Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 4 of 48
CVE-2025-43518LOWCVSS 3.3v14.8.32025-12-12
CVE-2025-43518 [LOW] CVE-2025-43518: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43518
Component: Foundation
Impact: An app may be able to inappropriately access files through the spellcheck API
Description: A logic issue was addressed with improved checks.
apple
CVE-2025-43516LOWCVSS 3.3v14.8.32025-12-12
CVE-2025-43516 [LOW] CVE-2025-43516: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43516
Component: Voice Control
Impact: A user with Voice Control enabled may be able to transcribe another user's activity
Description: A session management issue was addressed with improved checks.
apple
CVE-2025-43532LOWCVSS 2.8v14.8.32025-12-12
CVE-2025-43532 [LOW] CVE-2025-43532: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43532
Component: Foundation
Impact: Processing malicious data may lead to unexpected app termination
Description: A memory corruption issue was addressed with improved bounds checking.
apple
CVE-2025-43517LOWCVSS 3.3v14.8.32025-12-12
CVE-2025-43517 [LOW] CVE-2025-43517: macOS Sonoma 14.8.3
Apple Security Update: About the security content of macOS Sonoma 14.8.3
Product: macOS Sonoma
Version: 14.8.3
CVE: CVE-2025-43517
Component: Call History
Impact: An app may be able to access protected user data
Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2025-43510HIGHCVSS 7.8KEVv14.8.22025-11-03
CVE-2025-43510 [HIGH] CVE-2025-43510: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43510
Component: Kernel
Impact: A malicious application may cause unexpected changes in memory shared between processes
Description: A memory corruption issue was addressed with improved lock state checking.
apple
CVE-2025-43472HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43472 [HIGH] CVE-2025-43472: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43472
Component: Audio
Impact: A malicious app may be able to read kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43474HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43474 [HIGH] CVE-2025-43474: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43474
Component: GPU Drivers
Impact: An app may be able to cause unexpected system termination or read kernel memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2025-43494HIGHCVSS 7.5v14.8.22025-11-03
CVE-2025-43494 [HIGH] CVE-2025-43494: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43494
Component: Mail
Impact: An attacker may be able to cause a persistent denial-of-service
Description: A mail header parsing issue was addressed with improved checks.
apple
CVE-2025-43405HIGHCVSS 7.5v14.8.22025-11-03
CVE-2025-43405 [HIGH] CVE-2025-43405: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43405
Component: Photos
Impact: An app may be able to access user-sensitive data
Description: A permissions issue was addressed with additional sandbox restrictions.
apple
CVE-2025-43476HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43476 [HIGH] CVE-2025-43476: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43476
Component: SharedFileList
Impact: An app may be able to break out of its sandbox
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2025-43338HIGHCVSS 7.1v14.8.22025-11-03
CVE-2025-43338 [HIGH] CVE-2025-43338: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43338
Component: ImageIO
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2025-43413HIGHCVSS 7.5v14.8.22025-11-03
CVE-2025-43413 [HIGH] CVE-2025-43413: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43413
Component: Kernel
Impact: A malicious application may be able to cause unexpected system termination or write kernel memory
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2025-43401HIGHCVSS 7.5v14.8.22025-11-03
CVE-2025-43401 [HIGH] CVE-2025-43401: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43401
Component: CoreAnimation
Impact: A remote attacker may be able to cause a denial-of-service
Description: A denial-of-service issue was addressed with improved validation.
apple
CVE-2025-43373HIGHCVSS 7.5v14.8.22025-11-03
CVE-2025-43373 [HIGH] CVE-2025-43373: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43373
Component: Wi-Fi
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2025-43372HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43372 [HIGH] CVE-2025-43372: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43372
Component: ImageIO
Impact: Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process memory
Description: The issue was addressed with improved input validation.
apple
CVE-2025-43407HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43407 [HIGH] CVE-2025-43407: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43407
Component: Assets
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed with improved entitlements.
apple
CVE-2025-43361HIGHCVSS 7.8v14.8.22025-11-03
CVE-2025-43361 [HIGH] CVE-2025-43361: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43361
Component: Audio
Impact: A malicious app may be able to read kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43394MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43394 [MEDIUM] CVE-2025-43394: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43394
Component: Audio
Impact: A malicious app may be able to read kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2025-43382MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43382 [MEDIUM] CVE-2025-43382: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43382
Component: CoreServices
Impact: An app may be able to access sensitive user data
Description: A parsing issue in the handling of directory paths was addressed with improved path validation.
apple
CVE-2025-43379MEDIUMCVSS 5.5v14.8.22025-11-03
CVE-2025-43379 [MEDIUM] CVE-2025-43379: macOS Sonoma 14.8.2
Apple Security Update: About the security content of macOS Sonoma 14.8.2
Product: macOS Sonoma
Version: 14.8.2
CVE: CVE-2025-43379
Component: AppleMobileFileIntegrity
Impact: An app may be able to access protected user data
Description: This issue was addressed with improved validation of symlinks.
apple