Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 22 of 48
CVE-2024-44257MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44257 [MEDIUM] CVE-2024-44257: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44257 Component: WindowServer Impact: An app may be able to access sensitive user data Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-44294MEDIUMCVSS 6.5v14.7.12024-10-28
CVE-2024-44294 [MEDIUM] CVE-2024-44294: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44294 Component: PackageKit Impact: An attacker with root privileges may be able to delete protected system files Description: A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges.
apple
CVE-2024-44239MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44239 [MEDIUM] CVE-2024-44239: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44239 Component: Kernel Impact: An app may be able to leak sensitive kernel state Description: An information disclosure issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-44297MEDIUMCVSS 6.5v14.7.12024-10-28
CVE-2024-44297 [MEDIUM] CVE-2024-44297: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44297 Component: ImageIO Impact: Processing a maliciously crafted message may lead to a denial-of-service Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-44267MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44267 [MEDIUM] CVE-2024-44267: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44267 Component: PackageKit Impact: A malicious application may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2024-44196MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44196 [MEDIUM] CVE-2024-44196: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44196 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-44236MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44236 [MEDIUM] CVE-2024-44236: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44236 Component: Shortcuts Impact: A malicious app may use shortcuts to access restricted files Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44301MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44301 [MEDIUM] CVE-2024-44301: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44301 Component: PackageKit Impact: A malicious application may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2024-44280MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44280 [MEDIUM] CVE-2024-44280: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44280 Component: AppleMobileFileIntegrity Impact: An app may be able to modify protected parts of the file system Description: A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
apple
CVE-2024-54471MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-54471 [MEDIUM] CVE-2024-54471: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-54471 Component: NetAuth Impact: A malicious application may be able to leak a user's credentials Description: This issue was addressed with additional entitlement checks.
apple
CVE-2024-44275MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44275 [MEDIUM] CVE-2024-44275: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44275 Component: PackageKit Impact: A malicious application may be able to modify protected parts of the file system Description: The issue was addressed with improved checks.
apple
CVE-2024-44282MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44282 [MEDIUM] CVE-2024-44282: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44282 Component: Foundation Impact: Parsing a file may lead to disclosure of user information Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2024-44269MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44269 [MEDIUM] CVE-2024-44269: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44269 Component: Shortcuts Impact: A malicious app may use shortcuts to access restricted files Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44279MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44279 [MEDIUM] CVE-2024-44279: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44279 Component: Shortcuts Impact: A malicious app may use shortcuts to access restricted files Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44273MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44273 [MEDIUM] CVE-2024-44273: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44273 Component: CoreMedia Playback Impact: A malicious app may be able to access private information Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2024-44240MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44240 [MEDIUM] CVE-2024-44240: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44240 Component: CoreText Impact: Processing a maliciously crafted font may result in the disclosure of process memory Description: The issue was addressed with improved checks.
apple
CVE-2024-44237MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44237 [MEDIUM] CVE-2024-44237: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44237 Component: Shortcuts Impact: A malicious app may use shortcuts to access restricted files Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44283MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44283 [MEDIUM] CVE-2024-44283: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44283 Component: Shortcuts Impact: A malicious app may use shortcuts to access restricted files Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44284MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44284 [MEDIUM] CVE-2024-44284: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44284 Component: Shortcuts Impact: A malicious app may use shortcuts to access restricted files Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44137MEDIUMCVSS 4.6v14.7.12024-10-28
CVE-2024-44137 [MEDIUM] CVE-2024-44137: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44137 Component: Screen Capture Impact: An attacker with physical access may be able to share items from the lock screen Description: The issue was addressed with improved checks.
apple