Vulnerabilities > Apple > Macos

DATE CVE VULNERABILITY TITLE RISK
2022-12-15 CVE-2022-46700 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved input validation.
network
low complexity
apple CWE-787
8.8
2022-12-15 CVE-2022-46701 Improper Input Validation vulnerability in Apple products
The issue was addressed with improved bounds checks.
local
low complexity
apple CWE-20
7.8
2022-12-05 CVE-2022-32221 Exposure of Resource to Wrong Sphere vulnerability in multiple products
When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback.
network
low complexity
haxx netapp debian apple splunk CWE-668
critical
9.8
2022-12-05 CVE-2022-35260 Out-of-bounds Write vulnerability in multiple products
curl can be told to parse a `.netrc` file for credentials.
network
low complexity
haxx netapp apple splunk CWE-787
6.5
2022-11-23 CVE-2022-40304 Double Free vulnerability in multiple products
An issue was discovered in libxml2 before 2.10.3.
local
low complexity
xmlsoft netapp apple CWE-415
7.8
2022-11-23 CVE-2022-40303 Integer Overflow or Wraparound vulnerability in multiple products
An issue was discovered in libxml2 before 2.10.3.
network
low complexity
xmlsoft netapp apple CWE-190
7.5
2022-11-13 CVE-2022-3970 A vulnerability was found in LibTIFF.
network
low complexity
libtiff netapp debian apple
8.8
2022-11-01 CVE-2022-22677 Unspecified vulnerability in Apple Iphone OS and Macos
A logic issue in the handling of concurrent media was addressed with improved state handling.
network
low complexity
apple
4.3
2022-11-01 CVE-2022-26709 Use After Free vulnerability in Apple products
A use after free issue was addressed with improved memory management.
network
low complexity
apple CWE-416
8.8
2022-11-01 CVE-2022-26710 Use After Free vulnerability in Apple products
A use after free issue was addressed with improved memory management.
network
low complexity
apple CWE-416
8.8