Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 22 of 48
CVE-2024-44257MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44257 [MEDIUM] CVE-2024-44257: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44257
Component: WindowServer
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-44294MEDIUMCVSS 6.5v14.7.12024-10-28
CVE-2024-44294 [MEDIUM] CVE-2024-44294: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44294
Component: PackageKit
Impact: An attacker with root privileges may be able to delete protected system files
Description: A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges.
apple
CVE-2024-44239MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44239 [MEDIUM] CVE-2024-44239: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44239
Component: Kernel
Impact: An app may be able to leak sensitive kernel state
Description: An information disclosure issue was addressed with improved private data redaction for log entries.
apple
CVE-2024-44297MEDIUMCVSS 6.5v14.7.12024-10-28
CVE-2024-44297 [MEDIUM] CVE-2024-44297: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44297
Component: ImageIO
Impact: Processing a maliciously crafted message may lead to a denial-of-service
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-44267MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44267 [MEDIUM] CVE-2024-44267: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44267
Component: PackageKit
Impact: A malicious application may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2024-44196MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44196 [MEDIUM] CVE-2024-44196: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44196
Component: PackageKit
Impact: An app may be able to modify protected parts of the file system
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-44236MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44236 [MEDIUM] CVE-2024-44236: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44236
Component: Shortcuts
Impact: A malicious app may use shortcuts to access restricted files
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44301MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44301 [MEDIUM] CVE-2024-44301: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44301
Component: PackageKit
Impact: A malicious application may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2024-44280MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44280 [MEDIUM] CVE-2024-44280: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44280
Component: AppleMobileFileIntegrity
Impact: An app may be able to modify protected parts of the file system
Description: A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
apple
CVE-2024-54471MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-54471 [MEDIUM] CVE-2024-54471: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-54471
Component: NetAuth
Impact: A malicious application may be able to leak a user's credentials
Description: This issue was addressed with additional entitlement checks.
apple
CVE-2024-44275MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44275 [MEDIUM] CVE-2024-44275: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44275
Component: PackageKit
Impact: A malicious application may be able to modify protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2024-44282MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44282 [MEDIUM] CVE-2024-44282: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44282
Component: Foundation
Impact: Parsing a file may lead to disclosure of user information
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2024-44269MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44269 [MEDIUM] CVE-2024-44269: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44269
Component: Shortcuts
Impact: A malicious app may use shortcuts to access restricted files
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44279MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44279 [MEDIUM] CVE-2024-44279: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44279
Component: Shortcuts
Impact: A malicious app may use shortcuts to access restricted files
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44273MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44273 [MEDIUM] CVE-2024-44273: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44273
Component: CoreMedia Playback
Impact: A malicious app may be able to access private information
Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2024-44240MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44240 [MEDIUM] CVE-2024-44240: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44240
Component: CoreText
Impact: Processing a maliciously crafted font may result in the disclosure of process memory
Description: The issue was addressed with improved checks.
apple
CVE-2024-44237MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44237 [MEDIUM] CVE-2024-44237: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44237
Component: Shortcuts
Impact: A malicious app may use shortcuts to access restricted files
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44283MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44283 [MEDIUM] CVE-2024-44283: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44283
Component: Shortcuts
Impact: A malicious app may use shortcuts to access restricted files
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44284MEDIUMCVSS 5.5v14.7.12024-10-28
CVE-2024-44284 [MEDIUM] CVE-2024-44284: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44284
Component: Shortcuts
Impact: A malicious app may use shortcuts to access restricted files
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44137MEDIUMCVSS 4.6v14.7.12024-10-28
CVE-2024-44137 [MEDIUM] CVE-2024-44137: macOS Sonoma 14.7.1
Apple Security Update: About the security content of macOS Sonoma 14.7.1
Product: macOS Sonoma
Version: 14.7.1
CVE: CVE-2024-44137
Component: Screen Capture
Impact: An attacker with physical access may be able to share items from the lock screen
Description: The issue was addressed with improved checks.
apple