Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Macos
(Apple)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 1587 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-07-29 | CVE-2024-40774 | A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, macOS Sonoma 14.6. An app may be able to bypass Privacy preferences. | Ipados, Iphone_os, Macos, Tvos, Watchos | 7.1 | ||
2023-02-09 | CVE-2022-43552 | A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path. | Macos, Curl, Universal_forwarder | 5.9 | ||
2024-07-29 | CVE-2024-27887 | A path handling issue was addressed with improved validation. This issue is fixed in macOS Sonoma 14.4. An app may be able to access user-sensitive data. | Macos | 5.5 | ||
2024-07-29 | CVE-2024-40776 | A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing maliciously crafted web content may lead to an unexpected process crash. | Ipados, Iphone_os, Macos, Safari, Tvos, Visionos, Watchos | 4.3 | ||
2024-07-29 | CVE-2024-40780 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing maliciously crafted web content may lead to an unexpected process crash. | Ipados, Iphone_os, Macos, Safari, Tvos, Visionos, Watchos | 5.5 | ||
2024-07-29 | CVE-2024-40788 | A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. A local attacker may be able to cause unexpected system shutdown. | Ipados, Iphone_os, Macos, Tvos, Visionos, Watchos | 5.5 | ||
2024-07-29 | CVE-2024-40833 | A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6, iOS 16.7.9 and iPadOS 16.7.9, macOS Monterey 12.7.6, macOS Ventura 13.6.8. A shortcut may be able to use sensitive data with certain actions without prompting the user. | Ipados, Iphone_os, Macos | 5.5 | ||
2023-07-27 | CVE-2023-38410 | The issue was addressed with improved checks. This issue is fixed in iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. A user may be able to elevate privileges. | Ipados, Iphone_os, Macos | 7.8 | ||
2023-07-27 | CVE-2023-32418 | The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.6.8, macOS Ventura 13.5, macOS Big Sur 11.7.9. Processing a file may lead to unexpected app termination or arbitrary code execution. | Macos | 7.8 | ||
2024-01-23 | CVE-2024-23208 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An app may be able to execute arbitrary code with kernel privileges. | Ipados, Iphone_os, Macos, Tvos, Watchos | 7.8 |