Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-11-13 CVE-2020-6147 Out-of-bounds Write vulnerability in multiple products
A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files.
network
pixar apple CWE-787
6.8
2020-11-02 CVE-2020-9861 Out-of-bounds Write vulnerability in Apple Swift
A stack overflow issue existed in Swift for Linux.
network
low complexity
apple CWE-787
5.0
2020-10-27 CVE-2020-9982 Missing Authorization vulnerability in Apple Music 3.4.0
This issue was addressed with improved checks to prevent unauthorized actions.
network
apple CWE-862
4.3
2020-10-27 CVE-2020-9932 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
A memory corruption issue was addressed with improved validation.
network
apple CWE-119
6.8
2020-10-27 CVE-2020-9860 Unspecified vulnerability in Apple Safari
A custom URL scheme handling issue was addressed with improved input validation.
network
apple
5.8
2020-10-27 CVE-2020-9857 Unspecified vulnerability in Apple mac OS X
An issue existed in the parsing of URLs.
network
apple
4.3
2020-10-27 CVE-2020-9786 Unspecified vulnerability in Apple mac OS X
This issue was addressed with improved checks This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra.
network
apple
4.3
2020-10-27 CVE-2020-9782 Path Traversal vulnerability in Apple mac OS X
A parsing issue in the handling of directory paths was addressed with improved path validation.
network
low complexity
apple CWE-22
6.4
2020-10-27 CVE-2020-9774 Missing Encryption of Sensitive Data vulnerability in Apple mac OS X
An issue existed with Siri Suggestions access to encrypted data.
network
low complexity
apple CWE-311
5.0
2020-10-27 CVE-2020-3855 Unspecified vulnerability in Apple mac OS X
An access issue was addressed with improved access restrictions.
network
apple
5.8