Vulnerabilities > Apple > Macos > 11.6

DATE CVE VULNERABILITY TITLE RISK
2022-03-18 CVE-2022-22650 Improper Preservation of Permissions vulnerability in Apple mac OS X and Macos
This issue was addressed with improved checks.
local
low complexity
apple CWE-281
5.5
2022-03-18 CVE-2022-22651 Out-of-bounds Write vulnerability in Apple Macos
An out-of-bounds write issue was addressed with improved bounds checking.
network
low complexity
apple CWE-787
7.5
2022-03-18 CVE-2022-22656 Improper Authentication vulnerability in Apple mac OS X and Macos
An authentication issue was addressed with improved state management.
local
low complexity
apple CWE-287
3.3
2022-03-18 CVE-2022-22657 Improper Initialization vulnerability in Apple Garageband and Logic PRO X
A memory initialization issue was addressed with improved memory handling.
network
apple CWE-665
6.8
2022-03-18 CVE-2022-22661 Type Confusion vulnerability in Apple mac OS X and Macos
A type confusion issue was addressed with improved state handling.
local
low complexity
apple CWE-843
7.8
2022-03-18 CVE-2022-22664 Out-of-bounds Read vulnerability in Apple Garageband and Logic PRO X
An out-of-bounds read was addressed with improved bounds checking.
network
apple CWE-125
6.8
2022-03-18 CVE-2022-22665 Unspecified vulnerability in Apple mac OS X and Macos
A logic issue was addressed with improved validation.
local
low complexity
apple
7.8
2022-03-14 CVE-2022-0943 Heap-based Buffer Overflow vulnerability in multiple products
Heap-based Buffer Overflow occurs in vim in GitHub repository vim/vim prior to 8.2.4563.
local
low complexity
vim fedoraproject debian apple CWE-122
7.8
2022-03-14 CVE-2022-22719 Improper Initialization vulnerability in multiple products
A carefully crafted request body can cause a read to a random memory area which could cause the process to crash.
network
low complexity
apache debian fedoraproject oracle apple CWE-665
7.5
2022-03-14 CVE-2022-22720 HTTP Request Smuggling vulnerability in multiple products
Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling
network
low complexity
apache fedoraproject debian oracle apple CWE-444
critical
9.8