Vulnerabilities > Apple > Macos > 14.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-23 | CVE-2024-23214 | Out-of-bounds Write vulnerability in Apple Ipados, Iphone OS and Macos Multiple memory corruption issues were addressed with improved memory handling. | 8.8 |
2024-01-23 | CVE-2024-23215 | Unspecified vulnerability in Apple products An issue was addressed with improved handling of temporary files. | 5.5 |
2024-01-23 | CVE-2024-23217 | Unspecified vulnerability in Apple products A privacy issue was addressed with improved handling of temporary files. | 3.3 |
2024-01-23 | CVE-2024-23218 | Information Exposure Through Discrepancy vulnerability in Apple products A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions. | 5.9 |
2024-01-23 | CVE-2024-23222 | Type Confusion vulnerability in Apple products A type confusion issue was addressed with improved checks. | 8.8 |
2024-01-23 | CVE-2024-23223 | Unspecified vulnerability in Apple products A privacy issue was addressed with improved handling of files. | 6.2 |
2024-01-23 | CVE-2024-23224 | Unspecified vulnerability in Apple Macos The issue was addressed with improved checks. | 5.5 |
2023-12-19 | CVE-2023-42940 | Unspecified vulnerability in Apple Macos A session rendering issue was addressed with improved session tracking. | 5.7 |
2023-12-18 | CVE-2023-48795 | Improper Validation of Integrity Check Value vulnerability in multiple products The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack. network high complexity openbsd putty filezilla-project microsoft panic roumenpetrov winscp bitvise lancom-systems vandyke libssh net-ssh ssh2-project proftpd freebsd crates tera-term-project oryx-embedded crushftp netsarang paramiko redhat golang russh-project sftpgo-project erlang matez libssh2 asyncssh-project dropbear-ssh-project jadaptive ssh thorntech netgate connectbot apache tinyssh trilead 9bis gentoo fedoraproject debian apple CWE-354 | 5.9 |
2023-12-12 | CVE-2023-42874 | Unspecified vulnerability in Apple Macos This issue was addressed with improved state management. low complexity apple | 2.4 |