Apple Macos Big Sur vulnerabilities
555 known vulnerabilities affecting apple/macos_big_sur.
Total CVEs
555
CISA KEV
19
actively exploited
Public exploits
11
Exploited in wild
28
Severity breakdown
CRITICAL31HIGH291MEDIUM214LOW18UNKNOWN1
Vulnerabilities
Page 1 of 28
CVE-2023-32434P1HIGHCVSS 7.8KEVPoCv11.7.82023-06-21
CVE-2023-32434 [HIGH] CVE-2023-32434: macOS Big Sur 11.7.8
Apple Security Update: About the security content of macOS Big Sur 11.7.8
Product: macOS Big Sur
Version: 11.7.8
CVE: CVE-2023-32434
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.
Description: An integer overflow was addressed with improved input validation.
apple
CVE-2021-30657P1MEDIUMCVSS 5.5KEVPoCv11.32021-04-26
CVE-2021-30657 [MEDIUM] CVE-2021-30657: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-30657
Component: System Preferences
Impact: A malicious application may bypass Gatekeeper checks. Apple is aware of a report that this issue may have been actively exploited.
Description: A logic issue was addressed with improved state management.
apple
CVE-2023-28206P1HIGHCVSS 8.6KEVPoCv11.7.62023-04-10
CVE-2023-28206 [HIGH] CVE-2023-28206: macOS Big Sur 11.7.6
Apple Security Update: About the security content of macOS Big Sur 11.7.6
Product: macOS Big Sur
Version: 11.7.6
CVE: CVE-2023-28206
Component: IOSurfaceAccelerator
Impact: An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
Description: An out-of-bounds write issue was addressed with improved input validation.
apple
CVE-2021-30858P1HIGHCVSS 8.8KEVPoCv11.62021-09-13
CVE-2021-30858 [HIGH] CVE-2021-30858: macOS Big Sur 11.6
Apple Security Update: About the security content of macOS Big Sur 11.6
Product: macOS Big Sur
Version: 11.6
CVE: CVE-2021-30858
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2021-30807P1HIGHCVSS 7.8KEVPoCv11.5.12021-07-26
CVE-2021-30807 [HIGH] CVE-2021-30807: macOS Big Sur 11.5.1
Apple Security Update: About the security content of macOS Big Sur 11.5.1
Product: macOS Big Sur
Version: 11.5.1
CVE: CVE-2021-30807
Component: IOMobileFrameBuffer
Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2023-41064P1HIGHCVSS 7.8KEVPoCv11.7.102023-09-11
CVE-2023-41064 [HIGH] CVE-2023-41064: macOS Big Sur 11.7.10
Apple Security Update: About the security content of macOS Big Sur 11.7.10
Product: macOS Big Sur
Version: 11.7.10
CVE: CVE-2023-41064
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2021-30883P1HIGHCVSS 7.8KEVPoCv11.6.12021-10-25
CVE-2021-30883 [HIGH] CVE-2021-30883: macOS Big Sur 11.6.1
Apple Security Update: About the security content of macOS Big Sur 11.6.1
Product: macOS Big Sur
Version: 11.6.1
CVE: CVE-2021-30883
Component: IOMobileFrameBuffer
Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-30860P1HIGHCVSS 7.8KEVv11.62021-09-13
CVE-2021-30860 [HIGH] CVE-2021-30860: macOS Big Sur 11.6
Apple Security Update: About the security content of macOS Big Sur 11.6
Product: macOS Big Sur
Version: 11.6
CVE: CVE-2021-30860
Component: CoreGraphics
Impact: Processing a maliciously crafted PDF may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Description: An integer overflow was addressed with improved input validation.
