cbcvebase.

Apple macOS vulnerabilities

3,438 known vulnerabilities affecting apple/macos.

Total CVEs
3,438
CISA KEV
75
actively exploited
Public exploits
68
Exploited in wild
116
Severity breakdown
CRITICAL259HIGH1478MEDIUM1549LOW152

Vulnerabilities

Page 58 of 172
CVE-2020-9985P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.62020-10-22
CVE-2020-9985 [HIGH] CWE-120 CVE-2020-9985: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2019-8797P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.12019-12-18
CVE-2019-8797 [HIGH] CWE-787 CVE-2019-8797: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.2, watchOS 6.1. An application may be able to execute arbitrary code with system privileges.
nvd
CVE-2020-3827P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.32020-02-27
CVE-2020-3827 [HIGH] CWE-787 CVE-2020-3827: A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.3. Viewing a maliciously crafted JPEG file may lead to arbitrary code execution.
nvd
CVE-2020-9815P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.52020-06-09
CVE-2020-9815 [HIGH] CWE-125 CVE-2020-9815: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 a An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvd
CVE-2020-9791P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.52020-06-09
CVE-2020-9791 [HIGH] CWE-125 CVE-2020-9791: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.5 An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvd
CVE-2019-8574P3HIGHCVSS 7.8≥ unspecified, < macOS Mojave 10.14.52019-12-18
CVE-2019-8574 [HIGH] CWE-787 CVE-2019-8574: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. An application may be able to execute arbitrary code with system privileges.
nvd
CVE-2020-9880P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.62020-10-22
CVE-2020-9880 [HIGH] CWE-120 CVE-2020-9880: A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and i A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2020-9972P3HIGHCVSS 7.8fixed in 11.12020-12-08
CVE-2020-9972 [HIGH] CWE-120 CVE-2020-9972: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2019-8832P3HIGHCVSS 7.8≥ unspecified, < 10.15≥ unspecified, < 6.1+1 more2020-10-27
CVE-2019-8832 [HIGH] CWE-787 CVE-2019-8832: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3 and iPadOS 13.3, watchOS 6.1.1, macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra, tvOS 13.3. An application may be able to execute arbitrary code with system privileges.
nvd
CVE-2020-9940P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.62020-10-22
CVE-2020-9940 [HIGH] CWE-120 CVE-2020-9940: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2019-8784P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.12019-12-18
CVE-2019-8784 [HIGH] CWE-787 CVE-2019-8784: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. An application may be able to execute arbitrary code with system privileges.
nvd
CVE-2020-9882P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.62020-10-22
CVE-2020-9882 [HIGH] CWE-120 CVE-2020-9882: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2020-9881P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.62020-10-22
CVE-2020-9881 [HIGH] CWE-120 CVE-2020-9881: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2020-9785P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.42020-04-01
CVE-2020-9785 [HIGH] CWE-787 CVE-2020-9785: Multiple memory corruption issues were addressed with improved state management. This issue is fixed Multiple memory corruption issues were addressed with improved state management. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. A malicious application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2019-8785P3HIGHCVSS 7.8≥ unspecified, < macOS Catalina 10.15.12019-12-18
CVE-2019-8785 [HIGH] CWE-787 CVE-2019-8785: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.2, watchOS 6.1. An application may be able to execute arbitrary code with system privileges.
nvd
CVE-2021-1763P3HIGHCVSS 7.8≥ 11.0, < 11.2≥ unspecified, < 11.22021-04-02
CVE-2021-1763 [HIGH] CWE-120 CVE-2021-1763: A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Big Sur A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2021-30774P3HIGHCVSS 7.8fixed in 11.5≥ unspecified, < 11.5+2 more2021-09-08
CVE-2021-30774 [HIGH] CVE-2021-30774: A logic issue was addressed with improved validation. This issue is fixed in iOS 14.7, macOS Big Sur A logic issue was addressed with improved validation. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7. A malicious application may be able to gain root privileges.
nvd
CVE-2023-2953P3HIGHCVSS 7.5≥ 11.0, < 11.7.9≥ 12.0, < 12.6.8+1 more2023-05-30
CVE-2023-2953 [HIGH] CWE-476 CVE-2023-2953: A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_m A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.
nvd
CVE-2020-10011P3HIGHCVSS 7.8≥ unspecified, < 10.15≥ unspecified, < 14.22020-12-08
CVE-2020-10011 [HIGH] CWE-125 CVE-2020-10011: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 14.2 a An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvd
CVE-2022-22665P3HIGHCVSS 7.8≥ 11.0, < 11.6.5≥ 12.0, < 12.3+1 more2022-03-18
CVE-2022-22665 [HIGH] CVE-2022-22665: A logic issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.3. A A logic issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.3. A malicious application may be able to gain root privileges.
nvd
Apple macOS vulnerabilities | cvebase