cbcvebase.

Apple macOS vulnerabilities

3,139 known vulnerabilities affecting apple/mac_os_x.

Total CVEs
3,139
CISA KEV
26
actively exploited
Public exploits
279
Exploited in wild
40
Severity breakdown
CRITICAL302HIGH1409MEDIUM1237LOW191

Vulnerabilities

Page 14 of 157
CVE-2020-3849P3CRITICALCVSS 9.8fixed in 10.15.32020-04-01
CVE-2020-3849 [CRITICAL] CWE-20 CVE-2020-3849: A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.3. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.
nvd
CVE-2020-3848P3CRITICALCVSS 9.8fixed in 10.15.32020-04-01
CVE-2020-3848 [CRITICAL] CWE-20 CVE-2020-3848: A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.3. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.
nvd
CVE-2020-9866P3CRITICALCVSS 9.8fixed in 10.15.62020-10-27
CVE-2020-9866 [CRITICAL] CWE-120 CVE-2020-9866: A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. A buffer overflow may result in arbitrary code execution.
nvd
CVE-2015-3145P3HIGHCVSS 7.5v10.10.0v10.10.1+3 more2015-04-24
CVE-2015-3145 [HIGH] CWE-119 CVE-2015-3145: The sanitize_cookie_path function in cURL and libcurl 7.31.0 through 7.41.0 does not properly calcul The sanitize_cookie_path function in cURL and libcurl 7.31.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly have other unspecified impact via a cookie path containing only a double-quote character.
nvd
CVE-2016-0718P3CRITICALCVSS 9.8≥ 10.11.0, ≤ 10.11.52016-05-26
CVE-2016-0718 [CRITICAL] CWE-119 CVE-2016-0718: Expat allows context-dependent attackers to cause a denial of service (crash) or possibly execute ar Expat allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a malformed input document, which triggers a buffer overflow.
nvd
CVE-2016-1839P4MEDIUMCVSS 5.5PoCfixed in 10.11.52016-05-20
CVE-2016-1839 [MEDIUM] CWE-125 CVE-2016-1839: The xmlDictAddString function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X befor The xmlDictAddString function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted XML document.
nvd
CVE-2016-1838P4MEDIUMCVSS 5.5PoCfixed in 10.11.52016-05-20
CVE-2016-1838 [MEDIUM] CWE-125 CVE-2016-1838: The xmlPArserPrintFileContextInternal function in libxml2 before 2.9.4, as used in Apple iOS before The xmlPArserPrintFileContextInternal function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted XML document.
nvd
CVE-2015-2787P3HIGHCVSS 7.5≤ 10.6.8v10.9.5+5 more2015-03-30
CVE-2015-2787 [HIGH] CVE-2015-2787: Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 allows remote attackers to execute arbitrary code via a crafted unserialize call that leverages use of the unset function within an __wakeup function, a related issue to CVE-2015-0231.
nvd
CVE-2006-3507P4HIGHCVSS 7.2PoCv10.3.9v10.4.72006-09-21
CVE-2006-3507 [HIGH] CVE-2006-3507: Multiple stack-based buffer overflows in the AirPort wireless driver on Apple Mac OS X 10.3.9 and 10 Multiple stack-based buffer overflows in the AirPort wireless driver on Apple Mac OS X 10.3.9 and 10.4.7 allow physically proximate attackers to execute arbitrary code by injecting crafted frames into a wireless network.
nvd
CVE-2007-0197P4MEDIUMCVSS 6.8PoCv10.4.6v10.4.82007-01-11
CVE-2007-0197 [MEDIUM] CWE-20 CVE-2007-0197: Finder 10.4.6 on Apple Mac OS X 10.4.8 allows user-assisted remote attackers to cause a denial of se Finder 10.4.6 on Apple Mac OS X 10.4.8 allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a long volume name in a DMG disk image, which results in memory corruption.
nvd
CVE-2015-7108P4HIGHCVSS 7.2PoC≤ 10.11.12015-12-11
