Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 37 of 48
CVE-2023-42940MEDIUMCVSS 5.7v14.2.12023-12-19
CVE-2023-42940 [MEDIUM] CVE-2023-42940: macOS Sonoma 14.2.1 Apple Security Update: About the security content of macOS Sonoma 14.2.1 Product: macOS Sonoma Version: 14.2.1 CVE: CVE-2023-42940 Component: WindowServer Impact: A user who shares their screen may unintentionally share the incorrect content Description: A session rendering issue was addressed with improved session tracking.
apple
CVE-2023-38545CRITICALCVSS 9.8v14.22023-12-11
CVE-2023-38545 [CRITICAL] CVE-2023-38545: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-38545 Component: CVE-2023-38545
apple
CVE-2023-42911HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42911 [HIGH] CVE-2023-42911: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42911 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42910HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42910 [HIGH] CVE-2023-42910: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42910 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42906HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42906 [HIGH] CVE-2023-42906: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42906 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-5344HIGHCVSS 7.5v14.22023-12-11
CVE-2023-5344 [HIGH] CVE-2023-5344: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-5344 Component: CVE-2023-5344
apple
CVE-2023-42890HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42890 [HIGH] CVE-2023-42890: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42890 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42912HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42912 [HIGH] CVE-2023-42912: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42912 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42882HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42882 [HIGH] CVE-2023-42882: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42882 Component: AppleVA Impact: Processing an image may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42947HIGHCVSS 8.6v14.22023-12-11
CVE-2023-42947 [HIGH] CVE-2023-42947: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42947 Component: TCC Impact: An app may be able to break out of its sandbox Description: A path handling issue was addressed with improved validation.
apple
CVE-2023-42901HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42901 [HIGH] CVE-2023-42901: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42901 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42907HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42907 [HIGH] CVE-2023-42907: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42907 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42908HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42908 [HIGH] CVE-2023-42908: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42908 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42950HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42950 [HIGH] CVE-2023-42950: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42950 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2023-42892HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42892 [HIGH] CVE-2023-42892: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42892 Component: FileURL Impact: A local attacker may be able to elevate their privileges Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-38039HIGHCVSS 7.5v14.22023-12-11
CVE-2023-38039 [HIGH] CVE-2023-38039: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-38039 Component: CVE-2023-38039
apple
CVE-2023-42931HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42931 [HIGH] CVE-2023-42931: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42931 Component: DiskArbitration Impact: A process may gain admin privileges without proper authentication Description: The issue was addressed with improved checks.
apple
CVE-2023-42926HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42926 [HIGH] CVE-2023-42926: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42926 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42881HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42881 [HIGH] CVE-2023-42881: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42881 Component: AppleVA Impact: Processing a file may lead to unexpected app termination or arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42902HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42902 [HIGH] CVE-2023-42902: macOS Sonoma 14.2 Apple Security Update: About the security content of macOS Sonoma 14.2 Product: macOS Sonoma Version: 14.2 CVE: CVE-2023-42902 Component: AppleGraphicsControl Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple