Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-10-27 CVE-2020-3852 Improper Input Validation vulnerability in Apple Safari
A logic issue was addressed with improved validation.
network
low complexity
apple CWE-20
5.0
2020-10-27 CVE-2020-3851 Use After Free vulnerability in Apple mac OS X
A use after free issue was addressed with improved memory management.
network
apple CWE-416
6.8
2020-10-27 CVE-2019-8901 Improper Verification of Cryptographic Signature vulnerability in Apple Ipados and Iphone OS
This issue was addressed by verifying host keys when connecting to a previously-known SSH server.
network
low complexity
apple CWE-347
4.0
2020-10-27 CVE-2019-8898 Insecure Storage of Sensitive Information vulnerability in Apple products
An information disclosure issue existed in the handling of the Storage Access API.
network
apple CWE-922
4.3
2020-10-27 CVE-2019-8858 Unspecified vulnerability in Apple mac OS X
A logic issue was addressed with improved state management.
network
low complexity
apple
5.0
2020-10-27 CVE-2019-8856 Missing Authorization vulnerability in Apple products
An API issue existed in the handling of outgoing phone calls initiated with Siri.
network
apple CWE-862
4.3
2020-10-27 CVE-2019-8855 Missing Authorization vulnerability in Apple mac OS X
An access issue was addressed with additional sandbox restrictions.
network
apple CWE-862
4.3
2020-10-27 CVE-2019-8854 Unspecified vulnerability in Apple products
A user privacy issue was addressed by removing the broadcast MAC address.
network
low complexity
apple
5.0
2020-10-27 CVE-2019-8853 Improper Input Validation vulnerability in Apple mac OS X
A validation issue was addressed with improved input sanitization.
network
apple CWE-20
4.3
2020-10-27 CVE-2019-8850 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read was addressed with improved input validation.
network
apple CWE-125
4.3