Vulnerabilities > Apple > MAC OS X > 10.7.2

DATE CVE VULNERABILITY TITLE RISK
2019-04-03 CVE-2018-20505 SQL Injection vulnerability in multiple products
SQLite 3.25.2, when queries are run on a table with a malformed PRIMARY KEY, allows remote attackers to cause a denial of service (application crash) by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases).
network
low complexity
sqlite apple microsoft CWE-89
5.0
2019-04-03 CVE-2017-7151 Race Condition vulnerability in Apple products
A race condition was addressed with additional validation.
network
high complexity
apple microsoft CWE-362
5.1
2019-04-03 CVE-2017-13911 Improper Input Validation vulnerability in Apple mac OS X
A configuration issue was addressed with additional restrictions.
network
apple CWE-20
critical
9.3
2019-03-05 CVE-2019-6231 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read was addressed with improved bounds checking.
network
apple CWE-125
4.3
2019-03-05 CVE-2019-6230 Improper Initialization vulnerability in Apple products
A memory initialization issue was addressed with improved memory handling.
network
apple CWE-665
6.8
2019-03-05 CVE-2019-6225 Out-of-bounds Write vulnerability in Apple Iphone OS, mac OS X and Tvos
A memory corruption issue was addressed with improved validation.
network
apple CWE-787
6.8
2019-03-05 CVE-2019-6224 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
A buffer overflow issue was addressed with improved memory handling.
network
apple CWE-119
6.8
2019-03-05 CVE-2019-6223 Unspecified vulnerability in Apple Iphone OS and mac OS X
A logic issue existed in the handling of Group FaceTime calls.
network
low complexity
apple
5.0
2019-03-05 CVE-2019-6221 Out-of-bounds Read vulnerability in Apple Iphone OS, Itunes and mac OS X
An out-of-bounds read was addressed with improved bounds checking.
6.8
2019-03-05 CVE-2019-6220 Out-of-bounds Read vulnerability in Apple mac OS X
An out-of-bounds read was addressed with improved input validation.
network
apple CWE-125
4.3