Vulnerabilities > Apple > Macos

DATE CVE VULNERABILITY TITLE RISK
2023-12-12 CVE-2023-42924 Incorrect Permission Assignment for Critical Resource vulnerability in Apple Macos
A logic issue was addressed with improved checks.
local
low complexity
apple CWE-732
5.5
2023-12-12 CVE-2023-42926 Out-of-bounds Write vulnerability in Apple Macos
Multiple memory corruption issues were addressed with improved input validation.
local
low complexity
apple CWE-787
7.8
2023-12-12 CVE-2023-42932 Unspecified vulnerability in Apple Macos
A logic issue was addressed with improved checks.
local
low complexity
apple
5.5
2023-12-08 CVE-2023-45866 Improper Authentication vulnerability in multiple products
Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access.
6.3
2023-11-30 CVE-2023-42916 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read was addressed with improved input validation.
network
low complexity
apple fedoraproject debian webkitgtk CWE-125
6.5
2023-11-30 CVE-2023-42917 Out-of-bounds Write vulnerability in multiple products
A memory corruption vulnerability was addressed with improved locking.
network
low complexity
apple debian fedoraproject webkitgtk CWE-787
8.8
2023-10-25 CVE-2023-40401 Missing Authentication for Critical Function vulnerability in Apple Macos
The issue was addressed with additional permissions checks.
network
low complexity
apple CWE-306
7.5
2023-10-25 CVE-2023-40404 Use After Free vulnerability in Apple Macos 14.0
A use-after-free issue was addressed with improved memory management.
local
low complexity
apple CWE-416
7.8
2023-10-25 CVE-2023-40405 Information Exposure Through Log Files vulnerability in Apple Macos 14.0
A privacy issue was addressed with improved private data redaction for log entries.
local
low complexity
apple CWE-532
3.3
2023-10-25 CVE-2023-40408 Unspecified vulnerability in Apple products
An inconsistent user interface issue was addressed with improved state management.
network
low complexity
apple
5.3