Apple

macOS

2458 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 10.96%
  • Veröffentlicht 20.12.2021 12:15:07
  • Zuletzt bearbeitet 21.11.2024 06:30:37

A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL pointer dereference) or, for configurations mixing forward and reverse proxy declarations, can allow for requests to be directed to a declared Unix D...

Exploit
  • EPSS 87.09%
  • Veröffentlicht 20.12.2021 12:15:07
  • Zuletzt bearbeitet 01.05.2025 15:38:06

A carefully crafted request body can cause a buffer overflow in the mod_lua multipart parser (r:parsebody() called from Lua scripts). The Apache httpd team is not aware of an exploit for the vulnerabilty though it might be possible to craft one. This...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 19.12.2021 17:15:07
  • Zuletzt bearbeitet 21.11.2024 06:36:58

vim is vulnerable to Heap-based Buffer Overflow

  • EPSS 0.29%
  • Veröffentlicht 28.10.2021 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:04:47

A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.0.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A malicious application may be able to execute arbitrary code with kernel pr...

  • EPSS 0.17%
  • Veröffentlicht 28.10.2021 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:04:47

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadOS 14.8, tvOS 15, Safari 15, watchOS 8. An attacker in a privileged network position may be able to bypass HSTS.

  • EPSS 0.29%
  • Veröffentlicht 28.10.2021 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:04:47

A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A malicious application may be able to execute arbitrary code with kernel p...

  • EPSS 0.24%
  • Veröffentlicht 28.10.2021 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:04:48

An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted font may result in the disclosure of process memory.

  • EPSS 3.05%
  • Veröffentlicht 28.10.2021 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:04:48

This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.0.1. Unpacking a maliciously crafted archive may allow an attacker to write arbitrary files.

  • EPSS 0.34%
  • Veröffentlicht 28.10.2021 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:04:48

A logic issue was addressed with improved state management. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iOS 15 and iPadOS 15, watchOS 8, Security Update 2021-007 Catalina. Processing a malicious audio file may result in unexpected appli...

  • EPSS 0.12%
  • Veröffentlicht 28.10.2021 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:04:48

An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processing a maliciously crafted audio file may disclose restricted memory.