Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2020-12-08 CVE-2020-10004 Unspecified vulnerability in Apple products
A logic issue was addressed with improved state management.
local
low complexity
apple
7.8
2020-12-08 CVE-2020-10003 Link Following vulnerability in Apple products
An issue existed within the path validation logic for symlinks.
local
low complexity
apple CWE-59
7.8
2020-12-08 CVE-2020-10002 Unspecified vulnerability in Apple products
A logic issue was addressed with improved state management.
local
low complexity
apple
5.5
2020-12-03 CVE-2020-13524 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 uses SPECS data from binary USD files.
local
low complexity
pixar apple CWE-787
5.5
2020-11-13 CVE-2020-6147 Out-of-bounds Write vulnerability in multiple products
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files.
local
low complexity
pixar apple CWE-787
7.8
2020-11-04 CVE-2020-8037 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
The ppp decapsulator in tcpdump 4.9.3 can be convinced to allocate a large amount of memory.
network
low complexity
tcpdump debian fedoraproject apple CWE-770
7.5
2020-11-03 CVE-2020-15969 Use After Free vulnerability in multiple products
Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject opensuse apple CWE-416
8.8
2020-11-02 CVE-2020-9861 Uncontrolled Recursion vulnerability in Apple Swift
A stack overflow issue existed in Swift for Linux.
network
low complexity
apple CWE-674
7.5
2020-10-27 CVE-2020-9982 Unspecified vulnerability in Apple Music 3.4.0
This issue was addressed with improved checks to prevent unauthorized actions.
local
low complexity
apple
5.5
2020-10-27 CVE-2020-9979 Unspecified vulnerability in Apple Iphone OS
A trust issue was addressed by removing a legacy API.
local
low complexity
apple
5.5