Skip to main content

Vendor/product archive

apple / macos CVEs

Beta · best-effort

6,511 CVEs tagged to apple / macos511 Critical, 3,210 High, 2,527 Medium, 262 Low, 1 Unrated.

CVE-2018-7493

Published Mar 5, 2018

CactusVPN through 6.0 for macOS suffers from a root privilege escalation vulnerability in its privileged helper tool. The privileged helper tool implements an XPC interface, which…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-4878

Published Feb 6, 2018

A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Primetime SDK related to media pl…

CVSS 7.8 · High
evidence mentions
56
Buzz score
71.0
KEV listed

CVE-2018-4877

Published Feb 6, 2018

A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Primetime SDK related to media pl…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5

CVE-2017-16945

Published Jan 31, 2018

The standardrestorer binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privileges via a crafted restore path.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-16928

Published Jan 31, 2018

The arq_updater binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privileges via a crafted update URL, as demonstrat…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4871

Published Jan 9, 2018

An Out-of-bounds Read issue was discovered in Adobe Flash Player before 28.0.0.137. This vulnerability occurs because of computation that reads data that is past the end of the ta…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2017-3114

Published Dec 9, 2017

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the t…

CVSS 9.8 · Critical

CVE-2017-3112

Published Dec 9, 2017

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the t…

CVSS 9.8 · Critical

CVE-2017-11225

Published Dec 9, 2017

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK metadata fu…

CVSS 9.8 · Critical

CVE-2017-11215

Published Dec 9, 2017

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK. The mismat…

CVSS 9.8 · Critical

CVE-2017-11213

Published Dec 9, 2017

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the t…

CVSS 9.8 · Critical

CVE-2017-11282

Published Dec 1, 2017

Adobe Flash Player has an exploitable memory corruption vulnerability in the MP4 atom parser. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.1…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5

CVE-2017-11281

Published Dec 1, 2017

Adobe Flash Player has an exploitable memory corruption vulnerability in the text handling function. Successful exploitation could lead to arbitrary code execution. This affects 2…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5

CVE-2017-16541

Published Nov 4, 2017

Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass the intended anonymity feature and discover a client IP address via vectors involving a crafted web s…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Showing 6,201-6,225 of 6,511 CVEsPage 249 of 261