Vulnerability Report: Apple Macintosh OS X

This vulnerability report for Apple Macintosh OS X contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Apple Macintosh OS X then you are more than welcome to contact us.

Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2015
2.2. Statistics for 2014
2.3. Statistics for 2013
2.4. Statistics for 2012
2.5. Statistics for 2011
2.6. Statistics for 2010
2.7. Statistics for 2009
2.8. Statistics for 2008
2.9. Statistics for 2007
2.10. Statistics for 2006
2.11. Statistics for 2005
2.12. Statistics for 2004
2.13. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2015
3.2. List for 2014
3.3. List for 2013
3.4. List for 2012
3.5. List for 2011
3.6. List for 2010
3.7. List for 2009
3.8. List for 2008
3.9. List for 2007
3.10. List for 2006
3.11. List for 2005
3.12. List for 2004
3.13. List for 2003

4. Send Feedback
Vendor, Links, and Unpatched Vulnerabilities

Vendor Apple

Product Link View Here (Link to external site)

Affected By 190 Secunia advisories
2356 Vulnerabilities

Monitor Product Receive alerts for this product

Secunia Advisory Statistics (2013)

Statistics based on Secunia advisories released in 2013.

PLEASE NOTE: The statistics provided should NOT be used to compare the overall security of products against one another. It is IMPORTANT to understand what the below comments mean when using the statistics, especially when using the statistics to compare the vulnerability aspects of different products.

Secunia advisories often cover multiple vulnerabilities. Consequently, the number of advisories issued for a product does not always reflect the number of security issues that have been disclosed. For instance, in 2006 Secunia issued more than 5,000 advisories covering more than 9,000 vulnerabilities. This is counted AFTER removing duplicates generated by Linux distributions, issues in beta software, and what Secunia considers non-issues and fake issues that our competitors and other security vendors often write about.

It should also be noted that some operating systems (e.g. certain Linux distributions) bundle together a large number of software packages, and are therefore affected by vulnerabilities, which do not affect other operating systems (e.g. Microsoft Windows) that don't bundle together a similar amount of software packages.

Additionally, the number of unpatched vulnerabilities for a product may be affected by the fact that certain products (product bundles) consist mostly or solely of third party software (such as Linux distributions). Secunia tracks the number of issues fixed by the product vendor and not the issues reported in the third party software; this affects the statistics looking at unpatched issues A direct and fair comparison of unpatched issues for e.g. Microsoft Windows and Linux distributions is therefore NOT possible using the aggregated Secunia statistics. Such a comparison can only be made by tracking the upstream third party software included in Linux distributions and combining this with Linux distributions' own patches before comparing this with the aggregated statistics for Microsoft Windows operating systems.

Factors such as vendor response times and ability to properly fix vulnerabilities should also be considered when comparing products. Writing 100% secure code is virtually impossible, hence the vendor's responsiveness, willingness, and ability to provide quality patches to all its customers in a fast a reliable way is at least as important as the sheer number of vulnerabilities when considering the security of a product.

Please read the text associated with each graph to interpret the graph correctly.

Month by Month
The "Month by Month" graph below shows the number of issued Secunia advisories affecting Apple Macintosh OS X on a month-by-month basis.

This can be used to see how many Secunia advisories are being reported in this product.

Use This Graph On Your Website:

Solution Status
The "Solution Status" pie graph below shows the percentages of "Unpatched", "Vendor Patched", "Vendor Workaround" and "Partial Fixed" Secunia advisories affecting Apple Macintosh OS X.

This can be used to get a quick overview of how many unresolved issues this product has.

Use This Graph On Your Website:

The "Criticality" pie graph below shows the percentages of "Extremely", "Highly", "Moderately", "Less", and "Not" critical Secunia advisories affecting Apple Macintosh OS X.

This can be used to get a quick overview of how severe the issued Secunia advisories that affect this product have been.

Use This Graph On Your Website:

The "Where" pie graph below shows the percentages of "From remote", "From local network", and "Local system" Secunia advisories affecting Apple Macintosh OS X.

This can be used to compare the attack vectors of the Secunia advisories that have been issued for this product.

Use This Graph On Your Website:

The "Impact" pie graph below shows the percentages of all Secunia Impact categories based on Secunia advisories affecting Apple Macintosh OS X.

This can be used to see if this product seems to have a problem with specific types of vulnerabilities.

Use This Graph On Your Website:

Discuss this Product
A new thread in our forum is automatically created for each Product. Activate the thread by commenting/discussing below.
Subject: Apple Macintosh OS X 
User Message
Caimbul RE: Apple Macintosh OS X
Member 12th May, 2010 23:34
Score: 4
Posts: 1
User Since: 12th May 2010
System Score: N/A
Location: CA
Last edited on 12th May, 2010 23:34
I would like to know why the Product page for OSX doesn't have a section on unpatched Advisories.
I mean that is the whole reason why people would use this page. We wouldn't really care (although the numbers do cause concern) about the quantity of advisories and vulnerabilities. We need to know how many are still unpatched.
There is a section for Win7, XP, even IBM OS/400 6.x..
Was this reply relevant?
Karthik2010 RE: Apple Macintosh OS X
Member 7th Aug, 2010 05:56
Score: 1
Posts: 1
User Since: 7th Aug 2010
System Score: N/A
Location: ES
Last edited on 7th Aug, 2010 05:56
There is a section for Windows XP (Windows NT 5.1), Windows Vista (Windows NT 6.0) and Windows 7 (Windows NT 6.1), ¿ Where are the sections for Panther (OS X 10.3), Tiger (OS X 10.4), Leopard (OS X 10.5) and Snow Leopard (OS X 10.6)?
Was this reply relevant?
RichardD RE: Apple Macintosh OS X
Member 11th Nov, 2010 22:02
Score: 7
Posts: 5
User Since: 4th Mar 2010
System Score: N/A
Location: UK
Last edited on 11th Nov, 2010 22:11
Take a look at the listings for most OSs or applications. Each listing has a title similar to "Product - type vulnerability" or "Product - multiple vulnerabilities".

Now look at the listings for Mac OS (any version). With the exception of the latest entry, all other entries have titles like "Mac OS version patch fixes type vulnerability" or "Mac OS version patch fixes multiple vulnerabilities".

Maybe the staff at Secunia are Mac fan-boys who can't bring themselves to believe that their beloved OS could have a "vulnerability" and console themselves by calling it a "patch" instead?
Was this reply relevant?
ddmarshall RE: Apple Macintosh OS X
Dedicated Contributor 11th Nov, 2010 23:19
Score: 1238
Posts: 980
User Since: 8th Nov 2008
System Score: 98%
Location: UK
I don't think you'll start a Mac v PC war here.

Strangely, all the products Secunia sells are for Windows. I doubt they pay much attention to Apple. They are probably just listing them for completeness.

This answer is provided “as-is.” You bear the risk of using it.
Was this reply relevant?


RE: Apple Macintosh OS X
This reply has been minimised due to a negative Relevancy Score.


You must be logged in to post a comment.