Vulnerabilities
Vulnerable Software
Apple:  >> Macos  >> 12.2.1  Security Vulnerabilities
An issue in the handling of symlinks was addressed with improved validation. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. A malicious app with root privileges may be able to modify the contents of system files.
CVSS Score
4.4
EPSS Score
0.002
Published
2022-05-26
Description: A race condition was addressed with additional validation. This issue is fixed in macOS Monterey 12.3. A malicious application may be able to modify protected parts of the file system.
CVSS Score
4.7
EPSS Score
0.002
Published
2022-05-26
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. An application may be able to gain elevated privileges.
CVSS Score
6.7
EPSS Score
0.0
Published
2022-05-26
This issue was addressed with improved checks. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. A maliciously crafted ZIP archive may bypass Gatekeeper checks.
CVSS Score
5.5
EPSS Score
0.176
Published
2022-05-26
This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in iOS 15.4 and iPadOS 15.4, Security Update 2022-004 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.6. A malicious application may bypass Gatekeeper checks.
CVSS Score
5.5
EPSS Score
0.003
Published
2022-05-26
Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
CVSS Score
7.8
EPSS Score
0.002
Published
2022-05-25
Classic Buffer Overflow in GitHub repository vim/vim prior to 8.2.4969.
CVSS Score
6.6
EPSS Score
0.001
Published
2022-05-17
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.
CVSS Score
6.6
EPSS Score
0.0
Published
2022-05-17
Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.
CVSS Score
6.6
EPSS Score
0.0
Published
2022-05-17
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 allows attackers to cause a denial of service (application crash) via a crafted input.
CVSS Score
6.6
EPSS Score
0.001
Published
2022-05-12


Contact Us

Shodan ® - All rights reserved