apple
CVE-2022-22587P1CRITICALCVSS 9.8KEVv11.6.32022-01-26
CVE-2022-22587 [CRITICAL] CVE-2022-22587: macOS Big Sur 11.6.3
Apple Security Update: About the security content of macOS Big Sur 11.6.3
Product: macOS Big Sur
Version: 11.6.3
CVE: CVE-2022-22587
Component: IOMobileFrameBuffer
Impact: A malicious application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2021-30661P1HIGHCVSS 8.8KEVv11.32021-04-26
CVE-2021-30661 [HIGH] CVE-2021-30661: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-30661
Component: WebKit Storage
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2022-22675P1HIGHCVSS 7.8KEVv11.6.62022-05-16
CVE-2022-22675 [HIGH] CVE-2022-22675: macOS Big Sur 11.6.6
Apple Security Update: About the security content of macOS Big Sur 11.6.6
Product: macOS Big Sur
Version: 11.6.6
CVE: CVE-2022-22675
Component: AppleAVD
Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2022-32894P1HIGHCVSS 7.8KEVv11.72022-09-12
CVE-2022-32894 [HIGH] CVE-2022-32894: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-32894
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2022-32917P1HIGHCVSS 7.8KEVv11.72022-09-12
CVE-2022-32917 [HIGH] CVE-2022-32917: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-32917
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-41990P1HIGHCVSS 7.8KEVv11.7.92023-07-24
CVE-2023-41990 [HIGH] CVE-2023-41990: macOS Big Sur 11.7.9
Apple Security Update: About the security content of macOS Big Sur 11.7.9
Product: macOS Big Sur
Version: 11.7.9
CVE: CVE-2023-41990
Component: FontParser
Impact: Processing a font file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.1.
Description: The issue was addressed with improved handling of caches.
apple
CVE-2021-30900P1HIGHCVSS 7.8KEVv11.6.12021-10-25
CVE-2021-30900 [HIGH] CVE-2021-30900: macOS Big Sur 11.6.1
Apple Security Update: About the security content of macOS Big Sur 11.6.1
Product: macOS Big Sur
Version: 11.6.1
CVE: CVE-2021-30900
Component: GPU Drivers
Impact: A malicious application may be able to execute arbitrary code with kernel privileges
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2021-30713P1HIGHCVSS 7.8KEVv11.42021-05-24
CVE-2021-30713 [HIGH] CVE-2021-30713: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30713
Component: TCC
Impact: A malicious application may be able to bypass Privacy preferences. Apple is aware of a report that this issue may have been actively exploited.
Description: A permissions issue was addressed with improved validation.
apple
CVE-2023-38606P1MEDIUMCVSS 5.5KEVv11.7.92023-07-24
CVE-2023-38606 [MEDIUM] CVE-2023-38606: macOS Big Sur 11.7.9
Apple Security Update: About the security content of macOS Big Sur 11.7.9
Product: macOS Big Sur
Version: 11.7.9
CVE: CVE-2023-38606
Component: Kernel
Impact: An app may be able to modify sensitive kernel state. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.1.
Description: This issue was addressed with improved state management.
apple
CVE-2021-31010P2HIGHCVSS 7.5KEVv11.62021-09-13
CVE-2021-31010 [HIGH] CVE-2021-31010: macOS Big Sur 11.6
Apple Security Update: About the security content of macOS Big Sur 11.6
Product: macOS Big Sur
Version: 11.6
CVE: CVE-2021-31010
Component: Core Telephony
Impact: A sandboxed process may be able to circumvent sandbox restrictions. Apple was aware of a report that this issue may have been actively exploited at the time of release.
Description: A deserialization issue was addressed through improved validation.
apple
CVE-2022-22674P2MEDIUMCVSS 5.5KEVv11.6.62022-05-16
CVE-2022-22674 [MEDIUM] CVE-2022-22674: macOS Big Sur 11.6.6
Apple Security Update: About the security content of macOS Big Sur 11.6.6
Product: macOS Big Sur
Version: 11.6.6
CVE: CVE-2022-22674
Component: Graphics Drivers
Impact: A local user may be able to read kernel memory
Description: An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation.
apple
CVE-2022-46689P1HIGHCVSS 7.0ExploitedPoCv11.7.22022-12-13
CVE-2022-46689 [HIGH] CVE-2022-46689: macOS Big Sur 11.7.2
Apple Security Update: About the security content of macOS Big Sur 11.7.2
Product: macOS Big Sur
Version: 11.7.2
CVE: CVE-2022-46689
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with additional validation.
apple
1 / 28Next →