Apple Macos Sonoma vulnerabilities

959 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 41 of 48
CVE-2023-40423HIGHCVSS 7.8v14.12023-10-25
CVE-2023-40423 [HIGH] CVE-2023-40423: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-40423 Component: IOTextEncryptionFamily Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40447HIGHCVSS 8.8v14.12023-10-25
CVE-2023-40447 [HIGH] CVE-2023-40447: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-40447 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40446HIGHCVSS 7.8v14.12023-10-25
CVE-2023-40446 [HIGH] CVE-2023-40446: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-40446 Component: LaunchServices Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved permissions logic.
apple
CVE-2023-4752HIGHCVSS 7.8v14.12023-10-25
CVE-2023-4752 [HIGH] CVE-2023-4752: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-4752 Component: CVE-2023-4752
apple
CVE-2023-4736HIGHCVSS 7.8v14.12023-10-25
CVE-2023-4736 [HIGH] CVE-2023-4736: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-4736 Component: CVE-2023-4736
apple
CVE-2023-42844HIGHCVSS 7.5v14.12023-10-25
CVE-2023-42844 [HIGH] CVE-2023-42844: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42844 Component: Foundation Impact: A website may be able to access sensitive user data when resolving symlinks Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2023-42853MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42853 [MEDIUM] CVE-2023-42853: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42853 Component: PackageKit Impact: An app may be able to access user-sensitive data Description: A logic issue was addressed with improved checks.
apple
CVE-2023-42840MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42840 [MEDIUM] CVE-2023-42840: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42840 Component: PackageKit Impact: An app may be able to access user-sensitive data Description: The issue was addressed with improved checks.
apple
CVE-2023-41975MEDIUMCVSS 4.3v14.12023-10-25
CVE-2023-41975 [MEDIUM] CVE-2023-41975: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-41975 Component: WindowServer Impact: A website may be able to access the microphone without the microphone use indicator being shown Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-40449MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-40449 [MEDIUM] CVE-2023-40449: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-40449 Component: CoreAnimation Impact: An app may be able to cause a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42935MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42935 [MEDIUM] CVE-2023-42935: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42935 Component: LoginWindow Impact: A local attacker may be able to view the previous logged in user’s desktop from the fast user switching screen Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-30774MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-30774 [MEDIUM] CVE-2023-30774: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-30774 Component: CVE-2023-30774
apple
CVE-2023-42952MEDIUMCVSS 4.4v14.12023-10-25
CVE-2023-42952 [MEDIUM] CVE-2023-42952: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42952 Component: Automation Impact: An app with root privileges may be able to access private information Description: The issue was addressed with improved checks.
apple
CVE-2023-42860MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42860 [MEDIUM] CVE-2023-42860: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42860 Component: PackageKit Impact: An app may be able to modify protected parts of the file system Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2023-41983MEDIUMCVSS 6.5v14.12023-10-25
CVE-2023-41983 [MEDIUM] CVE-2023-41983: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-41983 Component: WebKit Process Model Impact: Processing web content may lead to a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40416MEDIUMCVSS 6.5v14.12023-10-25
CVE-2023-40416 [MEDIUM] CVE-2023-40416: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-40416 Component: ImageIO Impact: Processing an image may result in disclosure of process memory Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42945MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42945 [MEDIUM] CVE-2023-42945: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42945 Component: CVE-2023-42945
apple
CVE-2023-42834MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42834 [MEDIUM] CVE-2023-42834: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42834 Component: Find My Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved handling of files.
apple
CVE-2023-42843MEDIUMCVSS 4.3v14.12023-10-25
CVE-2023-42843 [MEDIUM] CVE-2023-42843: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42843 Component: WebKit Impact: Visiting a malicious website may lead to address bar spoofing Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2023-42850MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42850 [MEDIUM] CVE-2023-42850: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42850 Component: LaunchServices Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved permissions logic.
apple