Apple macOS vulnerabilities
3,139 known vulnerabilities affecting apple/mac_os_x.
Total CVEs
3,139
CISA KEV
26
actively exploited
Public exploits
279
Exploited in wild
40
Severity breakdown
CRITICAL302HIGH1409MEDIUM1237LOW191
Vulnerabilities
Page 65 of 157
CVE-2018-4131P3HIGHCVSS 7.8fixed in 10.13.42018-04-03
CVE-2018-4131 [HIGH] CVE-2018-4131: An issue was discovered in certain Apple products. iOS before 11.3 is affected. macOS before 10.13.4
An issue was discovered in certain Apple products. iOS before 11.3 is affected. macOS before 10.13.4 is affected. The issue involves the "WindowServer" component. It allows attackers to bypass the Secure Input Mode protection mechanism, and log keystrokes of arbitrary apps, via a crafted app that scans key states.
nvd
CVE-2017-13808P3HIGHCVSS 7.8≤ 10.13.02017-11-13
CVE-2017-13808 [HIGH] CWE-119 CVE-2017-13808: An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue invol
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Remote Management" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
nvd
CVE-2018-4412P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4412 [HIGH] CWE-119 CVE-2018-4412: A memory corruption issue was addressed with improved input validation. This issue affected versions
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4414P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4414 [HIGH] CWE-119 CVE-2018-4414: A memory corruption issue was addressed with improved input validation. This issue affected versions
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4340P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4340 [HIGH] CWE-119 CVE-2018-4340: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4425P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4425 [HIGH] CWE-119 CVE-2018-4425: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4401P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4401 [HIGH] CWE-119 CVE-2018-4401: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4336P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4336 [HIGH] CWE-119 CVE-2018-4336: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4383P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4383 [HIGH] CWE-119 CVE-2018-4383: A memory corruption issue was addressed with improved state management. This issue affected versions
A memory corruption issue was addressed with improved state management. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4337P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4337 [HIGH] CWE-119 CVE-2018-4337: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4408P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4408 [HIGH] CWE-119 CVE-2018-4408: A memory corruption issue was addressed with improved input validation This issue affected versions
A memory corruption issue was addressed with improved input validation This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4419P3HIGHCVSS 7.8fixed in 10.14.12019-04-03
CVE-2018-4419 [HIGH] CWE-119 CVE-2018-4419: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1, macOS Mojave 10.14.1, tvOS 12.1, watchOS 5.1.
nvd
CVE-2018-4426P3HIGHCVSS 7.8fixed in 10.142019-04-03
CVE-2018-4426 [HIGH] CWE-119 CVE-2018-4426: A memory corruption issue was addressed with improved memory handling. This issue affected versions
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4461P3HIGHCVSS 7.8fixed in 10.14.22019-04-03
CVE-2018-4461 [HIGH] CWE-119 CVE-2018-4461: A memory corruption issue was addressed with improved input validation. This issue affected versions
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2.
nvd
CVE-2018-4447P3HIGHCVSS 7.8fixed in 10.14.22019-04-03
CVE-2018-4447 [HIGH] CWE-119 CVE-2018-4447: A memory corruption issue was addressed with improved state management. This issue affected versions
A memory corruption issue was addressed with improved state management. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2.
nvd
CVE-2020-3906P3HIGHCVSS 7.8fixed in 10.15.42020-04-01
CVE-2020-3906 [HIGH] CVE-2020-3906: A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.4. A maliciously crafted application may be able to bypass code signing enforcement.
nvd
CVE-2019-6202P3HIGHCVSS 7.8fixed in 10.14.32019-03-05
CVE-2019-6202 [HIGH] CWE-125 CVE-2019-6202: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, watchOS 5.1.3. A malicious application may be able to elevate privileges.
nvd
CVE-2019-8552P3HIGHCVSS 7.8fixed in 10.14.42019-12-18
CVE-2019-8552 [HIGH] CWE-665 CVE-2019-8552: A memory initialization issue was addressed with improved memory handling. This issue is fixed in iO
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to elevate privileges.
nvd
CVE-2018-4394P3HIGHCVSS 7.8fixed in 10.14.12019-04-03
CVE-2018-4394 [HIGH] CWE-119 CVE-2018-4394: A memory corruption issue was addressed with improved input validation. This issue affected versions
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1, macOS Mojave 10.14.1, tvOS 12.1, watchOS 5.1, iTunes 12.9.1.
nvd
CVE-2015-3703P3MEDIUMCVSS 6.8v10.10.32015-07-03
CVE-2015-3703 [MEDIUM] CWE-119 CVE-2015-3703: ImageIO in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to execute arbitrary
ImageIO in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted TIFF image.
nvd