Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2020-12-14 CVE-2020-8284 A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about services that are otherwise private and not disclosed, for example doing port scanning and service banner extractions. 3.7
2020-12-11 CVE-2020-13520 Out-of-bounds Write vulnerability in multiple products
An out of bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 reconstructs paths from binary USD files.
local
low complexity
pixar apple CWE-787
7.8
2020-12-08 CVE-2020-9991 Unspecified vulnerability in Apple products
This issue was addressed with improved checks.
network
low complexity
apple
7.5
2020-12-08 CVE-2020-27918 Use After Free vulnerability in multiple products
A use after free issue was addressed with improved memory management.
local
low complexity
apple fedoraproject debian webkitgtk CWE-416
7.8
2020-12-08 CVE-2020-27896 Path Traversal vulnerability in Apple mac OS X and Macos
A path handling issue was addressed with improved validation.
local
low complexity
apple CWE-22
5.5
2020-12-08 CVE-2020-27950 Improper Initialization vulnerability in Apple products
A memory initialization issue was addressed.
local
low complexity
apple CWE-665
5.5
2020-12-08 CVE-2020-27932 Type Confusion vulnerability in Apple products
A type confusion issue was addressed with improved state handling.
local
low complexity
apple CWE-843
7.8
2020-12-08 CVE-2020-27930 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved input validation.
local
low complexity
apple CWE-787
7.8
2020-12-08 CVE-2020-27929 Unspecified vulnerability in Apple Iphone OS
A logic issue existed in the handling of Group FaceTime calls.
local
low complexity
apple
5.5
2020-12-08 CVE-2020-27927 Out-of-bounds Write vulnerability in Apple products
An out-of-bounds write issue was addressed with improved bounds checking.
local
low complexity
apple CWE-787
7.8