Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-10-27 CVE-2020-9932 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
A memory corruption issue was addressed with improved validation.
network
apple CWE-119
6.8
2020-10-27 CVE-2020-9860 Unspecified vulnerability in Apple Safari
A custom URL scheme handling issue was addressed with improved input validation.
network
apple
5.8
2020-10-27 CVE-2020-9857 Unspecified vulnerability in Apple mac OS X
An issue existed in the parsing of URLs.
network
apple
4.3
2020-10-27 CVE-2020-9786 Unspecified vulnerability in Apple mac OS X
This issue was addressed with improved checks This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra.
network
apple
4.3
2020-10-27 CVE-2020-9782 Path Traversal vulnerability in Apple mac OS X
A parsing issue in the handling of directory paths was addressed with improved path validation.
network
low complexity
apple CWE-22
6.4
2020-10-27 CVE-2020-9774 Missing Encryption of Sensitive Data vulnerability in Apple mac OS X
An issue existed with Siri Suggestions access to encrypted data.
network
low complexity
apple CWE-311
5.0
2020-10-27 CVE-2020-3855 Unspecified vulnerability in Apple mac OS X
An access issue was addressed with improved access restrictions.
network
apple
5.8
2020-10-27 CVE-2020-3852 Improper Input Validation vulnerability in Apple Safari
A logic issue was addressed with improved validation.
network
low complexity
apple CWE-20
5.0
2020-10-27 CVE-2020-3851 Use After Free vulnerability in Apple mac OS X
A use after free issue was addressed with improved memory management.
network
apple CWE-416
6.8
2020-10-27 CVE-2019-8901 Improper Verification of Cryptographic Signature vulnerability in Apple Ipados and Iphone OS
This issue was addressed by verifying host keys when connecting to a previously-known SSH server.
network
low complexity
apple CWE-347
4.0