Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 37 of 48
CVE-2023-42940MEDIUMCVSS 5.7v14.2.12023-12-19
CVE-2023-42940 [MEDIUM] CVE-2023-42940: macOS Sonoma 14.2.1
Apple Security Update: About the security content of macOS Sonoma 14.2.1
Product: macOS Sonoma
Version: 14.2.1
CVE: CVE-2023-42940
Component: WindowServer
Impact: A user who shares their screen may unintentionally share the incorrect content
Description: A session rendering issue was addressed with improved session tracking.
apple
CVE-2023-38545CRITICALCVSS 9.8v14.22023-12-11
CVE-2023-38545 [CRITICAL] CVE-2023-38545: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-38545
Component: CVE-2023-38545
apple
CVE-2023-42911HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42911 [HIGH] CVE-2023-42911: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42911
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42910HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42910 [HIGH] CVE-2023-42910: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42910
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42906HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42906 [HIGH] CVE-2023-42906: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42906
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-5344HIGHCVSS 7.5v14.22023-12-11
CVE-2023-5344 [HIGH] CVE-2023-5344: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-5344
Component: CVE-2023-5344
apple
CVE-2023-42890HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42890 [HIGH] CVE-2023-42890: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42890
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42912HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42912 [HIGH] CVE-2023-42912: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42912
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42882HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42882 [HIGH] CVE-2023-42882: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42882
Component: AppleVA
Impact: Processing an image may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42947HIGHCVSS 8.6v14.22023-12-11
CVE-2023-42947 [HIGH] CVE-2023-42947: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42947
Component: TCC
Impact: An app may be able to break out of its sandbox
Description: A path handling issue was addressed with improved validation.
apple
CVE-2023-42901HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42901 [HIGH] CVE-2023-42901: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42901
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42907HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42907 [HIGH] CVE-2023-42907: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42907
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42908HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42908 [HIGH] CVE-2023-42908: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42908
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42950HIGHCVSS 8.8v14.22023-12-11
CVE-2023-42950 [HIGH] CVE-2023-42950: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42950
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2023-42892HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42892 [HIGH] CVE-2023-42892: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42892
Component: FileURL
Impact: A local attacker may be able to elevate their privileges
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-38039HIGHCVSS 7.5v14.22023-12-11
CVE-2023-38039 [HIGH] CVE-2023-38039: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-38039
Component: CVE-2023-38039
apple
CVE-2023-42931HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42931 [HIGH] CVE-2023-42931: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42931
Component: DiskArbitration
Impact: A process may gain admin privileges without proper authentication
Description: The issue was addressed with improved checks.
apple
CVE-2023-42926HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42926 [HIGH] CVE-2023-42926: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42926
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2023-42881HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42881 [HIGH] CVE-2023-42881: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42881
Component: AppleVA
Impact: Processing a file may lead to unexpected app termination or arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42902HIGHCVSS 7.8v14.22023-12-11
CVE-2023-42902 [HIGH] CVE-2023-42902: macOS Sonoma 14.2
Apple Security Update: About the security content of macOS Sonoma 14.2
Product: macOS Sonoma
Version: 14.2
CVE: CVE-2023-42902
Component: AppleGraphicsControl
Impact: Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple