Apple Macos Sonoma vulnerabilities
959 known vulnerabilities affecting apple/macos_sonoma.
Total CVEs
959
CISA KEV
11
actively exploited
Public exploits
3
Exploited in wild
6
Severity breakdown
CRITICAL73HIGH289MEDIUM533LOW63UNKNOWN1
Vulnerabilities
Page 41 of 48
CVE-2023-40423HIGHCVSS 7.8v14.12023-10-25
CVE-2023-40423 [HIGH] CVE-2023-40423: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-40423
Component: IOTextEncryptionFamily
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40447HIGHCVSS 8.8v14.12023-10-25
CVE-2023-40447 [HIGH] CVE-2023-40447: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-40447
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40446HIGHCVSS 7.8v14.12023-10-25
CVE-2023-40446 [HIGH] CVE-2023-40446: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-40446
Component: LaunchServices
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved permissions logic.
apple
CVE-2023-4752HIGHCVSS 7.8v14.12023-10-25
CVE-2023-4752 [HIGH] CVE-2023-4752: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-4752
Component: CVE-2023-4752
apple
CVE-2023-4736HIGHCVSS 7.8v14.12023-10-25
CVE-2023-4736 [HIGH] CVE-2023-4736: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-4736
Component: CVE-2023-4736
apple
CVE-2023-42844HIGHCVSS 7.5v14.12023-10-25
CVE-2023-42844 [HIGH] CVE-2023-42844: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42844
Component: Foundation
Impact: A website may be able to access sensitive user data when resolving symlinks
Description: This issue was addressed with improved handling of symlinks.
apple
CVE-2023-42853MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42853 [MEDIUM] CVE-2023-42853: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42853
Component: PackageKit
Impact: An app may be able to access user-sensitive data
Description: A logic issue was addressed with improved checks.
apple
CVE-2023-42840MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42840 [MEDIUM] CVE-2023-42840: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42840
Component: PackageKit
Impact: An app may be able to access user-sensitive data
Description: The issue was addressed with improved checks.
apple
CVE-2023-41975MEDIUMCVSS 4.3v14.12023-10-25
CVE-2023-41975 [MEDIUM] CVE-2023-41975: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-41975
Component: WindowServer
Impact: A website may be able to access the microphone without the microphone use indicator being shown
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-40449MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-40449 [MEDIUM] CVE-2023-40449: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-40449
Component: CoreAnimation
Impact: An app may be able to cause a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42935MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42935 [MEDIUM] CVE-2023-42935: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42935
Component: LoginWindow
Impact: A local attacker may be able to view the previous logged in user’s desktop from the fast user switching screen
Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-30774MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-30774 [MEDIUM] CVE-2023-30774: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-30774
Component: CVE-2023-30774
apple
CVE-2023-42952MEDIUMCVSS 4.4v14.12023-10-25
CVE-2023-42952 [MEDIUM] CVE-2023-42952: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42952
Component: Automation
Impact: An app with root privileges may be able to access private information
Description: The issue was addressed with improved checks.
apple
CVE-2023-42860MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42860 [MEDIUM] CVE-2023-42860: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42860
Component: PackageKit
Impact: An app may be able to modify protected parts of the file system
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2023-41983MEDIUMCVSS 6.5v14.12023-10-25
CVE-2023-41983 [MEDIUM] CVE-2023-41983: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-41983
Component: WebKit Process Model
Impact: Processing web content may lead to a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40416MEDIUMCVSS 6.5v14.12023-10-25
CVE-2023-40416 [MEDIUM] CVE-2023-40416: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-40416
Component: ImageIO
Impact: Processing an image may result in disclosure of process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42945MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42945 [MEDIUM] CVE-2023-42945: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42945
Component: CVE-2023-42945
apple
CVE-2023-42834MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42834 [MEDIUM] CVE-2023-42834: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42834
Component: Find My
Impact: An app may be able to access sensitive user data
Description: A privacy issue was addressed with improved handling of files.
apple
CVE-2023-42843MEDIUMCVSS 4.3v14.12023-10-25
CVE-2023-42843 [MEDIUM] CVE-2023-42843: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42843
Component: WebKit
Impact: Visiting a malicious website may lead to address bar spoofing
Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2023-42850MEDIUMCVSS 5.5v14.12023-10-25
CVE-2023-42850 [MEDIUM] CVE-2023-42850: macOS Sonoma 14.1
Apple Security Update: About the security content of macOS Sonoma 14.1
Product: macOS Sonoma
Version: 14.1
CVE: CVE-2023-42850
Component: LaunchServices
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved permissions logic.
apple