Apple macOS vulnerabilities
3,139 known vulnerabilities affecting apple/mac_os_x.
Total CVEs
3,139
CISA KEV
26
actively exploited
Public exploits
279
Exploited in wild
40
Severity breakdown
CRITICAL302HIGH1409MEDIUM1237LOW191
Vulnerabilities
Page 135 of 157
CVE-2015-3721P4MEDIUMCVSS 4.3≤ 10.10.32015-07-03
CVE-2015-3721 [MEDIUM] CWE-200 CVE-2015-3721: The kernel in Apple iOS before 8.4 and OS X before 10.10.4 does not properly handle HFS parameters,
The kernel in Apple iOS before 8.4 and OS X before 10.10.4 does not properly handle HFS parameters, which allows attackers to obtain sensitive memory-layout information via a crafted app.
nvd
CVE-2011-3444P4MEDIUMCVSS 4.3≤ 10.7.2v10.7.0+1 more2012-02-02
CVE-2011-3444 [MEDIUM] CWE-310 CVE-2011-3444: Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon fai
Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote attackers to read CardDAV data by terminating an encrypted connection and then sniffing the network.
nvd
CVE-2015-5836P4MEDIUMCVSS 4.3≤ 10.10.52015-10-09
CVE-2015-5836 [MEDIUM] CWE-200 CVE-2015-5836: Apple Online Store Kit in Apple OS X before 10.11 improperly validates iCloud keychain item ACLs, wh
Apple Online Store Kit in Apple OS X before 10.11 improperly validates iCloud keychain item ACLs, which allows attackers to obtain access to keychain items via a crafted app.
nvd
CVE-2015-3786P4MEDIUMCVSS 4.3≤ 10.10.42015-08-16
CVE-2015-3786 [MEDIUM] CWE-200 CVE-2015-3786: The Bluetooth subsystem in Apple OS X before 10.10.5 does not properly restrict Notification Center
The Bluetooth subsystem in Apple OS X before 10.10.5 does not properly restrict Notification Center Service access, which allows attackers to read Notification Center notifications of certain paired devices via a crafted app.
nvd
CVE-2015-3677P4MEDIUMCVSS 4.3≤ 10.10.32015-07-03
CVE-2015-3677 [MEDIUM] CWE-200 CVE-2015-3677: The LZVN compression feature in AppleFSCompression in Apple OS X before 10.10.4 allows attackers to
The LZVN compression feature in AppleFSCompression in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information for the kernel via a crafted app.
nvd
CVE-2015-3711P4MEDIUMCVSS 4.3≤ 10.10.32015-07-03
CVE-2015-3711 [MEDIUM] CWE-200 CVE-2015-3711: The NTFS implementation in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-lay
The NTFS implementation in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information for the kernel via a crafted app.
nvd
CVE-2014-0067P4MEDIUMCVSS 4.6v10.10.42014-03-31
CVE-2014-0067 [MEDIUM] CWE-264 CVE-2014-0067: The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invok
The "make check" command for the test suites in PostgreSQL 9.3.3 and earlier does not properly invoke initdb to specify the authentication requirements for a database cluster to be used for the tests, which allows local users to gain privileges by leveraging access to this cluster.
nvd
CVE-2020-9942P4MEDIUMCVSS 4.3fixed in 11.0.12020-12-08
CVE-2020-9942 [MEDIUM] CWE-1021 CVE-2020-9942: An inconsistent user interface issue was addressed with improved state management. This issue is fix
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, Safari 13.1.2. Visiting a malicious website may lead to address bar spoofing.
nvd
CVE-2007-4681P4MEDIUMCVSS 6.9v10.3.9v10.4+11 more2007-11-15
CVE-2007-4681 [MEDIUM] CWE-119 CVE-2007-4681: Buffer overflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 allows local use
Buffer overflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 allows local users to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted directory hierarchy.
