VYPR

Mac OS X

by Apple Inc.

CVEs (3,257)

  • CVE-2020-29623LowApr 2, 2021
    risk 0.21cvss 3.3epss 0.00

    "Clear History and Website Data" did not clear the history. The issue was addressed with improved data deletion. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, tvOS 14.3. A user may be…

  • CVE-2020-9786LowOct 27, 2020
    risk 0.21cvss 3.3epss 0.01

    This issue was addressed with improved checks This issue is fixed in macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra. An application may be able to trigger a sysdiagnose.

  • CVE-2019-8809LowOct 27, 2020
    risk 0.21cvss 3.3epss 0.00

    A validation issue was addressed with improved logic. This issue is fixed in macOS Catalina 10.15, iOS 13.1 and iPadOS 13.1, tvOS 13, watchOS 6, iOS 13. A local app may be able to read a persistent account identifier.

  • CVE-2019-8642LowOct 27, 2020
    risk 0.21cvss 3.3epss 0.00

    An issue existed in the handling of S-MIME certificates. This issue was addressed with improved validation of S-MIME certificates. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. Processing a maliciously crafted…

  • CVE-2020-9776LowApr 1, 2020
    risk 0.21cvss 3.3epss 0.01

    This issue was addressed with a new entitlement. This issue is fixed in macOS Catalina 10.15.4. A malicious application may be able to access a user's call history.

  • CVE-2020-3830LowFeb 27, 2020
    risk 0.21cvss 3.3epss 0.00

    A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Catalina 10.15.3. A malicious application may be able to overwrite arbitrary files.

  • CVE-2019-8730LowDec 18, 2019
    risk 0.21cvss 3.3epss 0.00

    The contents of locked notes sometimes appeared in search results. This issue was addressed with improved data cleanup. This issue is fixed in macOS Catalina 10.15. A local user may be able to view a user’s locked notes.

  • CVE-2017-13801LowNov 13, 2017
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Dictionary Widget" component. It allows attackers to read local files if pasted text is used in a search.

  • CVE-2017-7138LowOct 23, 2017
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in certain Apple products. macOS before 10.13 is affected. The issue involves the "Directory Utility" component. It allows local users to discover the Apple ID of the computer's owner.

  • CVE-2016-7714LowFeb 20, 2017
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "IOKit" component. It allows local users to obtain sensitive kernel memory-layout information via…

  • CVE-2016-7625LowFeb 20, 2017
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "IOKit" component. It allows local users to obtain sensitive kernel memory-layout information via unspecified vectors.

  • CVE-2016-7624LowFeb 20, 2017
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "IOAcceleratorFamily" component. It allows local users to obtain sensitive kernel memory-layout information via unspecified vectors.

  • CVE-2016-7620LowFeb 20, 2017
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "IOSurface" component. It allows local users to obtain sensitive kernel memory-layout information via unspecified vectors.

  • CVE-2016-4670LowFeb 20, 2017
    risk 0.21cvss 3.3epss 0.00

    An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. The issue involves the "Security" component. It allows local users to discover lengths of arbitrary passwords by reading a log.

  • CVE-2016-4645LowJul 22, 2016
    risk 0.21cvss 3.3epss 0.00

    CFNetwork in Apple OS X before 10.11.6 uses weak permissions for web-browser cookies, which allows local users to obtain sensitive information via unspecified vectors.

  • CVE-2016-1862LowJun 19, 2016
    risk 0.21cvss 3.3epss 0.01

    Intel Graphics Driver in Apple OS X before 10.11.5 allows attackers to obtain sensitive kernel memory-layout information via a crafted app, a different vulnerability than CVE-2016-1860.

  • CVE-2016-1860LowJun 19, 2016
    risk 0.21cvss 3.3epss 0.01

    Intel Graphics Driver in Apple OS X before 10.11.5 allows attackers to obtain sensitive kernel memory-layout information via a crafted app, a different vulnerability than CVE-2016-1862.

  • CVE-2016-1773LowMar 24, 2016
    risk 0.21cvss 3.3epss 0.00

    The code-signing subsystem in Apple OS X before 10.11.4 does not properly verify file ownership, which allows local users to determine the existence of arbitrary files via unspecified vectors.

  • CVE-2021-30915LowAug 24, 2021
    risk 0.16cvss 2.4epss 0.00

    A logic issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, tvOS 15.1, watchOS 8.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A person with physical access to an iOS device may be able to…

  • CVE-2019-8799LowOct 27, 2020
    risk 0.16cvss 2.4epss 0.00

    This issue was resolved by replacing device names with a random identifier. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15, watchOS 6, tvOS 13. An attacker in physical proximity may be able to passively observe device names in AWDL communications.

Page 86 of 163