Apple Macos Big Sur vulnerabilities

555 known vulnerabilities affecting apple/macos_big_sur.

Total CVEs
555
CISA KEV
19
actively exploited
Public exploits
4
Exploited in wild
19
Severity breakdown
CRITICAL31HIGH291MEDIUM214LOW18UNKNOWN1

Vulnerabilities

Page 7 of 28
CVE-2022-42834LOWCVSS 3.3v11.7.32023-01-23
CVE-2022-42834 [LOW] CVE-2022-42834: macOS Big Sur 11.7.3 Apple Security Update: About the security content of macOS Big Sur 11.7.3 Product: macOS Big Sur Version: 11.7.3 CVE: CVE-2022-42834 Component: Mail Impact: An app may be able to access mail folder attachments through a temporary directory used during compression Description: An access issue was addressed with improved access restrictions.
apple
CVE-2022-42842CRITICALCVSS 9.8v11.7.22022-12-13
CVE-2022-42842 [CRITICAL] CVE-2022-42842: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-42842 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2022-40304HIGHCVSS 7.8v11.7.22022-12-13
CVE-2022-40304 [HIGH] CVE-2022-40304: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-40304 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2022-42840HIGHCVSS 7.8v11.7.22022-12-13
CVE-2022-42840 [HIGH] CVE-2022-42840: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-42840 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A logic issue was addressed with improved state management.
apple
CVE-2022-32942HIGHCVSS 7.8v11.7.22022-12-13
CVE-2022-32942 [HIGH] CVE-2022-32942: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-32942 Component: DriverKit Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2022-42841HIGHCVSS 7.8v11.7.22022-12-13
CVE-2022-42841 [HIGH] CVE-2022-42841: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-42841 Component: TCC Impact: An app may be able to read sensitive location information Description: A logic issue was addressed with improved restrictions.
apple
CVE-2022-42845HIGHCVSS 7.2v11.7.22022-12-13
CVE-2022-42845 [HIGH] CVE-2022-42845: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-42845 Component: Kernel Impact: An app with root privileges may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2022-46689HIGHCVSS 7.0PoCv11.7.22022-12-13
CVE-2022-46689 [HIGH] CVE-2022-46689: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-46689 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with additional validation.
apple
CVE-2022-42864HIGHCVSS 7.0v11.7.22022-12-13
CVE-2022-42864 [HIGH] CVE-2022-42864: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-42864 Component: IOHIDFamily Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with improved state handling.
apple
CVE-2022-40303HIGHCVSS 7.5v11.7.22022-12-13
CVE-2022-40303 [HIGH] CVE-2022-40303: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-40303 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2022-42821MEDIUMCVSS 5.5v11.7.22022-12-13
CVE-2022-42821 [MEDIUM] CVE-2022-42821: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-42821 Component: BOM Impact: An app may bypass Gatekeeper checks Description: A logic issue was addressed with improved checks.
apple
CVE-2022-42865MEDIUMCVSS 5.5v11.7.22022-12-13
CVE-2022-42865 [MEDIUM] CVE-2022-42865: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-42865 Component: AppleMobileFileIntegrity Impact: An app may be able to bypass Privacy preferences Description: This issue was addressed by enabling hardened runtime.
apple
CVE-2022-46718MEDIUMCVSS 5.5v11.7.22022-12-13
CVE-2022-46718 [MEDIUM] CVE-2022-46718: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-46718 Component: TCC Impact: An app may be able to read sensitive location information Description: A logic issue was addressed with improved restrictions.
apple
CVE-2022-46704MEDIUMCVSS 5.5v11.7.22022-12-13
CVE-2022-46704 [MEDIUM] CVE-2022-46704: macOS Big Sur 11.7.2 Apple Security Update: About the security content of macOS Big Sur 11.7.2 Product: macOS Big Sur Version: 11.7.2 CVE: CVE-2022-46704 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A logic issue was addressed with improved state management.
apple
CVE-2022-46723CRITICALCVSS 9.8v11.7.12022-10-24
CVE-2022-46723 [CRITICAL] CVE-2022-46723: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-46723 Component: Calendar Impact: A remote user may be able to write arbitrary files Description: This issue was addressed with improved checks.
apple
CVE-2022-32941CRITICALCVSS 9.8v11.7.12022-10-24
CVE-2022-32941 [CRITICAL] CVE-2022-32941: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-32941 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A race condition was addressed with additional validation.
apple
CVE-2022-37434CRITICALCVSS 9.8v11.7.12022-10-24
CVE-2022-37434 [CRITICAL] CVE-2022-37434: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-37434 Component: Sandbox Impact: An app with root privileges may be able to access private information Description: This issue was addressed with improved data protection.
apple
CVE-2022-32944HIGHCVSS 7.8v11.7.12022-10-24
CVE-2022-32944 [HIGH] CVE-2022-32944: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-32944 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2022-42800HIGHCVSS 7.8v11.7.12022-10-24
CVE-2022-42800 [HIGH] CVE-2022-42800: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-42800 Component: Sandbox Impact: An app with root privileges may be able to access private information Description: This issue was addressed with improved data protection.
apple
CVE-2022-28739HIGHCVSS 7.5v11.7.12022-10-24
CVE-2022-28739 [HIGH] CVE-2022-28739: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-28739 Component: CVE-2022-28739
apple