Known vulnerabilities in macOS 14.2.1 23C71 - page 40

Vendor: Apple Inc.
Software: macOS
Version: 14.2.1 23C71
Software CPE: cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Total vulnerabilities: 974
Public exploits: 23
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting macOS version 14.2.1 23C71 macOS 14.2.1 23C71 is affected by 974 vulnerabilities: 4 critical, 65 high, 121 medium, 784 low Critical High Medium Low

Vulnerabilities (974)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU94887 - Permissions, Privileges, and Access Controls
CVE-2024-40802
CWE-264 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
#VU94872 - Out-of-bounds read
CVE-2024-40788
CWE-125 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
and 5 more
#VU94866 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-40815
CWE-362 Low
No
No
14.6 23G80, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073061
SB2024073062
and 2 more
#VU94865 - Incorrect Default Permissions
CVE-2024-40827
CWE-276 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
#VU94864 - Out-of-bounds write
CVE-2024-27873
CWE-787 Medium
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
and 2 more
#VU94863 - Out-of-bounds read
CVE-2024-40799
CWE-125 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
and 5 more
#VU94862 - Memory corruption
CVE-2024-27878
CWE-119 Low
No
No
14.6 23G80 30.07.2024 SB2024073059
#VU94861 - Memory corruption
CVE-2024-27877
CWE-119 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
#VU94860 - Security Features
CVE-2024-40775
CWE-254 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
#VU94859 - Security Features
CVE-2024-40814
CWE-254 Low
No
No
14.6 23G80, 13.7 22H123 30.07.2024 SB2024073059
SB2024091704
#VU94858 - Security Features
CVE-2024-40774
CWE-254 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
and 3 more
#VU94857 - Improper Access Control
CVE-2024-40783
CWE-284 Low
No
No
14.6 23G80, 12.7.6 21H1320, 13.6.8 22G820 30.07.2024 SB2024073059
SB2024073060
SB2024073061
#VU94856 - Improper Access Control
CVE-2024-40804
CWE-284 Low
No
No
14.6 23G80 30.07.2024 SB2024073059
#VU88153 - Resource exhaustion
CVE-2024-27316
CWE-400 Medium
Public exploit available
No
14.6 23G80 04.04.2024 SB2024040458
SB2024040502
SB2024040545
and 51 more
#VU88152 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2024-24795
CWE-113 Medium
No
No
14.6 23G80 04.04.2024 SB2024040458
SB2024040502
SB2024040903
and 38 more
#VU88151 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-38709
CWE-113 Medium
No
No
14.6 23G80 04.04.2024 SB2024040458
SB2024040502
SB2024040903
and 63 more
#VU87852 - Improper Validation of Certificate with Host Mismatch
CVE-2024-2466
CWE-297 Medium
No
No
12.7.6 21H1320, 13.6.8 22G820, 14.6 23G80 27.03.2024 SB2024032713
SB2024032748
SB2024061844
and 14 more
#VU87850 - Missing Release of Resource after Effective Lifetime
CVE-2024-2398
CWE-772 Medium
No
No
12.7.6 21H1320, 13.6.8 22G820, 14.6 23G80 27.03.2024 SB2024032713
SB2024032740
SB2024032744
and 106 more
#VU87848 - Improper Certificate Validation
CVE-2024-2379
CWE-295 Low
No
No
12.7.6 21H1320, 13.6.8 22G820, 14.6 23G80 27.03.2024 SB2024032713
SB2024032748
SB2024061844
and 12 more
#VU87846 - Improper input validation
CVE-2024-2004
CWE-20 Low
No
No
12.7.6 21H1320, 13.6.8 22G820, 14.6 23G80 27.03.2024 SB2024032713
SB2024032740
SB2024032748
and 28 more


Showing elements 781 - 800 out of 974