Apple Macos Big Sur vulnerabilities
555 known vulnerabilities affecting apple/macos_big_sur.
Total CVEs
555
CISA KEV
19
actively exploited
Public exploits
11
Exploited in wild
28
Severity breakdown
CRITICAL31HIGH291MEDIUM214LOW18UNKNOWN1
Vulnerabilities
Page 21 of 28
CVE-2023-32407P4MEDIUMCVSS 5.5v11.7.72023-05-18
CVE-2023-32407 [MEDIUM] CVE-2023-32407: macOS Big Sur 11.7.7
Apple Security Update: About the security content of macOS Big Sur 11.7.7
Product: macOS Big Sur
Version: 11.7.7
CVE: CVE-2023-32407
Component: Metal
Impact: An app may be able to bypass Privacy preferences
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30753P4MEDIUMCVSS 5.5v11.42021-05-24
CVE-2021-30753 [MEDIUM] CVE-2021-30753: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30753
Component: CoreText
Impact: An out-of-bounds read was addressed with improved input validation
Description: Processing a maliciously crafted font may result in the disclosure of process memory.
apple
CVE-2021-30705P4MEDIUMCVSS 5.5v11.42021-05-24
CVE-2021-30705 [MEDIUM] CVE-2021-30705: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30705
Component: ImageIO
Impact: Processing a maliciously crafted ASTC file may disclose memory contents
Description: This issue was addressed with improved checks.
apple
CVE-2021-30700P4MEDIUMCVSS 5.5v11.42021-05-24
CVE-2021-30700 [MEDIUM] CVE-2021-30700: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30700
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to disclosure of user information
Description: This issue was addressed with improved checks.
apple
CVE-2021-30973P4MEDIUMCVSS 5.5v11.6.22021-12-13
CVE-2021-30973 [MEDIUM] CVE-2021-30973: macOS Big Sur 11.6.2
Apple Security Update: About the security content of macOS Big Sur 11.6.2
Product: macOS Big Sur
Version: 11.6.2
CVE: CVE-2021-30973
Component: Model I/O
Impact: Processing a maliciously crafted file may disclose user information
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-30947P4MEDIUMCVSS 5.5v11.6.22021-12-13
CVE-2021-30947 [MEDIUM] CVE-2021-30947: macOS Big Sur 11.6.2
Apple Security Update: About the security content of macOS Big Sur 11.6.2
Product: macOS Big Sur
Version: 11.6.2
CVE: CVE-2021-30947
Component: Sandbox
Impact: An application may be able to access a user's files
Description: An access issue was addressed with additional sandbox restrictions.
apple
CVE-2021-30911P4MEDIUMCVSS 5.5v11.6.12021-10-25
CVE-2021-30911 [MEDIUM] CVE-2021-30911: macOS Big Sur 11.6.1
Apple Security Update: About the security content of macOS Big Sur 11.6.1
Product: macOS Big Sur
Version: 11.6.1
CVE: CVE-2021-30911
Component: Model I/O
Impact: Processing a maliciously crafted USD file may disclose memory contents
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-30686P4MEDIUMCVSS 5.5v11.42021-05-24
CVE-2021-30686 [MEDIUM] CVE-2021-30686: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30686
Component: CoreAudio
Impact: Processing a maliciously crafted audio file may disclose restricted memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-1846P4MEDIUMCVSS 5.5v11.32021-04-26
CVE-2021-1846 [MEDIUM] CVE-2021-1846: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-1846
Component: CoreAudio
Impact: Processing a maliciously crafted audio file may disclose restricted memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-30706P4MEDIUMCVSS 5.5v11.42021-05-24
CVE-2021-30706 [MEDIUM] CVE-2021-30706: macOS Big Sur 11.4
Apple Security Update: About the security content of macOS Big Sur 11.4
Product: macOS Big Sur
Version: 11.4
CVE: CVE-2021-30706
Component: ImageIO
Impact: This issue was addressed with improved checks
Description: Processing a maliciously crafted image may lead to disclosure of user information.
apple
CVE-2021-30819P4MEDIUMCVSS 5.5v11.62021-09-13
CVE-2021-30819 [MEDIUM] CVE-2021-30819: macOS Big Sur 11.6
Apple Security Update: About the security content of macOS Big Sur 11.6
Product: macOS Big Sur
Version: 11.6
CVE: CVE-2021-30819
Component: CVE-2021-30819
apple
CVE-2022-26746P4MEDIUMCVSS 5.5v11.6.62022-05-16
CVE-2022-26746 [MEDIUM] CVE-2022-26746: macOS Big Sur 11.6.6
Apple Security Update: About the security content of macOS Big Sur 11.6.6
Product: macOS Big Sur
Version: 11.6.6
CVE: CVE-2022-26746
Component: Printing
Impact: A malicious application may be able to bypass Privacy preferences
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2021-1815P4MEDIUMCVSS 5.5v11.32021-04-26
CVE-2021-1815 [MEDIUM] CVE-2021-1815: macOS Big Sur 11.3
Apple Security Update: About the security content of macOS Big Sur 11.3
Product: macOS Big Sur
Version: 11.3
CVE: CVE-2021-1815
Component: Preferences
Impact: A local user may be able to modify protected parts of the file system
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2022-42789P4MEDIUMCVSS 5.5v11.72022-09-12
CVE-2022-42789 [MEDIUM] CVE-2022-42789: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-42789
Component: AppleMobileFileIntegrity
Impact: An app may be able to access user-sensitive data
Description: An issue in code signature validation was addressed with improved checks.
apple
CVE-2022-42790P4MEDIUMCVSS 5.5v11.72022-09-12
CVE-2022-42790 [MEDIUM] CVE-2022-42790: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-42790
Component: Sidecar
Impact: A user may be able to view restricted content from the lock screen
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30767P4MEDIUMCVSS 5.5v11.6.22021-12-13
CVE-2021-30767 [MEDIUM] CVE-2021-30767: macOS Big Sur 11.6.2
Apple Security Update: About the security content of macOS Big Sur 11.6.2
Product: macOS Big Sur
Version: 11.6.2
CVE: CVE-2021-30767
Component: TCC
Impact: A local user may be able to modify protected parts of the file system
Description: A logic issue was addressed with improved state management.
apple
CVE-2022-32854P4MEDIUMCVSS 5.5v11.72022-09-12
CVE-2022-32854 [MEDIUM] CVE-2022-32854: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-32854
Component: Contacts
Impact: An app may be able to bypass Privacy preferences
Description: This issue was addressed with improved checks.
apple
CVE-2023-32382P4MEDIUMCVSS 5.5v11.7.72023-05-18
CVE-2023-32382 [MEDIUM] CVE-2023-32382: macOS Big Sur 11.7.7
Apple Security Update: About the security content of macOS Big Sur 11.7.7
Product: macOS Big Sur
Version: 11.7.7
CVE: CVE-2023-32382
Component: Model I/O
Impact: Processing a 3D model may result in disclosure of process memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2022-32902P4MEDIUMCVSS 5.5v11.72022-09-12
CVE-2022-32902 [MEDIUM] CVE-2022-32902: macOS Big Sur 11.7
Apple Security Update: About the security content of macOS Big Sur 11.7
Product: macOS Big Sur
Version: 11.7
CVE: CVE-2022-32902
Component: ATS
Impact: An app may be able to bypass Privacy preferences
Description: A logic issue was addressed with improved state management.
apple
CVE-2023-32403P4MEDIUMCVSS 5.5v11.7.72023-05-18
CVE-2023-32403 [MEDIUM] CVE-2023-32403: macOS Big Sur 11.7.7
Apple Security Update: About the security content of macOS Big Sur 11.7.7
Product: macOS Big Sur
Version: 11.7.7
CVE: CVE-2023-32403
Component: NetworkExtension
Impact: An app may be able to read sensitive location information
Description: This issue was addressed with improved redaction of sensitive information.
apple