Full Disclosure mailing list archives

APPLE-SA-11-13-2025-1 Compressor 4.11.1


From: Apple Product Security via Fulldisclosure <fulldisclosure () seclists org>
Date: Thu, 13 Nov 2025 12:57:50 -0800

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

APPLE-SA-11-13-2025-1 Compressor 4.11.1

Compressor 4.11.1 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/125693.

Apple maintains a Security Releases page at
https://support.apple.com/100100 which lists recent
software updates with security advisories.

Compressor
Available for: macOS Sequoia 15.6 and later
Impact: An unauthenticated user on the same network as a Compressor
server may be able to execute arbitrary code
Description: The issue was addressed by refusing external connections by
default.
CVE-2025-43515: CodeColorist and Pedro Tôrres(@t0rr3sp3dr0)

Compressor 4.11.1 may be obtained from the App Store.

All information is also posted on the Apple Security Releases
web site: https://support.apple.com/100100.

This message is signed with Apple's Product Security PGP key,
and details are available at:
https://www.apple.com/support/security/pgp/

-----BEGIN PGP SIGNATURE-----
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=qEGa
-----END PGP SIGNATURE-----

_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: https://seclists.org/fulldisclosure/

Current thread: