Vulnerabilities > Apple > MAC OS X > High

DATE CVE VULNERABILITY TITLE RISK
2020-02-27 CVE-2020-3842 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved memory handling.
local
low complexity
apple CWE-787
7.8
2020-02-27 CVE-2020-3840 Off-by-one Error vulnerability in Apple products
An off by one issue existed in the handling of racoon configuration files.
local
low complexity
apple CWE-193
7.8
2020-02-27 CVE-2020-3838 Incorrect Default Permissions vulnerability in Apple products
The issue was addressed with improved permissions logic.
local
low complexity
apple CWE-276
7.8
2020-02-27 CVE-2020-3837 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved memory handling.
local
low complexity
apple CWE-787
7.8
2020-02-27 CVE-2020-3829 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read was addressed with improved bounds checking.
local
low complexity
apple CWE-125
7.8
2020-02-27 CVE-2020-3827 Out-of-bounds Write vulnerability in Apple mac OS X
A memory corruption issue was addressed with improved input validation.
local
low complexity
apple CWE-787
7.8
2020-02-27 CVE-2020-3826 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read was addressed with improved input validation.
local
low complexity
apple CWE-125
7.8
2020-02-24 CVE-2019-20044 Improper Check for Dropped Privileges vulnerability in multiple products
In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option.
local
low complexity
zsh fedoraproject debian apple CWE-273
7.8
2020-02-20 CVE-2012-5366 Resource Exhaustion vulnerability in Apple mac OS X
The IPv6 implementation in Apple Mac OS X (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood of ICMPv6 Router Advertisement packets containing multiple Routing entries.
network
low complexity
apple CWE-400
7.5
2020-02-12 CVE-2011-3336 Resource Exhaustion vulnerability in multiple products
regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.
network
low complexity
freebsd apple openbsd php CWE-400
7.5