Apple Macos Big Sur vulnerabilities
555 known vulnerabilities affecting apple/macos_big_sur.
Total CVEs
555
CISA KEV
19
actively exploited
Public exploits
11
Exploited in wild
28
Severity breakdown
CRITICAL31HIGH291MEDIUM214LOW18UNKNOWN1
Vulnerabilities
Page 15 of 28
CVE-2021-30969P3HIGHCVSS 7.8v11.6.22021-12-13
CVE-2021-30969 [HIGH] CVE-2021-30969: macOS Big Sur 11.6.2
Apple Security Update: About the security content of macOS Big Sur 11.6.2
Product: macOS Big Sur
Version: 11.6.2
CVE: CVE-2021-30969
Component: Help Viewer
Impact: Processing a maliciously crafted URL may cause unexpected JavaScript execution from a file on disk
Description: A path handling issue was addressed with improved validation.
apple
CVE-2022-26704P3HIGHCVSS 7.8v11.6.82022-07-20
CVE-2022-26704 [HIGH] CVE-2022-26704: macOS Big Sur 11.6.8
Apple Security Update: About the security content of macOS Big Sur 11.6.8
Product: macOS Big Sur
Version: 11.6.8
CVE: CVE-2022-26704
Component: Spotlight
Impact: An app may be able to gain elevated privileges
Description: A validation issue in the handling of symlinks was addressed with improved validation of symlinks.
apple
CVE-2021-30683P3HIGHCVSS 7.8v11.42021-05-24
CVE-2021-30683 [HIGH] CVE-2021-30683: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30683
Component: Heimdal
Impact: A malicious application could execute arbitrary code leading to compromise of user information
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2021-1859P3HIGHCVSS 7.5v11.32021-04-26
CVE-2021-1859 [HIGH] CVE-2021-1859: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-1859
Component: Notes
Impact: Locked Notes content may have been unexpectedly unlocked
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30680P3HIGHCVSS 7.8v11.42021-05-24
CVE-2021-30680 [HIGH] CVE-2021-30680: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30680
Component: Kext Management
Impact: A local user may be able to load unsigned kernel extensions
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1839P3HIGHCVSS 7.8v11.32021-04-26
CVE-2021-1839 [HIGH] CVE-2021-1839: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-1839
Component: Time Machine
Impact: A local attacker may be able to elevate their privileges
Description: The issue was addressed with improved permissions logic.
apple
CVE-2023-32383P3HIGHCVSS 7.8v11.7.72023-05-18
CVE-2023-32383 [HIGH] CVE-2023-32383: macOS Big Sur 11.7.7
Apple Security Update: About the security content of macOS Big Sur 11.7.7
Product: macOS Big Sur
Version: 11.7.7
CVE: CVE-2023-32383
Component: AppleMobileFileIntegrity
Impact: An app may be able to inject code into sensitive binaries bundled with Xcode
Description: This issue was addressed by forcing hardened runtime on the affected binaries at the system level.
apple
CVE-2022-32826P3HIGHCVSS 7.8v11.6.82022-07-20
CVE-2022-32826 [HIGH] CVE-2022-32826: macOS Big Sur 11.6.8
Apple Security Update: About the security content of macOS Big Sur 11.6.8
Product: macOS Big Sur
Version: 11.6.8
CVE: CVE-2022-32826
Component: AppleMobileFileIntegrity
Impact: An app may be able to gain root privileges
Description: An authorization issue was addressed with improved state management.
apple
CVE-2023-23497P3HIGHCVSS 7.8v11.7.32023-01-23
CVE-2023-23497 [HIGH] CVE-2023-23497: macOS Big Sur 11.7.3
Apple Security Update: About the security content of macOS Big Sur 11.7.3
Product: macOS Big Sur
Version: 11.7.3
CVE: CVE-2023-23497
Component: PackageKit
Impact: An app may be able to gain root privileges
Description: A logic issue was addressed with improved state management.
apple
CVE-2023-28182P3MEDIUMCVSS 6.5v11.7.52023-03-27
CVE-2023-28182 [MEDIUM] CVE-2023-28182: macOS Big Sur 11.7.5
Apple Security Update: About the security content of macOS Big Sur 11.7.5
Product: macOS Big Sur
Version: 11.7.5
CVE: CVE-2023-28182
Component: NetworkExtension
Impact: A user in a privileged network position may be able to spoof a VPN server that is configured with EAP-only authentication on a device
Description: The issue was addressed with improved authentication.
apple
CVE-2021-30698P3HIGHCVSS 7.5v11.42021-05-24
CVE-2021-30698 [HIGH] CVE-2021-30698: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30698
Component: WebRTC
Impact: A remote attacker may be able to cause a denial of service
Description: A null pointer dereference was addressed with improved input validation.
apple
CVE-2021-30679P3HIGHCVSS 7.8v11.42021-05-24
CVE-2021-30679 [HIGH] CVE-2021-30679: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30679
Component: NSOpenPanel
Impact: An application may be able to gain elevated privileges
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-38603P3HIGHCVSS 7.5v11.7.92023-07-24
CVE-2023-38603 [HIGH] CVE-2023-38603: macOS Big Sur 11.7.9
Apple Security Update: About the security content of macOS Big Sur 11.7.9
Product: macOS Big Sur
Version: 11.7.9
CVE: CVE-2023-38603
Component: Kernel
Impact: A remote user may be able to cause a denial-of-service
Description: The issue was addressed with improved checks.
apple
CVE-2022-32794P3HIGHCVSS 7.8v11.6.62022-05-16
CVE-2022-32794 [HIGH] CVE-2022-32794: macOS Big Sur 11.6.6
Apple Security Update: About the security content of macOS Big Sur 11.6.6
Product: macOS Big Sur
Version: 11.6.6
CVE: CVE-2022-32794
Component: PackageKit
Impact: An app may be able to gain elevated privileges
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1878P3MEDIUMCVSS 6.5v11.32021-04-26
CVE-2021-1878 [MEDIUM] CVE-2021-1878: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-1878
Component: Sandbox
Impact: A malicious application may be able to access the user's recent contacts
Description: The issue was addressed with improved permissions logic.
apple
CVE-2022-2124P3HIGHCVSS 7.8v11.72022-09-12
CVE-2022-2124 [HIGH] CVE-2022-2124: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-2124
Component: CVE-2022-2124
apple
CVE-2022-2126P3HIGHCVSS 7.8v11.72022-09-12
CVE-2022-2126 [HIGH] CVE-2022-2126: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-2126
Component: CVE-2022-2126
apple
CVE-2022-2042P3HIGHCVSS 7.8v11.72022-09-12
CVE-2022-2042 [HIGH] CVE-2022-2042: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-2042
Component: CVE-2022-2042
apple
CVE-2021-30938P3HIGHCVSS 7.7v11.6.22021-12-13
CVE-2021-30938 [HIGH] CVE-2021-30938: macOS Big Sur 11.6.2
Apple Security Update: About the security content of macOS Big Sur 11.6.2
Product: macOS Big Sur
Version: 11.6.2
CVE: CVE-2021-30938
Component: Wi-Fi
Impact: A local user may be able to cause unexpected system termination or read kernel memory
Description: This issue was addressed with improved checks.
apple
CVE-2023-0433P4HIGHCVSS 7.8v11.7.52023-03-27
CVE-2023-0433 [HIGH] CVE-2023-0433: macOS Big Sur 11.7.5
Apple Security Update: About the security content of macOS Big Sur 11.7.5
Product: macOS Big Sur
Version: 11.7.5
CVE: CVE-2023-0433
Component: CVE-2023-0433
apple