cbcvebase.

Apple macOS vulnerabilities

3,139 known vulnerabilities affecting apple/mac_os_x.

Total CVEs
3,139
CISA KEV
26
actively exploited
Public exploits
279
Exploited in wild
40
Severity breakdown
CRITICAL302HIGH1409MEDIUM1237LOW191

Vulnerabilities

Page 75 of 157
CVE-2015-7059P3MEDIUMCVSS 6.8≤ 10.11.12015-12-11
CVE-2015-7059 [MEDIUM] CWE-119 CVE-2015-7059: The ASN.1 decoder in Apple OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remot The ASN.1 decoder in Apple OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted certificate, a different vulnerability than CVE-2015-7060 and CVE-2015-7061.
nvd
CVE-2015-7061P3MEDIUMCVSS 6.8≤ 10.11.12015-12-11
CVE-2015-7061 [MEDIUM] CVE-2015-7061: The ASN.1 decoder in Apple OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remot The ASN.1 decoder in Apple OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted certificate, a different vulnerability than CVE-2015-7059 and CVE-2015-7060.
nvd
CVE-2011-3226P3MEDIUMCVSS 6.8v10.7.0v10.7.12011-10-14
CVE-2011-3226 [MEDIUM] CWE-264 CVE-2011-3226: Open Directory in Apple Mac OS X 10.7 before 10.7.2, when an LDAPv3 server is used with RFC 2307 or Open Directory in Apple Mac OS X 10.7 before 10.7.2, when an LDAPv3 server is used with RFC 2307 or custom mappings, allows remote attackers to bypass the password requirement by leveraging lack of an AuthenticationAuthority attribute for a user account.
nvd
CVE-2009-0140P4CRITICALCVSS 9.3v10.4.11v10.5.62009-02-13
CVE-2009-0140 [CRITICAL] CWE-399 CVE-2009-0140: Unspecified vulnerability in the SMB component in Apple Mac OS X 10.4.11 and 10.5.6 allows remote SM Unspecified vulnerability in the SMB component in Apple Mac OS X 10.4.11 and 10.5.6 allows remote SMB servers to cause a denial of service (memory exhaustion and system shutdown) via a crafted file system name.
nvd
CVE-2015-5913P3MEDIUMCVSS 6.8≤ 10.10.52015-10-09
CVE-2015-5913 [MEDIUM] CWE-284 CVE-2015-5913: Heimdal, as used in Apple OS X before 10.11, allows remote attackers to conduct replay attacks again Heimdal, as used in Apple OS X before 10.11, allows remote attackers to conduct replay attacks against the SMB server via packet data that represents a Kerberos authenticated request.
nvd
CVE-2009-5078P3MEDIUMCVSS 6.5≤ 10.10.42011-06-30
CVE-2009-5078 [MEDIUM] CWE-254 CVE-2009-5078: contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) before 1.21 launches the Ghostscript program wit contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) before 1.21 launches the Ghostscript program without the -dSAFER option, which allows remote attackers to create, overwrite, rename, or delete arbitrary files via a crafted document.
nvd
CVE-2015-1067P4MEDIUMCVSS 4.3≤ 10.10.22015-03-11
CVE-2015-1067 [MEDIUM] CVE-2015-1067: Secure Transport in Apple iOS before 8.2, Apple OS X through 10.10.2, and Apple TV before 7.1 does n Secure Transport in Apple iOS before 8.2, Apple OS X through 10.10.2, and Apple TV before 7.1 does not properly restrict TLS state transitions, which makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the "FREAK" issue, a different vulnerability than CVE-2015-0204 and CVE-2015-163
nvd
CVE-2007-6359P4MEDIUMCVSS 4.9PoCv10.5.12007-12-15
CVE-2007-6359 [MEDIUM] CWE-189 CVE-2007-6359: The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple M The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple Mac OS X 10.5.1 allows local users to cause a denial of service (failed assertion and system crash) via a crafted signed Mach-O binary that causes the hashes function to return NULL.
nvd
CVE-2019-8597P3MEDIUMCVSS 6.5fixed in 10.14.52019-12-18
CVE-2019-8597 [MEDIUM] CWE-787 CVE-2019-8597: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvd
CVE-2019-8615P3MEDIUMCVSS 6.5fixed in 10.14.52019-12-18
CVE-2019-8615 [MEDIUM] CWE-125 CVE-2019-8615: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvd
