Apple Macos Big Sur vulnerabilities

555 known vulnerabilities affecting apple/macos_big_sur.

Total CVEs
555
CISA KEV
19
actively exploited
Public exploits
4
Exploited in wild
19
Severity breakdown
CRITICAL31HIGH291MEDIUM214LOW18UNKNOWN1

Vulnerabilities

Page 8 of 28
CVE-2022-42825MEDIUMCVSS 5.5v11.7.12022-10-24
CVE-2022-42825 [MEDIUM] CVE-2022-42825: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-42825 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed by removing additional entitlements.
apple
CVE-2022-42860MEDIUMCVSS 5.5v11.7.12022-10-24
CVE-2022-42860 [MEDIUM] CVE-2022-42860: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-42860 Component: Boot Camp Impact: An app may be able to modify protected parts of the file system Description: This issue was addressed with improved checks to prevent unauthorized actions.
apple
CVE-2022-46713MEDIUMCVSS 4.7v11.7.12022-10-24
CVE-2022-46713 [MEDIUM] CVE-2022-46713: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-46713 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A race condition was addressed with additional validation.
apple
CVE-2022-42798MEDIUMCVSS 5.5v11.7.12022-10-24
CVE-2022-42798 [MEDIUM] CVE-2022-42798: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-42798 Component: Audio Impact: Parsing a maliciously crafted audio file may lead to disclosure of user information Description: The issue was addressed with improved memory handling.
apple
CVE-2022-32862MEDIUMCVSS 5.5v11.7.12022-10-24
CVE-2022-32862 [MEDIUM] CVE-2022-32862: macOS Big Sur 11.7.1 Apple Security Update: About the security content of macOS Big Sur 11.7.1 Product: macOS Big Sur Version: 11.7.1 CVE: CVE-2022-32862 Component: Sandbox Impact: An app with root privileges may be able to access private information Description: This issue was addressed with improved data protection.
apple
CVE-2022-32888HIGHCVSS 8.8v11.72022-09-12
CVE-2022-32888 [HIGH] CVE-2022-32888: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32888 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2022-32917HIGHCVSS 7.8KEVv11.72022-09-12
CVE-2022-32917 [HIGH] CVE-2022-32917: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32917 Component: Kernel Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited. Description: The issue was addressed with improved bounds checks.
apple
CVE-2022-32914HIGHCVSS 7.8v11.72022-09-12
CVE-2022-32914 [HIGH] CVE-2022-32914: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32914 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A use after free issue was addressed with improved memory management.
apple
CVE-2022-46701HIGHCVSS 7.8v11.72022-09-12
CVE-2022-46701 [HIGH] CVE-2022-46701: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-46701 Component: Kernel Impact: Connecting to a malicious NFS server may lead to arbitrary code execution with kernel privileges Description: The issue was addressed with improved bounds checks.
apple
CVE-2022-32934HIGHCVSS 8.8v11.72022-09-12
CVE-2022-32934 [HIGH] CVE-2022-32934: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32934 Component: SMB Impact: A remote user may be able to cause kernel code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2022-32900HIGHCVSS 7.8v11.72022-09-12
CVE-2022-32900 [HIGH] CVE-2022-32900: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32900 Component: PackageKit Impact: An app may be able to gain elevated privileges Description: A logic issue was addressed with improved state management.
apple
CVE-2022-2042HIGHCVSS 7.8v11.72022-09-12
CVE-2022-2042 [HIGH] CVE-2022-2042: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-2042 Component: CVE-2022-2042
apple
CVE-2022-2125HIGHCVSS 7.8v11.72022-09-12
CVE-2022-2125 [HIGH] CVE-2022-2125: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-2125 Component: CVE-2022-2125
apple
CVE-2022-32911HIGHCVSS 7.8v11.72022-09-12
CVE-2022-32911 [HIGH] CVE-2022-32911: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32911 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2022-32866HIGHCVSS 7.8v11.72022-09-12
CVE-2022-32866 [HIGH] CVE-2022-32866: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32866 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2022-2000HIGHCVSS 7.8v11.72022-09-12
CVE-2022-2000 [HIGH] CVE-2022-2000: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-2000 Component: CVE-2022-2000
apple
CVE-2022-32894HIGHCVSS 7.8KEVv11.72022-09-12
CVE-2022-32894 [HIGH] CVE-2022-32894: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32894 Component: Kernel Impact: An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited. Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2022-2124HIGHCVSS 7.8v11.72022-09-12
CVE-2022-2124 [HIGH] CVE-2022-2124: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-2124 Component: CVE-2022-2124
apple
CVE-2022-32924HIGHCVSS 7.8v11.72022-09-12
CVE-2022-32924 [HIGH] CVE-2022-32924: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32924 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2022-32908HIGHCVSS 7.8v11.72022-09-12
CVE-2022-32908 [HIGH] CVE-2022-32908: macOS Big Sur 11.7 Apple Security Update: About the security content of macOS Big Sur 11.7 Product: macOS Big Sur Version: 11.7 CVE: CVE-2022-32908 Component: MediaLibrary Impact: A user may be able to elevate privileges Description: A memory corruption issue was addressed with improved input validation.
apple