Apple macOS vulnerabilities
3,139 known vulnerabilities affecting apple/mac_os_x.
Total CVEs
3,139
CISA KEV
26
actively exploited
Public exploits
279
Exploited in wild
40
Severity breakdown
CRITICAL302HIGH1409MEDIUM1237LOW191
Vulnerabilities
Page 42 of 157
CVE-2020-9884P3HIGHCVSS 7.8fixed in 10.15.62020-10-16
CVE-2020-9884 [HIGH] CWE-787 CVE-2020-9884: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvd
CVE-2020-27922P3HIGHCVSS 7.8fixed in 11.0.1fixed in 11.1.02021-04-02
CVE-2020-27922 [HIGH] CVE-2020-27922: A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, watchOS 7.1, tvOS 14.2. Processing a maliciously crafted font file may lead to arbitrary code execution.
nvd
CVE-2021-1783P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2021-1783 [HIGH] CVE-2021-1783: An access issue was addressed with improved memory management. This issue is fixed in macOS Big Sur
An access issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2020-9960P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2020-9960 [HIGH] CWE-125 CVE-2020-9960: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, watchOS 7.0, iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvd
CVE-2020-27919P3HIGHCVSS 7.8fixed in 11.0.1fixed in 11.1.02021-04-02
CVE-2020-27919 [HIGH] CWE-787 CVE-2020-27919: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2021-1741P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2021-1741 [HIGH] CWE-125 CVE-2021-1741: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2021-1809P3HIGHCVSS 7.5≥ 10.14, ≤ 10.14.5≥ 10.15, ≤ 10.15.5+3 more2021-09-08
CVE-2021-1809 [HIGH] CWE-787 CVE-2021-1809: A memory corruption issue was addressed with improved validation. This issue is fixed in Security Up
A memory corruption issue was addressed with improved validation. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A malicious application may be able to read restricted memory.
nvd
CVE-2020-29612P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2020-29612 [HIGH] CWE-787 CVE-2020-29612: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in mac
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious application may be able to execute arbitrary code with system privileges.
nvd
CVE-2020-9926P3HIGHCVSS 7.8fixed in 10.13.6≥ 10.14, < 10.14.6+3 more2021-04-02
CVE-2020-9926 [HIGH] CWE-416 CVE-2020-9926: A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, iCloud for Windows 7.20, macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. Processing maliciously crafted XML may lead to an unexpected application termination or
nvd
CVE-2020-27948P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2020-27948 [HIGH] CWE-787 CVE-2020-27948: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in wat
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in watchOS 7.2, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, tvOS 14.3. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvd
CVE-2021-1808P3HIGHCVSS 7.5≥ 10.14, ≤ 10.14.5≥ 10.15, ≤ 10.15.5+3 more2021-09-08
CVE-2021-1808 [HIGH] CWE-787 CVE-2021-1808: A memory corruption issue was addressed with improved validation. This issue is fixed in Security Up
A memory corruption issue was addressed with improved validation. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. An application may be able to read restricted memory.
nvd
CVE-2020-27933P3HIGHCVSS 7.8≥ 10.15, < 10.15.6v10.15.62021-04-02
CVE-2020-27933 [HIGH] CWE-787 CVE-2020-27933: A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 1
A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, iCloud for Windows 7.20, watchOS 6.2.8, tvOS 13.4.8, macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2022-26769P3HIGHCVSS 7.8≥ 10.15, < 10.15.7v10.15.72022-05-26
CVE-2022-26769 [HIGH] CWE-787 CVE-2022-26769: A memory corruption issue was addressed with improved input validation. This issue is fixed in Secur
A memory corruption issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2021-30844P3HIGHCVSS 7.5≥ 10.15, ≤ 10.15.6v10.15.72021-10-19
CVE-2021-30844 [HIGH] CWE-401 CVE-2021-30844: A logic issue was addressed with improved state management. This issue is fixed in Security Update 2
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A remote attacker may be able to leak memory.
nvd
CVE-2007-4690P3CRITICALCVSS 9.0v10.4.1v10.4.2+8 more2007-11-15
CVE-2007-4690 [CRITICAL] CWE-399 CVE-2007-4690: Double free vulnerability in the NFS component in Apple Mac OS X 10.4 through 10.4.10 allows remote
Double free vulnerability in the NFS component in Apple Mac OS X 10.4 through 10.4.10 allows remote authenticated users to execute arbitrary code via a crafted AUTH_UNIX RPC packet.
nvd
CVE-2021-1738P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2021-1738 [HIGH] CWE-787 CVE-2021-1738: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2021-1737P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2021-1737 [HIGH] CWE-787 CVE-2021-1737: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2020-27952P3HIGHCVSS 7.8≥ 10.14, < 10.14.6≥ 10.15, < 10.15.7+2 more2021-04-02
CVE-2020-27952 [HIGH] CWE-787 CVE-2020-27952: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi
An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1. Processing a maliciously crafted font file may lead to arbitrary code execution.
nvd
CVE-2022-26715P3HIGHCVSS 7.8fixed in 10.15.7v10.15.72022-05-26
CVE-2022-26715 [HIGH] CWE-787 CVE-2022-26715: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Sec
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. An application may be able to gain elevated privileges.
nvd
CVE-2018-4369P3HIGHCVSS 7.5fixed in 10.14.12019-04-03
CVE-2018-4369 [HIGH] CWE-20 CVE-2018-4369: A logic issue was addressed with improved state management. This issue affected versions prior to iO
A logic issue was addressed with improved state management. This issue affected versions prior to iOS 12.1, macOS Mojave 10.14.1, tvOS 12.1, watchOS 5.1.
nvd