Apple macOS vulnerabilities
3,139 known vulnerabilities affecting apple/mac_os_x.
Total CVEs
3,139
CISA KEV
26
actively exploited
Public exploits
279
Exploited in wild
40
Severity breakdown
CRITICAL302HIGH1409MEDIUM1237LOW191
Vulnerabilities
Page 136 of 157
CVE-2019-8839P4MEDIUMCVSS 5.5fixed in 10.15.22020-10-27
CVE-2019-8839 [MEDIUM] CWE-120 CVE-2019-8839: A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. An attacker in a privileged position may be able to perform a denial of service attack.
nvd
CVE-2004-1084P4MEDIUMCVSS 5.0v10.2v10.2.1+14 more2004-12-02
CVE-2004-1084 [MEDIUM] CVE-2004-1084: Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote attackers to read files and resource fork
Apache for Apple Mac OS X 10.2.8 and 10.3.6 allows remote attackers to read files and resource fork content via HTTP requests to certain special file names related to multiple data streams in HFS+, which bypass Apache file handles.
nvd
CVE-2018-4395P4MEDIUMCVSS 5.5fixed in 10.142019-04-03
CVE-2018-4395 [MEDIUM] CWE-20 CVE-2018-4395: This issue was addressed with improved checks. This issue affected versions prior to iOS 12, macOS M
This issue was addressed with improved checks. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2019-8507P4MEDIUMCVSS 5.5fixed in 10.14.42019-12-18
CVE-2019-8507 [MEDIUM] CWE-20 CVE-2019-8507: Multiple memory corruption issues were addressed with improved input validation. This issue is fixed
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Mojave 10.14.4. Processing malicious data may lead to unexpected application termination.
nvd
CVE-2009-0156P4MEDIUMCVSS 4.3v10.4.11v10.5.0+6 more2009-05-13
CVE-2009-0156 [MEDIUM] CWE-20 CVE-2009-0156: Launch Services in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 allows remote attackers to cause a
Launch Services in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 allows remote attackers to cause a denial of service (persistent Finder crash) via a crafted Mach-O executable that triggers an out-of-bounds memory read.
nvd
CVE-2010-1800P4MEDIUMCVSS 5.0v10.6.3v10.6.42010-08-25
CVE-2010-1800 [MEDIUM] CWE-200 CVE-2010-1800: CFNetwork in Apple Mac OS X 10.6.3 and 10.6.4 supports anonymous SSL and TLS connections, which allo
CFNetwork in Apple Mac OS X 10.6.3 and 10.6.4 supports anonymous SSL and TLS connections, which allows man-in-the-middle attackers to redirect a connection and obtain sensitive information via crafted responses.
nvd
CVE-2011-0189P4MEDIUMCVSS 5.0v10.6.0v10.6.1+5 more2011-03-23
CVE-2011-0189 [MEDIUM] CWE-16 CVE-2011-0189: The default configuration of Terminal in Apple Mac OS X 10.6 before 10.6.7 uses SSH protocol version
The default configuration of Terminal in Apple Mac OS X 10.6 before 10.6.7 uses SSH protocol version 1 within the New Remote Connection dialog, which might make it easier for man-in-the-middle attackers to spoof SSH servers by leveraging protocol vulnerabilities.
nvd
CVE-2003-0895P4MEDIUMCVSS 4.6v10.2v10.2.1+7 more2003-11-03
CVE-2003-0895 [MEDIUM] CVE-2003-0895: Buffer overflow in the Mac OS X kernel 10.2.8 and earlier allows local users, and possibly remote at
Buffer overflow in the Mac OS X kernel 10.2.8 and earlier allows local users, and possibly remote attackers, to cause a denial of service (crash), access portions of memory, and possibly execute arbitrary code via a long command line argument (argv[]).
nvd
CVE-2009-2823P4MEDIUMCVSS 4.3≤ 10.6.1v10.0+57 more2009-11-10
CVE-2009-2823 [MEDIUM] CWE-79 CVE-2009-2823: The Apache HTTP Server in Apple Mac OS X before 10.6.2 enables the HTTP TRACE method, which allows r
The Apache HTTP Server in Apple Mac OS X before 10.6.2 enables the HTTP TRACE method, which allows remote attackers to conduct cross-site scripting (XSS) attacks via unspecified web client software.
nvd
CVE-2015-3690P4MEDIUMCVSS 4.3≤ 10.10.32015-07-03
CVE-2015-3690 [MEDIUM] CWE-200 CVE-2015-3690: The DiskImages subsystem in Apple iOS before 8.4 and OS X before 10.10.4 allows attackers to obtain
The DiskImages subsystem in Apple iOS before 8.4 and OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information for the kernel via a crafted app.