nvd
CVE-2013-3954P4MEDIUMCVSS 6.9v10.8.0v10.8.1+3 more2013-06-05
CVE-2013-3954 [MEDIUM] CWE-20 CVE-2013-3954: The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not properly validate th
The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not properly validate the data for file actions and port actions, which allows local users to (1) cause a denial of service (panic) via a size value that is inconsistent with a header count field, or (2) obtain sensitive information from kernel heap memory via a certain size va
nvd
CVE-2011-3422P4MEDIUMCVSS 4.3≤ 10.6.8v10.6.0+7 more2011-09-12
CVE-2011-3422 [MEDIUM] CWE-20 CVE-2011-3422: The Keychain implementation in Apple Mac OS X 10.6.8 and earlier does not properly handle an untrust
The Keychain implementation in Apple Mac OS X 10.6.8 and earlier does not properly handle an untrusted attribute of a Certification Authority certificate, which makes it easier for man-in-the-middle attackers to spoof arbitrary SSL servers via an Extended Validation certificate, as demonstrated by https access with Safari.
nvd
CVE-2012-0649P4MEDIUMCVSS 6.9≤ 10.7.3v10.0+68 more2012-05-11
CVE-2012-0649 [MEDIUM] CWE-362 CVE-2012-0649: Race condition in the initialization routine in blued in Bluetooth in Apple Mac OS X before 10.7.4 a
Race condition in the initialization routine in blued in Bluetooth in Apple Mac OS X before 10.7.4 allows local users to gain privileges via vectors involving a temporary file.
nvd
CVE-2015-3692P4MEDIUMCVSS 6.8≤ 10.10.32015-07-03
CVE-2015-3692 [MEDIUM] CWE-284 CVE-2015-3692: Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and other products, does not enforce a
Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and other products, does not enforce a locking protection mechanism upon being woken from sleep, which allows local users to conduct EFI flash attacks by leveraging root privileges.
nvd
CVE-2014-0106P4MEDIUMCVSS 6.6≤ 10.10.42014-03-11
CVE-2014-0106 [MEDIUM] CWE-20 CVE-2014-0106: Sudo 1.6.9 before 1.8.5, when env_reset is disabled, does not properly check environment variables f
Sudo 1.6.9 before 1.8.5, when env_reset is disabled, does not properly check environment variables for the env_delete restriction, which allows local users with sudo permissions to bypass intended command restrictions via a crafted environment variable.
nvd
CVE-2005-2502P4MEDIUMCVSS 5.1v10.3.9v10.4.22005-08-19
CVE-2005-2502 [MEDIUM] CVE-2005-2502: Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2, as used in applications such as TextEdit,
Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2, as used in applications such as TextEdit, allows external user-assisted attackers to execute arbitrary code via a crafted Microsoft Word file.
nvd
CVE-2006-1447P4MEDIUMCVSS 5.0v10.4.62006-05-12
CVE-2006-1447 [MEDIUM] CVE-2006-1447: LaunchServices in Apple Mac OS X 10.4.6 allows remote attackers to cause Safari to launch unsafe con
LaunchServices in Apple Mac OS X 10.4.6 allows remote attackers to cause Safari to launch unsafe content via long file name extensions, which prevents Download Validation from determining which application will be used to open the file.
nvd
CVE-2006-4395P4MEDIUMCVSS 5.1v10.3.9v10.4+7 more2006-10-03
CVE-2006-4395 [MEDIUM] CVE-2006-4395: Unspecified vulnerability in QuickDraw Manager in Apple Mac OS X 10.3.9 and 10.4 through 10.4.7 allo
Unspecified vulnerability in QuickDraw Manager in Apple Mac OS X 10.3.9 and 10.4 through 10.4.7 allows context-dependent attackers to cause a denial of service ("memory corruption" and crash) via a crafted PICT image that is not properly handled by a certain "unsupported QuickDraw operation."
nvd
CVE-2006-3502P4MEDIUMCVSS 5.1v10.4.72006-08-03
CVE-2006-3502 [MEDIUM] CVE-2006-3502: Unspecified vulnerability in ImageIO in Apple Mac OS X 10.4.7 allows user-assisted attackers to caus
Unspecified vulnerability in ImageIO in Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted GIF image that triggers a memory allocation failure that is not properly handled.
nvd
CVE-2002-0666P4MEDIUMCVSS 5.0v10.22002-11-04
CVE-2002-0666 [MEDIUM] CVE-2002-0666: IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of a
IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of authentication data, which allows remote attackers to cause a denial of service (kernel panic) via spoofed, short Encapsulating Security Payload (ESP) packets, which result in integer signedness errors.
nvd
CVE-2016-1752P4MEDIUMCVSS 5.5fixed in 10.11.42016-03-24
CVE-2016-1752 [MEDIUM] CWE-20 CVE-2016-1752: The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 all
The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to cause a denial of service via a crafted app.
nvd