Vulnerabilities > Apple > Macos > 11.3

DATE CVE VULNERABILITY TITLE RISK
2022-12-15 CVE-2022-46691 Out-of-bounds Write vulnerability in Apple products
A memory consumption issue was addressed with improved memory handling.
network
low complexity
apple CWE-787
8.8
2022-12-15 CVE-2022-46692 Unspecified vulnerability in Apple products
A logic issue was addressed with improved state management.
local
low complexity
apple
5.5
2022-12-15 CVE-2022-46693 Out-of-bounds Write vulnerability in Apple products
An out-of-bounds write issue was addressed with improved input validation.
local
low complexity
apple CWE-787
7.8
2022-12-15 CVE-2022-46695 Improper Restriction of Rendered UI Layers or Frames vulnerability in Apple products
A spoofing issue existed in the handling of URLs.
network
low complexity
apple CWE-1021
6.5
2022-12-15 CVE-2022-46696 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved input validation.
network
low complexity
apple CWE-787
8.8
2022-12-15 CVE-2022-46698 Unspecified vulnerability in Apple products
A logic issue was addressed with improved checks.
network
low complexity
apple
6.5
2022-12-15 CVE-2022-46699 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved state management.
network
low complexity
apple CWE-787
8.8
2022-12-05 CVE-2022-32221 Exposure of Resource to Wrong Sphere vulnerability in multiple products
When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback.
network
low complexity
haxx netapp debian apple splunk CWE-668
critical
9.8
2022-12-05 CVE-2022-35260 Out-of-bounds Write vulnerability in multiple products
curl can be told to parse a `.netrc` file for credentials.
network
low complexity
haxx netapp apple splunk CWE-787
6.5
2022-11-23 CVE-2022-40304 Double Free vulnerability in multiple products
An issue was discovered in libxml2 before 2.10.3.
local
low complexity
xmlsoft netapp apple CWE-415
7.8