nvd
CVE-2015-3780P4MEDIUMCVSS 4.3≤ 10.10.42015-08-16
CVE-2015-3780 [MEDIUM] CWE-200 CVE-2015-3780: The Bluetooth subsystem in Apple OS X before 10.10.5 allows attackers to obtain sensitive kernel mem
The Bluetooth subsystem in Apple OS X before 10.10.5 allows attackers to obtain sensitive kernel memory-layout information via a crafted app.
nvd
CVE-2011-3452P4MEDIUMCVSS 4.3≤ 10.7.2v10.7.0+1 more2012-02-02
CVE-2011-3452 [MEDIUM] CWE-200 CVE-2011-3452: Internet Sharing in Apple Mac OS X before 10.7.3 does not preserve the Wi-Fi configuration across so
Internet Sharing in Apple Mac OS X before 10.7.3 does not preserve the Wi-Fi configuration across software updates, which allows remote attackers to obtain sensitive information by leveraging the lack of a WEP password for a Wi-Fi network.
nvd
CVE-2015-5865P4MEDIUMCVSS 4.3≤ 10.10.52015-10-09
CVE-2015-5865 [MEDIUM] CWE-200 CVE-2015-5865: IOGraphics in Apple OS X before 10.11 allows attackers to obtain sensitive kernel memory-layout info
IOGraphics in Apple OS X before 10.11 allows attackers to obtain sensitive kernel memory-layout information via a crafted app.
nvd
CVE-2014-4498P4MEDIUMCVSS 4.7≤ 10.10.12015-01-30
CVE-2014-4498 [MEDIUM] CWE-17 CVE-2014-4498: The CPU Software in Apple OS X before 10.10.2 allows physically proximate attackers to modify firmwa
The CPU Software in Apple OS X before 10.10.2 allows physically proximate attackers to modify firmware during the EFI update process by inserting a Thunderbolt device with crafted code in an Option ROM, aka the "Thunderstrike" issue.
nvd
CVE-2014-8823P4MEDIUMCVSS 4.7≤ 10.10.12015-01-30
CVE-2014-8823 [MEDIUM] CWE-264 CVE-2014-8823: The IOUSBControllerUserClient::ReadRegister function in the IOUSB controller in IOUSBFamily in Apple
The IOUSBControllerUserClient::ReadRegister function in the IOUSB controller in IOUSBFamily in Apple OS X before 10.10.2 allows local users to read data from arbitrary kernel-memory locations by leveraging root access and providing a crafted first argument.
nvd
CVE-2009-1723P4MEDIUMCVSS 4.3v10.5.6v10.5+7 more2009-08-06
CVE-2009-1723 [MEDIUM] CVE-2009-1723: CFNetwork in Apple Mac OS X 10.5 before 10.5.8 places an incorrect URL in a certificate warning in c
CFNetwork in Apple Mac OS X 10.5 before 10.5.8 places an incorrect URL in a certificate warning in certain 302 redirection scenarios, which makes it easier for remote attackers to trick a user into visiting an arbitrary https web site by leveraging an open redirect vulnerability, a different issue than CVE-2009-2062.
nvd
CVE-2006-1466P4MEDIUMCVSS 4.0v10.42006-05-24
CVE-2006-1466 [MEDIUM] CVE-2006-1466: Xcode Tools before 2.3 for Mac OS X 10.4, when running the WebObjects plugin, allows remote attacker
Xcode Tools before 2.3 for Mac OS X 10.4, when running the WebObjects plugin, allows remote attackers to access or modify WebObjects projects through a network service.
nvd
CVE-2015-5768P4MEDIUMCVSS 4.3≤ 10.10.42015-08-17
CVE-2015-5768 [MEDIUM] CWE-200 CVE-2015-5768: AppleGraphicsControl in Apple OS X before 10.10.5 allows attackers to obtain sensitive kernel memory
AppleGraphicsControl in Apple OS X before 10.10.5 allows attackers to obtain sensitive kernel memory-layout information via a crafted app.
nvd
CVE-2015-3676P4MEDIUMCVSS 4.3≤ 10.10.32015-07-03
CVE-2015-3676 [MEDIUM] CWE-200 CVE-2015-3676: AppleGraphicsControl in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-layout
AppleGraphicsControl in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information via a crafted app.
nvd
CVE-2011-0190P4MEDIUMCVSS 4.3v10.6.0v10.6.1+5 more2011-03-23
CVE-2011-0190 [MEDIUM] CWE-20 CVE-2011-0190: Install Helper in Installer in Apple Mac OS X before 10.6.7 does not properly process an unspecified
Install Helper in Installer in Apple Mac OS X before 10.6.7 does not properly process an unspecified URL, which might allow remote attackers to track user logins by logging network traffic from an agent that was intended to send network traffic to an Apple server.
nvd