Aller au contenu
Appaloosa Scout

macOS

54 CVE corrigées par cette release.

Date de sortie
2025-05-12
Fin de support
CVE corrigées
54
KEV CISA
0
Critique
0
Élevé
2
En attente NVD
51

CVE corrigées

CVE Sévérité
CVE-2024-8176

[Apple libexpat] Multiple issues in libexpat, including unexpected app termination or arbitrary code execution

HIGH 7.5
CVE-2025-26466

[Apple OpenSSH] Multiple issues in OpenSSH

HIGH 7.5
CVE-2025-26465

[Apple OpenSSH] Multiple issues in OpenSSH

MEDIUM 6.8
CVE-2025-31259

[Apple SoftwareUpdate] An app may be able to gain elevated privileges

N/A
CVE-2025-24224

[Apple Kernel] A remote attacker may be able to cause unexpected system termination

N/A
CVE-2025-24142

[Apple Notification Center] An app may be able to access sensitive user data

N/A
CVE-2025-24213

[Apple WebKit] A type confusion issue could lead to memory corruption

N/A
CVE-2025-24222

[Apple BOM] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-24223

[Apple WebKit] Processing maliciously crafted web content may lead to memory corruption

N/A
CVE-2025-24274

[Apple Mobile Device Service] A malicious app may be able to gain root privileges

N/A
CVE-2025-30440

[Apple Libinfo] An app may be able to bypass ASLR

N/A
CVE-2025-30443

[Apple AppleMobileFileIntegrity] An app may be able to access user-sensitive data

N/A
CVE-2025-31204

[Apple WebKit] Processing maliciously crafted web content may lead to memory corruption

N/A
CVE-2025-31205

[Apple WebKit] A malicious website may exfiltrate data cross-origin

N/A
CVE-2025-31206

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected Safari crash

N/A
CVE-2025-31208

[Apple CoreAudio] Parsing a file may lead to an unexpected app termination

N/A
CVE-2025-31209

[Apple CoreGraphics] Parsing a file may lead to disclosure of user information

N/A
CVE-2025-31212

[Apple Core Bluetooth] An app may be able to access sensitive user data

N/A
CVE-2025-31213

[Apple Security] An app may be able to access associated usernames and websites in a user's iCloud Keychain

N/A
CVE-2025-31215

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-31217

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected Safari crash

N/A
CVE-2025-31218

[Apple NetworkExtension] An app may be able to observe the hostnames of new network connections

N/A
CVE-2025-31219

[Apple Kernel] An attacker may be able to cause unexpected system termination or corrupt kernel memory

N/A
CVE-2025-31220

[Apple Weather] A malicious app may be able to read sensitive location information

N/A
CVE-2025-31221

[Apple Security] A remote attacker may be able to leak memory

N/A
CVE-2025-31222

[Apple mDNSResponder] A user may be able to elevate privileges

N/A
CVE-2025-31223

[Apple WebKit] Processing maliciously crafted web content may lead to memory corruption

N/A
CVE-2025-31224

[Apple Sandbox] An app may be able to bypass certain Privacy preferences

N/A
CVE-2025-31226

[Apple ImageIO] Processing a maliciously crafted image may lead to a denial-of-service

N/A
CVE-2025-31232

[Apple Installer] A sandboxed app may be able to access sensitive user data

N/A
CVE-2025-31233

[Apple CoreMedia] Processing a maliciously crafted video file may lead to unexpected app termination or corrupt process…

N/A
CVE-2025-31234

[Apple Pro Res] An attacker may be able to cause unexpected system termination or corrupt kernel memory

N/A
CVE-2025-31235

[Apple Audio] An app may be able to cause unexpected system termination

N/A
CVE-2025-31236

[Apple Finder] An app may be able to access sensitive user data

N/A
CVE-2025-31237

[Apple afpfs] Mounting a maliciously crafted AFP network share may lead to system termination

N/A
CVE-2025-31238

[Apple WebKit] Processing maliciously crafted web content may lead to memory corruption

N/A
CVE-2025-31239

[Apple CoreMedia] Parsing a file may lead to an unexpected app termination

N/A
CVE-2025-31240

[Apple afpfs] Mounting a maliciously crafted AFP network share may lead to system termination

N/A
CVE-2025-31241

[Apple Kernel] A remote attacker may cause an unexpected app termination

N/A
CVE-2025-31242

[Apple StoreKit] An app may be able to access sensitive user data

N/A
CVE-2025-31244

[Apple quarantine] An app may be able to break out of its sandbox

N/A
CVE-2025-31245

[Apple Pro Res] An app may be able to cause unexpected system termination

N/A
CVE-2025-31246

[Apple afpfs] Connecting to a malicious AFP server may corrupt kernel memory

N/A
CVE-2025-31247

[Apple SharedFileList] An attacker may gain access to protected parts of the file system

N/A
CVE-2025-31248

[Apple UserAccountUpdater] An app may be able to access sensitive user data

N/A
CVE-2025-31249

[Apple Sandbox] An app may be able to access sensitive user data

N/A
CVE-2025-31250

[Apple TCC] An app may be able to access sensitive user data

N/A
CVE-2025-31251

[Apple AppleJPEG] Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process…

N/A
CVE-2025-31256

[Apple Notes] Hot corner may unexpectedly reveal a user’s deleted notes

N/A
CVE-2025-31257

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected Safari crash

N/A
CVE-2025-31258

[Apple RemoteViewServices] An app may be able to break out of its sandbox

N/A
CVE-2025-31260

[Apple Apple Intelligence Reports] An app may be able to access sensitive user data

N/A
CVE-2025-31266

[Apple Safari] A website may be able to spoof the domain name in the title of a pop-up window

N/A
CVE-2025-43374

[Apple Wi-Fi] An attacker in physical proximity may be able to cause an out-of-bounds read in kernel memory

N/A