CVE-2022-32897
- EPSS 0.44%
- Veröffentlicht 10.06.2024 20:15:12
- Zuletzt bearbeitet 21.11.2024 07:07:11
A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.5. Processing a maliciously crafted tiff file may lead to arbitrary code execution.
CVE-2022-32933
- EPSS 0.21%
- Veröffentlicht 10.06.2024 20:15:12
- Zuletzt bearbeitet 18.03.2025 16:15:12
An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in macOS Monterey 12.5. A website may be able to track the websites a user visited in Safari private browsing mode.
CVE-2022-48578
- EPSS 0.17%
- Veröffentlicht 10.06.2024 20:15:12
- Zuletzt bearbeitet 21.11.2024 07:33:31
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.5. Processing an AppleScript may result in unexpected termination or disclosure of process memory.
CVE-2022-48683
- EPSS 0.11%
- Veröffentlicht 10.06.2024 20:15:12
- Zuletzt bearbeitet 21.11.2024 07:33:45
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13. An app may be able to break out of its sandbox.
CVE-2023-40389
- EPSS 0.04%
- Veröffentlicht 10.06.2024 20:15:12
- Zuletzt bearbeitet 04.11.2025 19:15:55
The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Ventura 13.6.5, macOS Monterey 12.7.4. An app may be able to access sensitive user data.
CVE-2024-30164
- EPSS 0.05%
- Veröffentlicht 28.05.2024 17:15:10
- Zuletzt bearbeitet 21.11.2024 09:11:20
Amazon AWS Client VPN has a buffer overflow that could potentially allow a local actor to execute arbitrary commands with elevated permissions. This is resolved in 3.11.1 on Windows, 3.9.1 on macOS, and 3.12.1 on Linux. NOTE: although the macOS resol...
CVE-2024-27842
- EPSS 0.24%
- Veröffentlicht 14.05.2024 15:13:08
- Zuletzt bearbeitet 09.12.2024 19:37:50
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to execute arbitrary code with kernel privileges.
CVE-2024-27843
- EPSS 0.07%
- Veröffentlicht 14.05.2024 15:13:08
- Zuletzt bearbeitet 09.12.2024 19:35:44
A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to elevate privileges.
CVE-2024-27847
- EPSS 0.01%
- Veröffentlicht 14.05.2024 15:13:08
- Zuletzt bearbeitet 09.12.2024 19:39:08
This issue was addressed with improved checks This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An app may be able to bypass Privacy preferences.
CVE-2024-27837
- EPSS 0.12%
- Veröffentlicht 14.05.2024 15:13:07
- Zuletzt bearbeitet 09.12.2024 19:50:49
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in macOS Sonoma 14.5. A local attacker may gain access to Keychain items.