Page 14 of 2946 results (0.014 seconds)

CVSS: 8.8EPSS: 0%CPEs: 5EXPL: 0

27 Oct 2020 — A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 10.7, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, iCloud for Windows 7.14, iTunes 12.10.1 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution. Se abordó un problema de corrupción de la memoria con una administración de estado mejorada. Este problema se corrigió en macOS Catalina versió... • https://support.apple.com/en-us/HT210606 • CWE-787: Out-of-bounds Write •

CVSS: 2.4EPSS: 0%CPEs: 1EXPL: 0

27 Oct 2020 — A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. A local attacker may be able to view contacts from the lock screen. Un problema de pantalla de bloqueo permitió el acceso a los contactos en un dispositivo bloqueado. • https://support.apple.com/en-us/HT209600 • CWE-276: Incorrect Default Permissions •

CVSS: 9.3EPSS: 0%CPEs: 1EXPL: 0

27 Oct 2020 — A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15. An application may be able to execute arbitrary code with system privileges. Se abordó un problema de corrupción de la memoria con un manejo de la memoria mejorada. Este problema se corrigió en macOS Catalina versión 10.15. • https://support.apple.com/en-us/HT210634 • CWE-787: Out-of-bounds Write •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

27 Oct 2020 — A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006. A malicious HTML document may be able to render iframes with sensitive user information. Se presentó un problema de origen cruzado con los elementos "iframe". • https://support.apple.com/en-us/HT210722 • CWE-346: Origin Validation Error •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

27 Oct 2020 — An issue existed in the handling of encrypted Mail. This issue was addressed with improved isolation of MIME in Mail. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An attacker in a privileged network position may be able to intercept the contents of S/MIME-encrypted e-mail. Se presentó un problema en el manejo del Correo cifrado. • https://support.apple.com/en-us/HT209600 •

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 0

27 Oct 2020 — An issue existed in the handling of S-MIME certificates. This issue was addressed with improved validation of S-MIME certificates. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing. Se presentó un problema en el manejo de certificados S-MIME. • https://support.apple.com/en-us/HT209600 • CWE-295: Improper Certificate Validation •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

27 Oct 2020 — A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra. A sandboxed process may be able to circumvent sandbox restrictions. Se abordó un problema lógico con una comprobación mejorada. Este problema se corrigió en macOS Mojave versión 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra. • https://support.apple.com/en-us/HT210119 • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

27 Oct 2020 — A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, tvOS 12.3. Users removed from an iMessage conversation may still be able to alter state. Se abordó un problema lógico con una administración de estado mejorada. Este problema se corrigió en macOS Mojave versión 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS versión 12.3, tvOS versión... • https://support.apple.com/en-us/HT210118 •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

27 Oct 2020 — A logic issue was addressed with improved restrictions. This issue is fixed in watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. A sandboxed process may be able to circumvent sandbox restrictions. Se abordó un problema lógico con restricciones mejoradas. Este problema se corrigió en watchOS versión 5.2, macOS Mojave versión 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS versión 12.2. • https://support.apple.com/en-us/HT209599 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

27 Oct 2020 — An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An application may be able to gain elevated privileges. Se abordó un problema de comprobación de entrada con un manejo de la memoria mejorada. Este problema se corrigió en macOS Mojave versión 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. • https://support.apple.com/en-us/HT209600 • CWE-20: Improper Input Validation •