Vulnerabilities (CVE)

Filtered by vendor Apple Subscribe
Total 13198 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-27839 1 Apple 2 Ipados, Iphone Os 2024-12-09 N/A 3.3 LOW
A privacy issue was addressed by moving sensitive data to a more secure location. This issue is fixed in iOS 17.5 and iPadOS 17.5. A malicious application may be able to determine a user's current location.
CVE-2024-27824 1 Apple 1 Macos 2024-12-09 N/A 7.8 HIGH
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14.5. An app may be able to elevate privileges.
CVE-2024-27829 1 Apple 1 Macos 2024-12-09 N/A 7.8 HIGH
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.5. Processing a file may lead to unexpected app termination or arbitrary code execution.
CVE-2024-27841 1 Apple 3 Ipados, Iphone Os, Macos 2024-12-09 N/A 5.5 MEDIUM
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An app may be able to disclose kernel memory.
CVE-2024-27852 1 Apple 2 Ipados, Iphone Os 2024-12-09 N/A 6.5 MEDIUM
A privacy issue was addressed with improved client ID handling for alternative app marketplaces. This issue is fixed in iOS 17.5 and iPadOS 17.5. A maliciously crafted webpage may be able to distribute a script that tracks users on other webpages.
CVE-2024-27847 1 Apple 3 Ipados, Iphone Os, Macos 2024-12-09 N/A 5.5 MEDIUM
This issue was addressed with improved checks This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An app may be able to bypass Privacy preferences.
CVE-2024-27827 1 Apple 1 Macos 2024-12-09 N/A 5.5 MEDIUM
This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14.5. An app may be able to read arbitrary files.
CVE-2024-27842 1 Apple 1 Macos 2024-12-09 N/A 7.8 HIGH
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to execute arbitrary code with kernel privileges.
CVE-2024-27843 1 Apple 1 Macos 2024-12-09 N/A 7.8 HIGH
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to elevate privileges.
CVE-2024-27789 1 Apple 3 Ipados, Iphone Os, Macos 2024-12-09 N/A 5.5 MEDIUM
A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, macOS Monterey 12.7.5, macOS Ventura 13.6.7, macOS Sonoma 14.4. An app may be able to access user-sensitive data.
CVE-2024-27796 1 Apple 3 Ipados, Iphone Os, Macos 2024-12-09 N/A 7.8 HIGH
The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An attacker may be able to elevate privileges.
CVE-2024-27813 1 Apple 1 Macos 2024-12-09 N/A 8.6 HIGH
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.
CVE-2024-23229 1 Apple 1 Macos 2024-12-09 N/A 5.5 MEDIUM
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.5, macOS Ventura 13.6.5, macOS Sonoma 14.4. A malicious application may be able to access Find My data.
CVE-2023-42843 4 Apple, Fedoraproject, Webkitgtk and 1 more 7 Ipad Os, Iphone Os, Macos and 4 more 2024-12-09 N/A 4.3 MEDIUM
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, Safari 17.1, macOS Sonoma 14.1. Visiting a malicious website may lead to address bar spoofing.
CVE-2024-44123 1 Apple 3 Ipados, Iphone Os, Macos 2024-12-06 N/A 2.3 LOW
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, iOS 18 and iPadOS 18. A malicious app with root privileges may be able to access keyboard input and location information without user consent.
CVE-2022-42807 1 Apple 1 Macos 2024-12-06 N/A 4.3 MEDIUM
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13. A user may accidentally add a participant to a Shared Album by pressing the Delete key
CVE-2022-42792 1 Apple 2 Ipados, Iphone Os 2024-12-06 N/A 5.5 MEDIUM
This issue was addressed with improved data protection. This issue is fixed in iOS 16.1 and iPadOS 16. An app may be able to read sensitive location information
CVE-2024-20739 3 Adobe, Apple, Microsoft 3 Audition, Macos, Windows 2024-12-06 N/A 7.8 HIGH
Audition versions 24.0.3, 23.6.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2023-32375 1 Apple 1 Macos 2024-12-05 N/A 5.5 MEDIUM
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.6, macOS Ventura 13.4. Processing a 3D model may result in disclosure of process memory.
CVE-2023-32372 1 Apple 5 Ipados, Iphone Os, Macos and 2 more 2024-12-05 N/A 5.5 MEDIUM
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. Processing an image may result in disclosure of process memory.