Apple

macOS

3178 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 12.29%
  • Veröffentlicht 26.01.2021 18:15:57
  • Zuletzt bearbeitet 21.11.2024 05:29:06

A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.

  • EPSS 84.22%
  • Veröffentlicht 26.01.2021 18:15:56
  • Zuletzt bearbeitet 21.11.2024 05:29:04

An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertion processing, resulting in denial of service (schema_init.c serialNumberAndIssuerCheck).

  • EPSS 77.74%
  • Veröffentlicht 26.01.2021 18:15:56
  • Zuletzt bearbeitet 21.11.2024 05:29:04

A flaw was discovered in OpenLDAP before 2.4.57 leading to an assertion failure in slapd in the saslAuthzTo validation, resulting in denial of service.

  • EPSS 4.3%
  • Veröffentlicht 26.01.2021 18:15:56
  • Zuletzt bearbeitet 21.11.2024 05:29:04

A flaw was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Values Return Filter control handling, resulting in denial of service (double free and out-of-bounds read).

  • EPSS 4.3%
  • Veröffentlicht 26.01.2021 18:15:56
  • Zuletzt bearbeitet 21.11.2024 05:29:04

A flaw was discovered in OpenLDAP before 2.4.57 leading to an invalid pointer free and slapd crash in the saslAuthzTo processing, resulting in denial of service.

Exploit
  • EPSS 4.58%
  • Veröffentlicht 14.12.2020 20:15:14
  • Zuletzt bearbeitet 21.11.2024 05:38:39

curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response.

  • EPSS 3.85%
  • Veröffentlicht 14.12.2020 20:15:13
  • Zuletzt bearbeitet 16.04.2026 15:16:42

A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about services that are otherwise private and not disclosed,...

Exploit
  • EPSS 9.92%
  • Veröffentlicht 14.12.2020 20:15:13
  • Zuletzt bearbeitet 16.04.2026 15:16:43

curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing.

Exploit
  • EPSS 2.02%
  • Veröffentlicht 11.12.2020 04:15:11
  • Zuletzt bearbeitet 21.11.2024 05:01:25

An out of bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 reconstructs paths from binary USD files. A specially crafted malformed file can trigger an out of bounds memory modification which can result in remote code execu...

  • EPSS 1.43%
  • Veröffentlicht 08.12.2020 22:15:18
  • Zuletzt bearbeitet 21.11.2024 05:22:00

A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able to modify the file system.