Vulnerabilities > Apple > MAC OS X > 10.15.3

DATE CVE VULNERABILITY TITLE RISK
2020-04-14 CVE-2020-11758 Out-of-bounds Read vulnerability in multiple products
An issue was discovered in OpenEXR before 2.4.1.
5.5
2020-04-02 CVE-2019-14868 Command Injection vulnerability in multiple products
In ksh version 20120801, a flaw was found in the way it evaluates certain environment variables.
local
low complexity
ksh-project debian apple CWE-77
7.8
2020-04-01 CVE-2020-9785 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
Multiple memory corruption issues were addressed with improved state management.
network
apple CWE-119
critical
9.3
2020-04-01 CVE-2020-9776 Information Exposure vulnerability in Apple mac OS X
This issue was addressed with a new entitlement.
network
apple CWE-200
4.3
2020-04-01 CVE-2020-9775 Improper Initialization vulnerability in Apple Ipados and Iphone OS
An issue existed in the handling of tabs displaying picture in picture video.
network
low complexity
apple CWE-665
5.0
2020-04-01 CVE-2020-3919 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
A memory initialization issue was addressed with improved memory handling.
network
apple CWE-119
critical
9.3
2020-04-01 CVE-2020-3913 Improper Privilege Management vulnerability in Apple products
A permissions issue existed.
network
apple CWE-269
6.8
2020-04-01 CVE-2020-3909 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow was addressed with improved bounds checking.
network
low complexity
apple oracle CWE-120
7.5
2020-04-01 CVE-2020-3905 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple mac OS X
A memory corruption issue was addressed with improved input validation.
network
apple CWE-119
critical
9.3
2020-04-01 CVE-2020-3904 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple mac OS X
Multiple memory corruption issues were addressed with improved state management.
network
apple CWE-119
critical
9.3