Vulnerabilities
Vulnerable Software
Apple:  >> Macos  >> 11.0  Security Vulnerabilities
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. An application may be able to gain elevated privileges.
CVSS Score
6.7
EPSS Score
0.0
Published
2022-05-26
This issue was addressed with improved checks. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. A maliciously crafted ZIP archive may bypass Gatekeeper checks.
CVSS Score
5.5
EPSS Score
0.072
Published
2022-05-26
A cookie management issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, macOS Big Sur 11.6.5. Processing maliciously crafted web content may disclose sensitive user information.
CVSS Score
6.5
EPSS Score
0.002
Published
2022-05-26
This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in iOS 15.4 and iPadOS 15.4, Security Update 2022-004 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.6. A malicious application may bypass Gatekeeper checks.
CVSS Score
5.5
EPSS Score
0.003
Published
2022-05-26
Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
CVSS Score
7.8
EPSS Score
0.001
Published
2022-05-25
Classic Buffer Overflow in GitHub repository vim/vim prior to 8.2.4969.
CVSS Score
6.6
EPSS Score
0.002
Published
2022-05-17
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.
CVSS Score
6.6
EPSS Score
0.0
Published
2022-05-17
Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.
CVSS Score
6.6
EPSS Score
0.0
Published
2022-05-17
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 allows attackers to cause a denial of service (application crash) via a crafted input.
CVSS Score
6.6
EPSS Score
0.001
Published
2022-05-12
LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.
CVSS Score
5.5
EPSS Score
0.001
Published
2022-05-11


Contact Us

Shodan ® - All rights reserved