apple
8,698 tracked vulnerabilities.
CVE-2017-2449
HIGH
macOS < 10.12.4 - Use-After-Free in Bluetooth Component
Apr 02, 2017
CVSS 7.8
EPSS 0.01
CVE-2017-2448
MEDIUM
iPhone OS < 10.3, macOS < 10.12.4, tvOS < 10.2, watchOS < 3.1.3 - iCloud Keychain Secret Exposure
Apr 02, 2017
CVSS 5.9
EPSS 0.02
CVE-2017-2447
HIGH
Safari < 10.1 - Memory Corruption via Crafted Web Site
Apr 02, 2017
CVSS 8.1
EPSS 0.05
CVE-2017-2446
HIGH
Apple <10.3 - Remote Code Execution
Apr 02, 2017
CVSS 8.8
EPSS 0.08
CVE-2017-2445
MEDIUM
Safari < 10.1 - Universal Cross-Site Scripting via Crafted Frame Objects
Apr 02, 2017
CVSS 6.1
EPSS 0.04
CVE-2017-2444
HIGH
Safari < 10.1 - Remote Code Execution via Memory Corruption in CoreGraphics
Apr 02, 2017
CVSS 8.8
EPSS 0.02
CVE-2017-2443
HIGH
macOS < 10.12.4 - Memory Corruption in Intel Graphics Driver
Apr 02, 2017
CVSS 7.8
EPSS 0.04
CVE-2017-2442
MEDIUM
Safari < 10.1 - Same Origin Policy Bypass via WebKit JavaScript Bindings
Apr 02, 2017
CVSS 6.5
EPSS 0.06
CVE-2017-2441
HIGH
iPhone OS < 10.2.1, macOS < 10.12.3, tvOS < 10.1.1, watchOS < 3.1.3 - RCE via C++ Demangling Use-After-Free
Apr 02, 2017
CVSS 7.8
EPSS 0.03
CVE-2017-2440
HIGH
iPhone OS < 10.3, macOS < 10.12.4, tvOS < 10.2, watchOS < 3.2 - RCE or DoS via Integer Overflow
Apr 02, 2017
CVSS 7.8
EPSS 0.01
CVE-2017-2439
HIGH
iPhone OS < 10.3, macOS < 10.12.4, tvOS < 10.2, watchOS < 3.2 - Out-of-bounds Read in FontParser
Apr 02, 2017
CVSS 7.1
EPSS 0.01
CVE-2017-2438
HIGH
macOS < 10.12.4 - Use-After-Free in AppleRAID
Apr 02, 2017
CVSS 7.8
EPSS 0.01
CVE-2017-2437
HIGH
macOS < 10.12.4 - Memory Corruption in IOFireWireAVC
Apr 02, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-2436
HIGH
macOS < 10.12.4 - Remote Code Execution in IOFireWireAVC
Apr 02, 2017
CVSS 7.8
EPSS 0.01
CVE-2017-2435
HIGH
iPhone OS < 10.3, macOS < 10.12.4, tvOS < 10.2, watchOS < 3.2 - Remote Code Execution via Crafted Font File
Apr 02, 2017
CVSS 7.8
EPSS 0.02
CVE-2017-2434
CRITICAL
iPhone OS < 10.3 - Improper Input Validation in HomeKit
Apr 02, 2017
CVSS 9.8
EPSS 0.02
CVE-2017-2433
HIGH
Safari < 10.1 - Remote Code Execution via WebKit Memory Corruption
Apr 02, 2017
CVSS 8.8
EPSS 0.02
CVE-2017-2432
HIGH
Apple <10.3 - Remote Code Execution
Apr 02, 2017
CVSS 7.8
EPSS 0.02
CVE-2017-2431
HIGH
macOS < 10.12.4 - Remote Code Execution via Crafted .mov File
Apr 02, 2017
CVSS 7.8
EPSS 0.02
CVE-2017-2430
HIGH
Apple <10.3 - Remote Code Execution
Apr 02, 2017
CVSS 7.8
EPSS 0.02
CVE-2017-2429
HIGH
macOS < 10.12.4 - Unintended Access Restriction Bypass in FinderKit via iCloud Sharing Send Link Action
Apr 02, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-2428
CRITICAL
iPhone OS < 10.3, macOS < 10.12.4, tvOS < 10.2, watchOS < 3.2 - Remote HTTP/2 Server Impact via nghttp2
Apr 02, 2017
CVSS 9.8
EPSS 0.03
CVE-2017-2427
HIGH
macOS < 10.12.4 - Remote Code Execution or Denial of Service via Bluetooth Memory Corruption
Apr 02, 2017
CVSS 7.8
EPSS 0.01
CVE-2017-2426
LOW
macOS < 10.12.4 - Exposure of Sensitive Information via iBooks File URL
Apr 02, 2017
CVSS 3.3
EPSS 0.01
CVE-2017-2425
HIGH
macOS < 10.12.4 - Remote Code Execution via Crafted Certificate
Apr 02, 2017
CVSS 7.8
EPSS 0.01
Products
iphone_os 4,053
mac_os_x 3,210
macos 2,755
tvos 2,005
ipados 1,936
watchos 1,779
safari 1,629
macOS 1,352
itunes 922
iOS and iPadOS 800
mac_os_x_server 655
visionOS 456
icloud 449
visionos 434
watchOS 434
tvOS 402
webkit 258
quicktime 246
Safari 211
iPadOS 131
xcode 95
ipad_os 89
cups 56
apple_tv 36
darwin_streaming_server 27
ipod_touch 18
Xcode 16
quicktime_streaming_server 16
airport_base_station_firmware 11
os_x_server 11
Quick Filters