VYPR

Security Update 2021-008 Catalina

by Apple Inc.

CVEs (45)

  • CVE-2022-46706Aug 14, 2023
    risk 0.00cvss epss 0.00

    A type confusion issue was addressed with improved state handling. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. An application may be able to execute arbitrary code with kernel privileges.

  • CVE-2022-26775May 26, 2022
    risk 0.00cvss epss 0.01

    An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4. An attacker may be able to cause unexpected application termination or arbitrary code execution.

  • CVE-2022-26770May 26, 2022
    risk 0.00cvss epss 0.00

    An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to execute arbitrary code with kernel privileges.

  • CVE-2022-26769May 26, 2022
    risk 0.00cvss epss 0.00

    A memory corruption issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to execute arbitrary code with kernel privileges.

  • CVE-2022-26761May 26, 2022
    risk 0.00cvss epss 0.00

    A memory corruption issue was addressed with improved memory handling. This issue is fixed in Security Update 2022-004 Catalina, macOS Big Sur 11.6.6. An application may be able to execute arbitrary code with kernel privileges.

  • CVE-2022-26756May 26, 2022
    risk 0.00cvss epss 0.00

    An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. An application may be able to execute arbitrary code with kernel privileges.

  • CVE-2022-26755May 26, 2022
    risk 0.00cvss epss 0.00

    This issue was addressed with improved environment sanitization. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to break out of its sandbox.

  • CVE-2022-26751May 26, 2022
    risk 0.00cvss epss 0.01

    A memory corruption issue was addressed with improved input validation. This issue is fixed in iTunes 12.12.4 for Windows, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, macOS Big Sur 11.6.6, macOS Monterey 12.4. Processing a maliciously crafted image may lead to…

  • CVE-2022-26748May 26, 2022
    risk 0.00cvss epss 0.01

    An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. Processing maliciously crafted web content may lead to arbitrary code execution.

  • CVE-2022-26746May 26, 2022
    risk 0.00cvss epss 0.00

    This issue was addressed by removing the vulnerable code. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to bypass Privacy preferences.

  • CVE-2022-26728May 26, 2022
    risk 0.00cvss epss 0.00

    This issue was addressed with improved entitlements. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to access restricted files.

  • CVE-2022-26727May 26, 2022
    risk 0.00cvss epss 0.00

    This issue was addressed with improved entitlements. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4. A malicious application may be able to modify protected parts of the file system.

  • CVE-2022-26722May 26, 2022
    risk 0.00cvss epss 0.00

    A memory initialization issue was addressed. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to gain root privileges.

  • CVE-2022-26721May 26, 2022
    risk 0.00cvss epss 0.00

    A memory initialization issue was addressed. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to gain root privileges.

  • CVE-2022-26720May 26, 2022
    risk 0.00cvss epss 0.00

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. A malicious application may be able to execute arbitrary code with kernel privileges.

  • CVE-2022-26715May 26, 2022
    risk 0.00cvss epss 0.00

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. An application may be able to gain elevated privileges.

  • CVE-2022-26698May 26, 2022
    risk 0.00cvss epss 0.00

    An out-of-bounds read issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. Processing a maliciously crafted AppleScript binary may result in unexpected application termination or…

  • CVE-2022-26697May 26, 2022
    risk 0.00cvss epss 0.00

    An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. Processing a maliciously crafted AppleScript binary may result in unexpected application termination or…

  • CVE-2021-30834Oct 28, 2021
    risk 0.00cvss epss 0.00

    A logic issue was addressed with improved state management. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iOS 15 and iPadOS 15, watchOS 8, Security Update 2021-007 Catalina. Processing a malicious audio file may result in unexpected application termination or…

  • CVE-2020-29622Oct 19, 2021
    risk 0.00cvss epss 0.00

    A race condition was addressed with additional validation. This issue is fixed in Security Update 2021-005 Catalina. Mounting a maliciously crafted NFS network share may lead to arbitrary code execution with system privileges.

Page 1 of 3