Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2023-01-20 CVE-2022-3918 Injection vulnerability in Apple Swift Foundation
A program using FoundationNetworking in swift-corelibs-foundation is potentially vulnerable to CRLF ( ) injection in URLRequest headers.
network
low complexity
apple CWE-74
8.8
2023-01-18 CVE-2023-22809 Improper Privilege Management vulnerability in multiple products
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environment variables (SUDO_EDITOR, VISUAL, and EDITOR), allowing a local attacker to append arbitrary entries to the list of files to process.
7.8
2022-12-15 CVE-2022-32833 Unspecified vulnerability in Apple Iphone OS
An issue existed with the file paths used to store website data.
network
low complexity
apple
5.3
2022-12-15 CVE-2022-32860 Out-of-bounds Write vulnerability in Apple Iphone OS and Macos
An out-of-bounds write was addressed with improved input validation.
local
low complexity
apple CWE-787
7.8
2022-12-15 CVE-2022-32916 Out-of-bounds Read vulnerability in Apple Iphone OS
An out-of-bounds read issue existed that led to the disclosure of kernel memory.
local
low complexity
apple CWE-125
5.5
2022-12-15 CVE-2022-32942 Unspecified vulnerability in Apple Macos
The issue was addressed with improved memory handling.
local
low complexity
apple
7.8
2022-12-15 CVE-2022-32943 Unspecified vulnerability in Apple Macos 13.0
The issue was addressed with improved bounds checks.
network
low complexity
apple
5.3
2022-12-15 CVE-2022-32945 Unspecified vulnerability in Apple Macos
An access issue was addressed with additional sandbox restrictions on third-party apps.
network
low complexity
apple
4.3
2022-12-15 CVE-2022-32948 Out-of-bounds Read vulnerability in Apple Iphone OS
An out-of-bounds read was addressed with improved bounds checking.
local
low complexity
apple CWE-125
7.8
2022-12-15 CVE-2022-42805 Integer Overflow or Wraparound vulnerability in Apple Iphone OS
An integer overflow was addressed with improved input validation.
local
low complexity
apple CWE-190
7.8