Vulnerabilities > Apple > Macos > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-24 CVE-2021-30920 Incorrect Permission Assignment for Critical Resource vulnerability in Apple Macos
A permissions issue was addressed with improved validation.
local
low complexity
apple CWE-732
5.5
2021-08-05 CVE-2021-22925 Use of Uninitialized Resource vulnerability in multiple products
curl supports the `-t` command line option, known as `CURLOPT_TELNETOPTIONS`in libcurl.
5.3
2021-07-20 CVE-2021-36976 Use After Free vulnerability in multiple products
libarchive 3.4.1 through 3.5.1 has a use-after-free in copy_string (called from do_uncompress_block and process_block).
network
low complexity
libarchive fedoraproject apple splunk CWE-416
6.5
2021-04-02 CVE-2021-1801 This issue was addressed with improved iframe sandbox enforcement.
network
low complexity
apple fedoraproject webkitgtk
6.5
2021-04-02 CVE-2021-1799 A port redirection issue was addressed with additional port validation.
network
low complexity
apple fedoraproject webkitgtk
6.5
2021-04-02 CVE-2021-1797 Unspecified vulnerability in Apple products
The issue was addressed with improved permissions logic.
local
low complexity
apple
5.5
2021-04-02 CVE-2021-1791 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read issue existed that led to the disclosure of kernel memory.
local
low complexity
apple CWE-125
5.5
2021-04-02 CVE-2021-1786 Unspecified vulnerability in Apple products
A logic issue was addressed with improved state management.
local
low complexity
apple
5.5
2021-04-02 CVE-2021-1781 Unspecified vulnerability in Apple products
A privacy issue existed in the handling of Contact cards.
local
low complexity
apple
5.5
2021-04-02 CVE-2021-1778 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read issue existed in the curl.
local
low complexity
apple CWE-125
5.5