Vulnerabilities > Apple > Macos > 9

DATE CVE VULNERABILITY TITLE RISK
2022-12-15 CVE-2022-46689 Race Condition vulnerability in Apple products
A race condition was addressed with additional validation.
local
high complexity
apple CWE-362
7.0
2022-12-15 CVE-2022-46690 Out-of-bounds Write vulnerability in Apple products
An out-of-bounds write issue was addressed with improved input validation.
local
low complexity
apple CWE-787
7.8
2022-12-15 CVE-2022-46691 Out-of-bounds Write vulnerability in Apple products
A memory consumption issue was addressed with improved memory handling.
network
low complexity
apple CWE-787
8.8
2022-12-15 CVE-2022-46692 Unspecified vulnerability in Apple products
A logic issue was addressed with improved state management.
local
low complexity
apple
5.5
2022-12-15 CVE-2022-46693 Out-of-bounds Write vulnerability in Apple products
An out-of-bounds write issue was addressed with improved input validation.
local
low complexity
apple CWE-787
7.8
2022-12-15 CVE-2022-46695 Improper Restriction of Rendered UI Layers or Frames vulnerability in Apple products
A spoofing issue existed in the handling of URLs.
network
low complexity
apple CWE-1021
6.5
2022-12-15 CVE-2022-46696 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved input validation.
network
low complexity
apple CWE-787
8.8
2022-12-15 CVE-2022-46698 Unspecified vulnerability in Apple products
A logic issue was addressed with improved checks.
network
low complexity
apple
6.5
2022-12-15 CVE-2022-46699 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved state management.
network
low complexity
apple CWE-787
8.8
2022-12-05 CVE-2022-32221 Exposure of Resource to Wrong Sphere vulnerability in multiple products
When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback.
network
low complexity
haxx netapp debian apple splunk CWE-668
critical
9.8