Vulnerabilities > Apple > MAC OS X > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-06-23 CVE-2022-22630 Use After Free vulnerability in Apple mac OS X and Macos
A use after free issue was addressed with improved memory management.
network
low complexity
apple CWE-416
critical
9.8
2022-09-23 CVE-2022-32847 Unspecified vulnerability in Apple products
This issue was addressed with improved checks.
network
low complexity
apple
critical
9.1
2022-08-24 CVE-2022-32839 Unspecified vulnerability in Apple products
The issue was addressed with improved bounds checks.
network
low complexity
apple
critical
9.8
2022-05-26 CVE-2022-26775 Integer Overflow or Wraparound vulnerability in Apple mac OS X and Macos
An integer overflow was addressed with improved input validation.
network
low complexity
apple CWE-190
critical
9.8
2022-03-14 CVE-2022-22721 Integer Overflow or Wraparound vulnerability in multiple products
If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes.
network
low complexity
apache fedoraproject debian oracle apple CWE-190
critical
9.1
2022-03-14 CVE-2022-22720 HTTP Request Smuggling vulnerability in multiple products
Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling
network
low complexity
apache fedoraproject debian oracle apple CWE-444
critical
9.8
2021-12-23 CVE-2019-8703 Unspecified vulnerability in Apple products
This issue was addressed with improved entitlements.
network
low complexity
apple
critical
9.8
2021-12-23 CVE-2019-8643 Unspecified vulnerability in Apple mac OS X
CVE-2019-8643: Arun Sharma of VMWare This issue is fixed in macOS Mojave 10.14.
network
low complexity
apple
critical
9.8
2021-12-20 CVE-2021-44790 Out-of-bounds Write vulnerability in multiple products
A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts).
network
low complexity
apache fedoraproject debian tenable netapp oracle apple CWE-787
critical
9.8
2021-09-08 CVE-2021-30690 Unspecified vulnerability in Apple mac OS X
Multiple issues in apache were addressed by updating apache to version 2.4.46.
network
low complexity
apple
critical
9.8