Apple macOS vulnerabilities
3,139 known vulnerabilities affecting apple/mac_os_x.
Total CVEs
3,139
CISA KEV
26
actively exploited
Public exploits
279
Exploited in wild
40
Severity breakdown
CRITICAL302HIGH1409MEDIUM1237LOW191
Vulnerabilities
Page 118 of 157
CVE-2020-3836P4MEDIUMCVSS 5.5fixed in 10.15.32020-02-27
CVE-2020-3836 [MEDIUM] CVE-2020-3836: An access issue was addressed with improved memory management. This issue is fixed in iOS 13.3.1 and
An access issue was addressed with improved memory management. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. A malicious application may be able to determine kernel memory layout.
nvd
CVE-2018-4283P4MEDIUMCVSS 5.5fixed in 10.13.62019-04-03
CVE-2018-4283 [MEDIUM] CWE-125 CVE-2018-4283: An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed
An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue affected versions prior to macOS High Sierra 10.13.6.
nvd
CVE-2020-3918P4MEDIUMCVSS 5.5fixed in 10.15.42020-10-22
CVE-2020-3918 [MEDIUM] CVE-2020-3918: An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4
An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. A local user may be able to view sensitive user information.
nvd
CVE-2021-30767P4MEDIUMCVSS 5.5≥ 10.15, < 10.15.7v10.15.72021-12-23
CVE-2021-30767 [MEDIUM] CVE-2021-30767: A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.6.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. A local user may be able to modify protected parts of the file system.
nvd
CVE-2015-3714P4MEDIUMCVSS 5.0≤ 10.10.32015-07-03
CVE-2015-3714 [MEDIUM] CWE-254 CVE-2015-3714: Apple OS X before 10.10.4 does not properly consider custom resource rules during app signature veri
Apple OS X before 10.10.4 does not properly consider custom resource rules during app signature verification, which allows attackers to bypass intended launch restrictions via a modified app.
nvd
CVE-2017-13909P4MEDIUMCVSS 5.5≥ 10.0, < 10.132021-12-23
CVE-2017-13909 [MEDIUM] CWE-922 CVE-2017-13909: An issue existed in the storage of sensitive tokens. This issue was addressed by placing the tokens
An issue existed in the storage of sensitive tokens. This issue was addressed by placing the tokens in Keychain. This issue is fixed in macOS High Sierra 10.13. A local attacker may gain access to iCloud authentication tokens.
nvd
CVE-2019-8667P4MEDIUMCVSS 5.3fixed in 10.14.62019-12-18
CVE-2019-8667 [MEDIUM] CVE-2019-8667: An inconsistent user interface issue was addressed with improved state management. This issue is fix
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.6. The encryption status of a Time Machine backup may be incorrect.
nvd
CVE-2008-4236P4HIGHCVSS 7.1≤ 10.5.5v10.5+4 more2008-12-17
CVE-2008-4236 [HIGH] CWE-399 CVE-2008-4236: Apple Type Services (ATS) in Apple Mac OS X 10.5 before 10.5.6 allows remote attackers to cause a de
Apple Type Services (ATS) in Apple Mac OS X 10.5 before 10.5.6 allows remote attackers to cause a denial of service (infinite loop) via a crafted embedded font in a PDF file.
nvd
CVE-2014-8831P4MEDIUMCVSS 5.0≤ 10.10.12015-01-30
CVE-2014-8831 [MEDIUM] CWE-264 CVE-2014-8831: security_taskgate in Apple OS X before 10.10.2 allows attackers to read group-ACL-restricted keychai
security_taskgate in Apple OS X before 10.10.2 allows attackers to read group-ACL-restricted keychain items of arbitrary apps via a crafted app with a signature from a (1) self-signed certificate or (2) Developer ID certificate.
nvd
CVE-2007-5861P4MEDIUMCVSS 6.8v10.4.112007-12-19
CVE-2007-5861 [MEDIUM] CWE-399 CVE-2007-5861: Unspecified vulnerability in Spotlight in Apple Mac OS X 10.4.11 allows user-assisted attackers to c
Unspecified vulnerability in Spotlight in Apple Mac OS X 10.4.11 allows user-assisted attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted .XLS file that triggers memory corruption in the Microsoft Office Spotlight Importer.
