Vulnerabilities > Apple > MAC OS X > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-05-26 CVE-2022-26720 Out-of-bounds Write vulnerability in Apple mac OS X
An out-of-bounds write issue was addressed with improved bounds checking.
network
apple CWE-787
critical
9.3
2022-05-26 CVE-2022-26715 Out-of-bounds Write vulnerability in Apple mac OS X
An out-of-bounds write issue was addressed with improved bounds checking.
network
apple CWE-787
critical
9.3
2022-05-26 CVE-2022-26714 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved validation.
network
apple CWE-787
critical
9.3
2022-05-26 CVE-2022-22672 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved memory handling.
network
apple CWE-787
critical
9.3
2022-03-18 CVE-2022-22593 Classic Buffer Overflow vulnerability in Apple products
A buffer overflow issue was addressed with improved memory handling.
network
apple CWE-120
critical
9.3
2022-03-14 CVE-2022-22721 Integer Overflow or Wraparound vulnerability in multiple products
If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes.
network
low complexity
apache fedoraproject debian oracle apple CWE-190
critical
9.1
2022-03-14 CVE-2022-22720 HTTP Request Smuggling vulnerability in multiple products
Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling
network
low complexity
apache fedoraproject debian oracle apple CWE-444
critical
9.8
2021-12-23 CVE-2020-3886 Use After Free vulnerability in Apple mac OS X
A use after free issue was addressed with improved memory management.
network
apple CWE-416
critical
9.3
2021-12-20 CVE-2021-44790 Out-of-bounds Write vulnerability in multiple products
A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts).
network
low complexity
apache fedoraproject debian tenable netapp oracle apple CWE-787
critical
9.8
2021-10-28 CVE-2021-30824 Out-of-bounds Write vulnerability in Apple mac OS X
A memory corruption issue was addressed with improved state management.
network
apple CWE-787
critical
9.3