Vulnerabilities > Apple > Macos > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-07-07 CVE-2022-32207 Incorrect Default Permissions vulnerability in multiple products
When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended.
network
low complexity
haxx fedoraproject debian netapp apple splunk CWE-276
critical
9.8
2022-05-26 CVE-2022-26776 Unspecified vulnerability in Apple Macos
This issue was addressed with improved checks.
network
low complexity
apple
critical
9.8
2022-05-26 CVE-2022-26775 Integer Overflow or Wraparound vulnerability in Apple mac OS X and Macos
An integer overflow was addressed with improved input validation.
network
low complexity
apple CWE-190
critical
9.8
2022-05-26 CVE-2022-26723 Out-of-bounds Write vulnerability in Apple Macos
A memory corruption issue was addressed with improved input validation.
network
low complexity
apple CWE-787
critical
9.8
2022-05-26 CVE-2022-26711 Integer Overflow or Wraparound vulnerability in Apple products
An integer overflow issue was addressed with improved input validation.
network
low complexity
apple CWE-190
critical
9.8
2022-05-26 CVE-2022-26708 Unspecified vulnerability in Apple Macos
This issue was addressed with improved checks.
network
low complexity
apple
critical
9.8
2022-05-26 CVE-2022-26694 Unspecified vulnerability in Apple Macos
This issue was addressed with improved checks.
network
low complexity
apple
critical
9.1
2022-05-26 CVE-2022-26693 Unspecified vulnerability in Apple Macos
This issue was addressed with improved checks.
network
low complexity
apple
critical
9.1
2022-03-18 CVE-2022-22641 Use After Free vulnerability in Apple products
A use after free issue was addressed with improved memory management.
network
low complexity
apple CWE-416
critical
9.8
2022-03-18 CVE-2022-22632 Unspecified vulnerability in Apple products
A logic issue was addressed with improved state management.
network
low complexity
apple
critical
9.8