Vulnerabilities > Apple > MAC OS X > 10.13

DATE CVE VULNERABILITY TITLE RISK
2019-01-11 CVE-2018-4254 Improper Input Validation vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, an input validation issue existed in the kernel.
network
low complexity
apple CWE-20
critical
10.0
2019-01-11 CVE-2018-4217 Information Exposure vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, a privacy issue in the handling of Open Directory records was addressed with improved indexing.
network
low complexity
apple CWE-200
5.0
2019-01-11 CVE-2018-4185 Information Exposure vulnerability in Apple products
In iOS before 11.3, tvOS before 11.3, watchOS before 4.3, and macOS before High Sierra 10.13.4, an information disclosure issue existed in the transition of program state.
network
low complexity
apple CWE-200
5.0
2019-01-11 CVE-2018-4183 Unspecified vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, an access issue was addressed with additional sandbox restrictions.
local
low complexity
apple
7.2
2019-01-11 CVE-2018-4182 Unspecified vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, an access issue was addressed with additional sandbox restrictions on CUPS.
local
low complexity
apple
7.2
2019-01-11 CVE-2018-4181 In macOS High Sierra before 10.13.5, an issue existed in CUPS.
local
low complexity
apple canonical debian
4.9
2019-01-11 CVE-2018-4180 In macOS High Sierra before 10.13.5, an issue existed in CUPS.
local
low complexity
apple debian canonical
4.6
2019-01-11 CVE-2017-13887 Key Management Errors vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.2, a logic issue existed in APFS when deleting keys during hibernation.
network
low complexity
apple CWE-320
5.0
2019-01-11 CVE-2017-13886 Unspecified vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.2, an access issue existed with privileged WiFi system configuration.
network
low complexity
apple
4.0
2018-12-07 CVE-2018-18313 Out-of-bounds Read vulnerability in multiple products
Perl before 5.26.3 has a buffer over-read via a crafted regular expression that triggers disclosure of sensitive information from process memory.
network
low complexity
perl canonical debian redhat netapp apple CWE-125
critical
9.1