惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园 - 叶小钗
J
Java Code Geeks
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
阮一峰的网络日志
阮一峰的网络日志
爱范儿
爱范儿
量子位
N
Netflix TechBlog - Medium
博客园 - 聂微东
博客园 - Franky
aimingoo的专栏
aimingoo的专栏
The Cloudflare Blog
T
The Blog of Author Tim Ferriss
MyScale Blog
MyScale Blog
Google DeepMind News
Google DeepMind News
小众软件
小众软件
博客园 - 三生石上(FineUI控件)
C
Check Point Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
B
Blog
Engineering at Meta
Engineering at Meta
Microsoft Azure Blog
Microsoft Azure Blog
博客园_首页
H
Hackread – Cybersecurity News, Data Breaches, AI and More
腾讯CDC

Full Disclosure

Arbitrary Physical Memory Mapping in ASUS Business/Software Manager kernel driver [NotCVE-2026-0001] Cloudflare Universal SSL CAA augmentation weakens RFC 8657 account binding — CVE-2026-14440 assigned 163 days after public no-CVE disclosure Full Disclosure: Subject: Advisory Submission: EZ Game Booster Full Disclosure: CVE-2026-56877 - Skillable SCORM userId authorisation bypass Full Disclosure: [REVIVE-SA-2026-003] Revive Adserver Vulnerabilities Full Disclosure: OPNsense XPATH Injection (CVE-2026-53582) Authentication Bypass for SafeLine SL6 and SL6+ confidentiality and anonymity leakage to third parties Full Disclosure: OpenBlow Multiple Deanonymization Vulnerabilities Site-access password exposed in web server access logs via GET query string Full Disclosure: APPLE-SA-06-29-2026-3 Safari 26.5.2 Full Disclosure: APPLE-SA-06-29-2026-2 macOS Tahoe 26.5.2 APPLE-SA-06-29-2026-1 iOS 26.5.2 and iPadOS 26.5.2 symlink following and TOCTOU in privileged upload handler allow arbitrary file write as root [KIS-2026-12] Control Web Panel <= 0.9.8.1224 (userRes) SQL Injection Vulnerability Full Disclosure: [fulldis] CVE-2026-58451 - Horde Groupware IMP path traversal vuln Full Disclosure: Samsung Galaxy Buds – Zero-Click HFP/A2DP Takeover via L2CAP Session Preemption (Vendor Response: Working as Intended) Full Disclosure: Asterisk Security Release 23.4.1 Full Disclosure: Asterisk Security Release 22.10.1 Full Disclosure: Asterisk Security Release 21.12.3 Full Disclosure: Asterisk Security Release 20.20.1 Certified Asterisk Security Release certified-22.8-cert3 Certified Asterisk Security Release certified-20.7-cert11 Zig std.http chunked reader integer overflow -> unauthenticated remote DoS Remote Kernel Stack Disclosure via MPLS Label Stack Over-read Full Disclosure: OpenBSD sppp_pap_input: PAP authentication bypass Full Disclosure: SEC Consult SA-20260618-0 :: Hardcoded Root Cloud Credentials in Application Binaries in Silver Leaf Technologies Full Disclosure: SEC Consult SA-20260617-1 :: Multiple Vulnerabilities in Quanos Content Solutions Multiple Critical Vulnerabilities in Sprecher Automation SPRECON-E-C/-E-P/-E-T3 Full Disclosure: SEC Consult SA-20260616-0 :: Broken Access Control in syracom AG Secure Login (2FA) for Atlassian Jira / Confluence
APPLE-SA-06-16-2026-1 Beats Firmware Update 1B211
Apple Product Security via Fulldisclosure · 2026-06-21 · via Full Disclosure
fulldisclosure logo

Full Disclosure mailing list archives


From: Apple Product Security via Fulldisclosure <fulldisclosure () seclists org>
Date: Tue, 16 Jun 2026 15:21:35 -0700

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

APPLE-SA-06-16-2026-1 Beats Firmware Update 1B211

Beats Firmware Update 1B211 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/en-us/127557.

Apple maintains a Security Releases page at
https://support.apple.com/100100 which lists recent
software updates with security advisories.

Bluetooth
Available for: Beats Studio Buds
Impact: An attacker within Bluetooth range may be able to listen through
the microphone of a device which is not yet paired and actively seeking
pair requests
Description: This is a vulnerability in open source code and Apple
Software is among the affected projects. The CVE-ID was assigned by a
third party. Learn more about the issue and CVE-ID at cve.org.
CVE-2025-20701: Dennis Heinze and Frieder Steinmetz of ERNW GmbH

Firmware updates are automatically delivered while your headphones
are paired with and in Bluetooth range of your iPhone, iPad, or Mac. 

You can check the firmware version of your wireless headphones in
Bluetooth settings on your device. On iPhone or iPad, go to
Settings > Bluetooth. On Mac, go to System Settings > Bluetooth.
Then tap the info button next to your headphones.

Learn more about firmware updates for Beats at
https://support.apple.com/102368

All information is also posted on the Apple Security Releases
web site: https://support.apple.com/100100.

This message is signed with Apple's Product Security PGP key,
and details are available at:
https://www.apple.com/support/security/pgp/

-----BEGIN PGP SIGNATURE-----
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=3VzD
-----END PGP SIGNATURE-----

_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: https://seclists.org/fulldisclosure/


Current thread:

  • APPLE-SA-06-16-2026-1 Beats Firmware Update 1B211 Apple Product Security via Fulldisclosure (Jun 20)