nvd
CVE-2014-1296P4MEDIUMCVSS 4.3v10.8.0v10.8.1+13 more2014-04-23
CVE-2014-1296 [MEDIUM] CWE-264 CVE-2014-1296: CFNetwork in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 does not e
CFNetwork in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 does not ensure that a Set-Cookie HTTP header is complete before interpreting the header's value, which allows remote attackers to bypass intended access restrictions by triggering the closing of a TCP connection during transmission of a header, as demonstrated b
nvd
CVE-2007-0022P4HIGHCVSS 7.2v10.4.82007-01-23
CVE-2007-0022 [HIGH] CVE-2007-0022: Untrusted search path vulnerability in writeconfig in Apple Mac OS X 10.4.8 allows local users to ga
Untrusted search path vulnerability in writeconfig in Apple Mac OS X 10.4.8 allows local users to gain privileges via a modified PATH that points to a malicious launchctl program.
nvd
CVE-2006-3500P4HIGHCVSS 7.2v10.4.72006-08-03
CVE-2006-3500 [HIGH] CVE-2006-3500: The dynamic linker (dyld) in Apple Mac OS X 10.4.7 allows local users to execute arbitrary code via
The dynamic linker (dyld) in Apple Mac OS X 10.4.7 allows local users to execute arbitrary code via an "improperly handled condition" that leads to use of "dangerous paths," probably related to an untrusted search path vulnerability.
nvd
CVE-2006-1451P4HIGHCVSS 7.2v10.3.9v10.4.62006-05-12
CVE-2006-1451 [HIGH] CVE-2006-1451: MySQL Manager in Apple Mac OS X 10.3.9 and 10.4.6, when setting up a new MySQL database server, does
MySQL Manager in Apple Mac OS X 10.3.9 and 10.4.6, when setting up a new MySQL database server, does not use the "New MySQL root password" that is provided, which causes the MySQL root password to be blank and allows local users to gain full privileges to that database.
nvd
CVE-2007-4693P4HIGHCVSS 7.2v10.4.1v10.4.2+8 more2007-11-15
CVE-2007-4693 [HIGH] CWE-287 CVE-2007-4693: The SecurityAgent component in Mac OS X 10.4 through 10.4.10 allows attackers with physical access t
The SecurityAgent component in Mac OS X 10.4 through 10.4.10 allows attackers with physical access to bypass the authentication dialog of the screen saver and send keystrokes to a process, related to "handling of keyboard focus between secure text fields."
nvd
CVE-2008-3609P4HIGHCVSS 7.2v10.5v10.5.1+3 more2008-09-16
CVE-2008-3609 [HIGH] CWE-264 CVE-2008-3609: The kernel in Apple Mac OS X 10.5 through 10.5.4 does not properly flush cached credentials during r
The kernel in Apple Mac OS X 10.5 through 10.5.4 does not properly flush cached credentials during recycling (aka purging) of a vnode, which might allow local users to bypass the intended read or write permissions of a file.
nvd
CVE-2006-4411P4HIGHCVSS 7.2v10.3v10.3.1+17 more2006-11-30
CVE-2006-4411 [HIGH] CVE-2006-4411: The VPN service in Apple Mac OS X 10.3.x through 10.3.9 and 10.4.x through 10.4.8 does not properly
The VPN service in Apple Mac OS X 10.3.x through 10.3.9 and 10.4.x through 10.4.8 does not properly clean the environment when executing commands, which allows local users to gain privileges via unspecified vectors.
nvd
CVE-2007-0732P4HIGHCVSS 7.2v10.4v10.4.1+8 more2007-04-24
CVE-2007-0732 [HIGH] CVE-2007-0732: Unspecified vulnerability in the CoreServices daemon in CarbonCore in Apple Mac OS X 10.4 through 10
Unspecified vulnerability in the CoreServices daemon in CarbonCore in Apple Mac OS X 10.4 through 10.4.9 allows local users to gain privileges via unspecified vectors involving "obtaining a send right to [the] Mach task port."
nvd
CVE-2007-0740P4MEDIUMCVSS 6.8v10.3.9v10.4.92007-05-24
CVE-2007-0740 [MEDIUM] CVE-2007-0740: Alias Manager in Apple Mac OS X 10.3.9 and 10.4.9 does not display files with the same name in mount
Alias Manager in Apple Mac OS X 10.3.9 and 10.4.9 does not display files with the same name in mounted disk images that have the same name, which might allow user-assisted attackers to trick a user into executing malicious files.
nvd
CVE-2014-4408P4MEDIUMCVSS 6.9≤ 10.9.52014-09-18
CVE-2014-4408 [MEDIUM] CWE-119 CVE-2014-4408: The rt_setgate function in the kernel in Apple iOS before 8 and Apple TV before 7 allows local users
The rt_setgate function in the kernel in Apple iOS before 8 and Apple TV before 7 allows local users to gain privileges or cause a denial of service (out-of-bounds read and device crash) via a crafted call.
nvd