CVE-2007-6261P4MEDIUMCVSS 4.9PoCv10.4v10.5.12007-12-06
CVE-2007-6261 [MEDIUM] CWE-189 CVE-2007-6261: Integer overflow in the load_threadstack function in the Mach-O loader (mach_loader.c) in the xnu ke Integer overflow in the load_threadstack function in the Mach-O loader (mach_loader.c) in the xnu kernel in Apple Mac OS X 10.4 through 10.5.1 allows local users to cause a denial of service (infinite loop) via a crafted Mach-O binary.
nvd
CVE-2004-0926P4CRITICALCVSS 10.0v10.2v10.2.1+13 more2005-01-27
CVE-2004-0926 [CRITICAL] CVE-2004-0926: Heap-based buffer overflow in Apple QuickTime on Mac OS 10.2.8 through 10.3.5 may allow remote attac Heap-based buffer overflow in Apple QuickTime on Mac OS 10.2.8 through 10.3.5 may allow remote attackers to execute arbitrary code via a certain BMP image.
nvd
CVE-2013-0966P3MEDIUMCVSS 6.4v10.6.8v10.7.0+8 more2013-03-15
CVE-2013-0966 [MEDIUM] CVE-2013-0966: The Apple mod_hfs_apple module for the Apache HTTP Server in Apple Mac OS X before 10.8.3 does not p The Apple mod_hfs_apple module for the Apache HTTP Server in Apple Mac OS X before 10.8.3 does not properly handle ignorable Unicode characters, which allows remote attackers to bypass intended directory authentication requirements via a crafted pathname in a URI.
nvd
CVE-2005-2743P4HIGHCVSS 7.5v10.3.92005-10-26
CVE-2005-2743 [HIGH] CVE-2005-2743: The Java extensions for QuickTime 6.52 and earlier in Apple Mac OS X 10.3.9 allow untrusted applets The Java extensions for QuickTime 6.52 and earlier in Apple Mac OS X 10.3.9 allow untrusted applets to call arbitrary functions in system libraries, which allows remote attackers to execute arbitrary code.
nvd
CVE-2010-2499P4MEDIUMCVSS 6.8fixed in 10.6.52010-08-19
CVE-2010-2499 [MEDIUM] CWE-120 CVE-2010-2499: Buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.0 all Buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted LaserWriter PS font file with an embedded PFB fragment.
nvd
CVE-2005-0342P4LOWCVSS 2.1PoCv10.0v10.0.1+26 more2005-05-02
CVE-2005-0342 [LOW] CVE-2005-0342: The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileg The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
nvd
CVE-2005-2508P4MEDIUMCVSS 4.6PoCv10.4.22005-08-19
CVE-2005-2508 [MEDIUM] CVE-2005-2508: dsidentity in Directory Services in Mac OS X 10.4.2 allows local users to add or remove user account dsidentity in Directory Services in Mac OS X 10.4.2 allows local users to add or remove user accounts.
nvd
CVE-2010-2806P3MEDIUMCVSS 6.8fixed in 10.6.52010-08-19
CVE-2010-2806 [MEDIUM] CWE-129 CVE-2010-2806: Array index error in the t42_parse_sfnts function in type42/t42parse.c in FreeType before 2.4.2 allo Array index error in the t42_parse_sfnts function in type42/t42parse.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via negative size values for certain strings in FontType42 font files, leading to a heap-based buffer overflow.
nvd
CVE-2009-1728P3MEDIUMCVSS 6.8v10.5.6v10.5+19 more2009-08-06
CVE-2009-1728 [MEDIUM] CWE-119 CVE-2009-1728: Stack-based buffer overflow in Image RAW in Apple Mac OS X 10.5 before 10.5.8, and 10.4 before Digit Stack-based buffer overflow in Image RAW in Apple Mac OS X 10.5 before 10.5.8, and 10.4 before Digital Camera RAW Compatibility Update 2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Canon RAW image.
nvd
CVE-2008-7303P4HIGHCVSS 7.6v10.5.0v10.5.1+7 more2011-11-15
CVE-2008-7303 [HIGH] CWE-264 CVE-2008-7303: The nonet and nointernet sandbox profiles in Apple Mac OS X 10.5.x do not propagate restrictions to The nonet and nointernet sandbox profiles in Apple Mac OS X 10.5.x do not propagate restrictions to all created processes, which allows remote attackers to access network resources via a crafted application, as demonstrated by use of launchctl to trigger the launchd daemon's execution of a script file, a related issue to CVE-2011-1516.
nvd
Apple macOS vulnerabilities | cvebase