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

B
Blog RSS Feed
量子位
Recent Announcements
Recent Announcements
T
The Blog of Author Tim Ferriss
美团技术团队
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Blog — PlanetScale
Blog — PlanetScale
H
Help Net Security
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
博客园 - Franky
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
宝玉的分享
宝玉的分享
大猫的无限游戏
大猫的无限游戏
V
Visual Studio Blog
博客园 - 聂微东
aimingoo的专栏
aimingoo的专栏
Microsoft Security Blog
Microsoft Security Blog
U
Unit 42
J
Java Code Geeks
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
IT之家
IT之家
Hugging Face - Blog
Hugging Face - Blog
腾讯CDC
L
LangChain Blog

Full Disclosure

Arbitrary Physical Memory Mapping in ASUS Business/Software Manager kernel driver [NotCVE-2026-0001] Cloudflare Universal SSL CAA augmentation weakens RFC 8657 account binding — CVE-2026-14440 assigned 163 days after public no-CVE disclosure Full Disclosure: Subject: Advisory Submission: EZ Game Booster Full Disclosure: CVE-2026-56877 - Skillable SCORM userId authorisation bypass Full Disclosure: [REVIVE-SA-2026-003] Revive Adserver Vulnerabilities Full Disclosure: OPNsense XPATH Injection (CVE-2026-53582) Authentication Bypass for SafeLine SL6 and SL6+ confidentiality and anonymity leakage to third parties Full Disclosure: OpenBlow Multiple Deanonymization Vulnerabilities Site-access password exposed in web server access logs via GET query string Full Disclosure: APPLE-SA-06-29-2026-3 Safari 26.5.2 Full Disclosure: APPLE-SA-06-29-2026-2 macOS Tahoe 26.5.2 APPLE-SA-06-29-2026-1 iOS 26.5.2 and iPadOS 26.5.2 symlink following and TOCTOU in privileged upload handler allow arbitrary file write as root [KIS-2026-12] Control Web Panel <= 0.9.8.1224 (userRes) SQL Injection Vulnerability Full Disclosure: [fulldis] CVE-2026-58451 - Horde Groupware IMP path traversal vuln Full Disclosure: Samsung Galaxy Buds – Zero-Click HFP/A2DP Takeover via L2CAP Session Preemption (Vendor Response: Working as Intended) Full Disclosure: Asterisk Security Release 23.4.1 Full Disclosure: Asterisk Security Release 22.10.1 Full Disclosure: Asterisk Security Release 21.12.3 Full Disclosure: Asterisk Security Release 20.20.1 Certified Asterisk Security Release certified-22.8-cert3 Certified Asterisk Security Release certified-20.7-cert11 Zig std.http chunked reader integer overflow -> unauthenticated remote DoS Remote Kernel Stack Disclosure via MPLS Label Stack Over-read Full Disclosure: OpenBSD sppp_pap_input: PAP authentication bypass Full Disclosure: SEC Consult SA-20260618-0 :: Hardcoded Root Cloud Credentials in Application Binaries in Silver Leaf Technologies Full Disclosure: SEC Consult SA-20260617-1 :: Multiple Vulnerabilities in Quanos Content Solutions Multiple Critical Vulnerabilities in Sprecher Automation SPRECON-E-C/-E-P/-E-T3 Full Disclosure: SEC Consult SA-20260616-0 :: Broken Access Control in syracom AG Secure Login (2FA) for Atlassian Jira / Confluence
APPLE-SA-06-16-2026-1 Beats Firmware Update 1B211
Apple Product Security via Fulldisclosure · 2026-06-21 · via Full Disclosure
fulldisclosure logo

Full Disclosure mailing list archives


From: Apple Product Security via Fulldisclosure <fulldisclosure () seclists org>
Date: Tue, 16 Jun 2026 15:21:35 -0700

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

APPLE-SA-06-16-2026-1 Beats Firmware Update 1B211

Beats Firmware Update 1B211 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/en-us/127557.

Apple maintains a Security Releases page at
https://support.apple.com/100100 which lists recent
software updates with security advisories.

Bluetooth
Available for: Beats Studio Buds
Impact: An attacker within Bluetooth range may be able to listen through
the microphone of a device which is not yet paired and actively seeking
pair requests
Description: This is a vulnerability in open source code and Apple
Software is among the affected projects. The CVE-ID was assigned by a
third party. Learn more about the issue and CVE-ID at cve.org.
CVE-2025-20701: Dennis Heinze and Frieder Steinmetz of ERNW GmbH

Firmware updates are automatically delivered while your headphones
are paired with and in Bluetooth range of your iPhone, iPad, or Mac. 

You can check the firmware version of your wireless headphones in
Bluetooth settings on your device. On iPhone or iPad, go to
Settings > Bluetooth. On Mac, go to System Settings > Bluetooth.
Then tap the info button next to your headphones.

Learn more about firmware updates for Beats at
https://support.apple.com/102368

All information is also posted on the Apple Security Releases
web site: https://support.apple.com/100100.

This message is signed with Apple's Product Security PGP key,
and details are available at:
https://www.apple.com/support/security/pgp/

-----BEGIN PGP SIGNATURE-----

iQIzBAEBCAAdFiEEhjkl+zMLNwFiCT1o4Ifiq8DH7PUFAmoxuxsACgkQ4Ifiq8DH
7PXgPxAAuS6HauhAAWkHVO6B/RyXJprMTPL8W0m3sAVgnNMZ/p4fzFmHIOqDQGZe
BK2XnaWarFxxE1y6Rr6Quc0JkytqtF3EtTcb+uwcLBZzAaR93nKC1limZbYpH8T7
W4w+GcY9yr7brjfskQlbZb0953Q/aYR+2/tRhnImJD5dZ+7FOpdGqXYSI1y9Ykql
ZtYjlm0kjPpQaSjgELX0vGY1sbT6x9sSDbZmob89lNWgiEL3lgQDWow9L7ba0K8b
G+/Aewb9s6k2O58UvpU6vljwiLMj7XHRl3Z897Mj9qQEaxgxOuGo+tWSn8Obfd3D
ygwPXi6b39ixE9qZN9MCcYuSHiSzyDSudmyImebZEMUZR5LdLRSom2i5mE8nyTyv
QLmKR2ZI3RLWbT1DNqg4LwlecFrl058Mx9hblRmdNCKlU8DA5S4qc87GodIMcA1S
JX6oFQNtQwCusBN0PihA3cZR2swI72T154ic/4IMVZGDASP5ijt0Ipaub+84+A3w
7w0zOF+0xVqRELftqwg+HtiYwoY0827osEENnv5P8MHuESvPiJIRHms4LduTUMUg
gYx7+in09Bm0thHvxOC6+zvUNQkdbJPfotdj+t1zxO2pOL47RZjIVSu4OlwBSMZw
jKhzH+nc1vRkc7SBx2qBDAGoAwJfby3et9iocfJYtLWT2/nREa4=
=3VzD
-----END PGP SIGNATURE-----

_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: https://seclists.org/fulldisclosure/


Current thread:

  • APPLE-SA-06-16-2026-1 Beats Firmware Update 1B211 Apple Product Security via Fulldisclosure (Jun 20)