CVE-2015-7108 [HIGH] CWE-119 CVE-2015-7108: The Bluetooth HCI interface in Apple OS X before 10.11.2 allows local users to gain privileges or ca The Bluetooth HCI interface in Apple OS X before 10.11.2 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors.
nvd
CVE-2017-13855P3MEDIUMCVSS 5.5PoCfixed in 10.13.22017-12-25
CVE-2017-13855 [MEDIUM] CWE-704 CVE-2017-13855: An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app that triggers type confusion.
nvd
CVE-2017-13869P3MEDIUMCVSS 5.5PoCfixed in 10.13.22017-12-25
CVE-2017-13869 [MEDIUM] CWE-200 CVE-2017-13869: An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app.
nvd
CVE-2017-13868P3MEDIUMCVSS 5.5PoCfixed in 10.13.22017-12-25
CVE-2017-13868 [MEDIUM] CWE-200 CVE-2017-13868: An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app.
nvd
CVE-2017-6458P3HIGHCVSS 8.8≥ 10.8.0, < 10.132017-03-27
CVE-2017-6458 [HIGH] CWE-119 CVE-2017-6458: Multiple buffer overflows in the ctl_put* functions in NTP before 4.2.8p10 and 4.3.x before 4.3.94 a Multiple buffer overflows in the ctl_put* functions in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allow remote authenticated users to have unspecified impact via a long variable.
nvd
CVE-2002-0676P4HIGHCVSS 7.5PoCv10.1v10.1.1+4 more2002-07-11
CVE-2002-0676 [HIGH] CVE-2002-0676: SoftwareUpdate for MacOS 10.1.x does not use authentication when downloading a software update, whic SoftwareUpdate for MacOS 10.1.x does not use authentication when downloading a software update, which could allow remote attackers to execute arbitrary code by posing as the Apple update server via techniques such as DNS spoofing or cache poisoning, and supplying Trojan Horse updates.
nvd
CVE-2009-2422P3CRITICALCVSS 9.8≥ 10.6.0, < 10.6.3v10.5.82009-07-10
CVE-2009-2422 [CRITICAL] CWE-287 CVE-2009-2422: The example code for the digest authentication functionality (http_authentication.rb) in Ruby on Rai The example code for the digest authentication functionality (http_authentication.rb) in Ruby on Rails before 2.3.3 defines an authenticate_or_request_with_http_digest block that returns nil instead of false when the user does not exist, which allows context-dependent attackers to bypass authentication for applications that are derived from this exa
nvd
CVE-2019-8746P3CRITICALCVSS 9.8fixed in 10.152020-10-27
CVE-2019-8746 [CRITICAL] CWE-125 CVE-2019-8746: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Cat An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 7.14, iCloud for Windows 10.7, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iTunes 12.10.1 for Windows. A remote attacker may be able to cause unexpected ap
nvd
CVE-2020-3909P3CRITICALCVSS 9.8fixed in 10.15.42020-04-01
CVE-2020-3909 [CRITICAL] CWE-120 CVE-2020-3909: A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 13.4 and i A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2, iTunes for Windows 12.10.5, iCloud for Windows 10.9.3, iCloud for Windows 7.18. Multiple issues in libxml2.
nvd
CVE-2007-0646P4HIGHCVSS 7.1PoCv10.3.92007-02-01
CVE-2007-0646 [HIGH] CWE-134 CVE-2007-0646: Format string vulnerability in iMovie HD 6.0.3, and Safari in Apple Mac OS X 10.4 through 10.4.10, a Format string vulnerability in iMovie HD 6.0.3, and Safari in Apple Mac OS X 10.4 through 10.4.10, allows remote user-assisted attackers to cause a denial of service (crash) via format string specifiers in a filename, which is not properly handled when calling the NSRunCriticalAlertPanel Apple AppKit function.
nvd
Apple macOS vulnerabilities | cvebase