Apple Macos Big Sur vulnerabilities

555 known vulnerabilities affecting apple/macos_big_sur.

Total CVEs
555
CISA KEV
19
actively exploited
Public exploits
4
Exploited in wild
19
Severity breakdown
CRITICAL31HIGH291MEDIUM214LOW18UNKNOWN1

Vulnerabilities

Page 2 of 28
CVE-2023-42832HIGHCVSS 7.0v11.7.92023-07-24
CVE-2023-42832 [HIGH] CVE-2023-42832: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-42832 Component: Software Update Impact: An app may be able to gain root privileges Description: A race condition was addressed with improved state handling.
apple
CVE-2023-41990HIGHCVSS 7.8KEVv11.7.92023-07-24
CVE-2023-41990 [HIGH] CVE-2023-41990: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-41990 Component: FontParser Impact: Processing a font file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.1. Description: The issue was addressed with improved handling of caches.
apple
CVE-2023-2953HIGHCVSS 7.5v11.7.92023-07-24
CVE-2023-2953 [HIGH] CVE-2023-2953: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-2953 Component: OpenLDAP Impact: A remote user may be able to cause a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2023-38565HIGHCVSS 7.8v11.7.92023-07-24
CVE-2023-38565 [HIGH] CVE-2023-38565: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-38565 Component: Kernel Impact: A remote user may be able to cause a denial-of-service Description: The issue was addressed with improved checks.
apple
CVE-2023-32441HIGHCVSS 7.8v11.7.92023-07-24
CVE-2023-32441 [HIGH] CVE-2023-32441: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-32441 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-2426MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-2426 [MEDIUM] CVE-2023-2426: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-2426 Component: CVE-2023-2426
apple
CVE-2023-28320MEDIUMCVSS 5.9v11.7.92023-07-24
CVE-2023-28320 [MEDIUM] CVE-2023-28320: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-28320 Component: CVE-2023-28320
apple
CVE-2023-38593MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-38593 [MEDIUM] CVE-2023-38593: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-38593 Component: Kernel Impact: A remote user may be able to cause a denial-of-service Description: The issue was addressed with improved checks.
apple
CVE-2023-1801MEDIUMCVSS 6.5v11.7.92023-07-24
CVE-2023-1801 [MEDIUM] CVE-2023-1801: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-1801 Component: CVE-2023-1801
apple
CVE-2023-42829MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-42829 [MEDIUM] CVE-2023-42829: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-42829 Component: OpenSSH Impact: An app may be able to access SSH passphrases Description: The issue was addressed with additional restrictions on the observability of app states.
apple
CVE-2023-38259MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-38259 [MEDIUM] CVE-2023-38259: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-38259 Component: PackageKit Impact: An app may be able to access user-sensitive data Description: A logic issue was addressed with improved restrictions.
apple
CVE-2023-2609MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-2609 [MEDIUM] CVE-2023-2609: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-2609 Component: CVE-2023-2609
apple
CVE-2023-28321MEDIUMCVSS 5.9v11.7.92023-07-24
CVE-2023-28321 [MEDIUM] CVE-2023-28321: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-28321 Component: CVE-2023-28321
apple
CVE-2023-35983MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-35983 [MEDIUM] CVE-2023-35983: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-35983 Component: Assets Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed with improved data protection.
apple
CVE-2023-38606MEDIUMCVSS 5.5KEVv11.7.92023-07-24
CVE-2023-38606 [MEDIUM] CVE-2023-38606: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-38606 Component: Kernel Impact: An app may be able to modify sensitive kernel state. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.1. Description: This issue was addressed with improved state management.
apple
CVE-2023-34241MEDIUMCVSS 5.3v11.7.92023-07-24
CVE-2023-34241 [MEDIUM] CVE-2023-34241: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-34241 Component: CUPS Impact: A user in a privileged network position may be able to leak sensitive information Description: A logic issue was addressed with improved state management.
apple
CVE-2023-42831MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-42831 [MEDIUM] CVE-2023-42831: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-42831 Component: Security Impact: An app may be able to fingerprint the user Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-32429MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-32429 [MEDIUM] CVE-2023-32429: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-32429 Component: SystemMigration Impact: An app may be able to bypass Privacy preferences Description: The issue was addressed with improved checks.
apple
CVE-2023-32422MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-32422 [MEDIUM] CVE-2023-32422: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-32422 Component: SQLite Impact: An app may be able to bypass Privacy preferences Description: This issue was addressed by adding additional SQLite logging restrictions.
apple
CVE-2023-38602MEDIUMCVSS 5.5v11.7.92023-07-24
CVE-2023-38602 [MEDIUM] CVE-2023-38602: macOS Big Sur 11.7.9 Apple Security Update: About the security content of macOS Big Sur 11.7.9 Product: macOS Big Sur Version: 11.7.9 CVE: CVE-2023-38602 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed with additional restrictions.
apple