Vulnerabilities > Apple > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-01-11 CVE-2018-4298 Unspecified vulnerability in Apple products
In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a permissions issue existed in Remote Management.
network
low complexity
apple
critical
9.8
2019-01-11 CVE-2018-4281 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Swiftnio
In SwiftNIO before 1.8.0, a buffer overflow was addressed with improved size validation.
network
low complexity
apple CWE-119
critical
9.8
2019-01-11 CVE-2018-4258 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, a buffer overflow was addressed with improved bounds checking.
network
low complexity
apple CWE-119
critical
9.8
2019-01-11 CVE-2018-4257 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, a buffer overflow was addressed with improved size validation.
network
low complexity
apple CWE-119
critical
9.8
2019-01-11 CVE-2018-4254 Improper Input Validation vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, an input validation issue existed in the kernel.
network
low complexity
apple CWE-20
critical
9.8
2019-01-11 CVE-2018-4189 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
In iOS before 11.2.5, macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, watchOS before 4.2.2, and tvOS before 11.2.5, a memory corruption issue exists and was addressed with improved memory handling.
network
low complexity
apple CWE-119
critical
9.8
2019-01-11 CVE-2018-4169 Out-of-bounds Read vulnerability in Apple mac OS X 10.13.0/10.13.1/10.13.2
In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, an out-of-bounds read was addressed with improved input validation.
network
low complexity
apple CWE-125
critical
9.8
2019-01-11 CVE-2018-4147 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
In iCloud for Windows before 7.3, Safari before 11.0.3, iTunes before 12.7.3 for Windows, and iOS before 11.2.5, multiple memory corruption issues exist and were addressed with improved memory handling.
network
low complexity
apple CWE-119
critical
9.8
2019-01-11 CVE-2017-13889 Improper Authentication vulnerability in Apple mac OS X 10.13.0/10.13.1/10.13.2
In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a logic error existed in the validation of credentials.
network
low complexity
apple CWE-287
critical
9.8
2018-12-07 CVE-2018-18313 Out-of-bounds Read vulnerability in multiple products
Perl before 5.26.3 has a buffer over-read via a crafted regular expression that triggers disclosure of sensitive information from process memory.
network
low complexity
perl canonical debian redhat netapp apple CWE-125
critical
9.1