Apple Ios18.2 And Ipados18.2 vulnerabilities
41 known vulnerabilities affecting apple/ios18.2_and_ipados18.2.
Total CVEs
41
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH14MEDIUM21LOW2
Vulnerabilities
Page 2 of 3
CVE-2024-54513MEDIUMCVSS 5.52024-12-11
CVE-2024-54513 [MEDIUM] CVE-2024-54513: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54513
Component: Crash Reporter
Impact: An app may be able to access sensitive user data
Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2024-54501MEDIUMCVSS 5.52024-12-11
CVE-2024-54501 [MEDIUM] CVE-2024-54501: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54501
Component: SceneKit
Impact: Processing a maliciously crafted file may lead to a denial of service
Description: The issue was addressed with improved checks.
apple
CVE-2024-54488MEDIUMCVSS 5.32024-12-11
CVE-2024-54488 [MEDIUM] CVE-2024-54488: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54488
Component: Accounts
Impact: Photos in the Hidden Photos Album may be viewed without authentication
Description: A logic issue was addressed with improved file handling.
apple
CVE-2024-54500MEDIUMCVSS 5.52024-12-11
CVE-2024-54500 [MEDIUM] CVE-2024-54500: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54500
Component: ImageIO
Impact: Processing a maliciously crafted image may result in disclosure of process memory
Description: The issue was addressed with improved checks.
apple
CVE-2024-45306MEDIUMCVSS 4.52024-12-11
CVE-2024-45306 [MEDIUM] CVE-2024-45306: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-45306
Component: CVE-2024-45306
apple
CVE-2024-54523MEDIUMCVSS 6.32024-12-11
CVE-2024-54523 [MEDIUM] CVE-2024-54523: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54523
Component: IOMobileFrameBuffer
Impact: An app may be able to corrupt coprocessor memory
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-54486MEDIUMCVSS 6.52024-12-11
CVE-2024-54486 [MEDIUM] CVE-2024-54486: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54486
Component: FontParser
Impact: Processing a maliciously crafted font may result in the disclosure of process memory
Description: The issue was addressed with improved checks.
apple
CVE-2024-54527MEDIUMCVSS 5.52024-12-11
CVE-2024-54527 [MEDIUM] CVE-2024-54527: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54527
Component: AppleMobileFileIntegrity
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved checks.
apple
CVE-2024-54478MEDIUMCVSS 6.52024-12-11
CVE-2024-54478 [MEDIUM] CVE-2024-54478: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54478
Component: ICU
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2024-54503MEDIUMCVSS 4.22024-12-11
CVE-2024-54503 [MEDIUM] CVE-2024-54503: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54503
Component: Audio
Impact: Muting a call while ringing may not result in mute being enabled
Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2024-54494MEDIUMCVSS 5.92024-12-11
CVE-2024-54494 [MEDIUM] CVE-2024-54494: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54494
Component: Kernel
Impact: An attacker may be able to create a read-only memory mapping that can be written to
Description: A race condition was addressed with additional validation.
apple
CVE-2024-54550MEDIUMCVSS 4.02024-12-11
CVE-2024-54550 [MEDIUM] CVE-2024-54550: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54550
Component: Contacts
Impact: An app may be able to view autocompleted contact information from Messages and Mail in system logs
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-54507MEDIUMCVSS 5.52024-12-11
CVE-2024-54507 [MEDIUM] CVE-2024-54507: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54507
Component: Kernel
Impact: An attacker with user privileges may be able to read kernel memory
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2024-54492MEDIUMCVSS 5.92024-12-11
CVE-2024-54492 [MEDIUM] CVE-2024-54492: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54492
Component: Passwords
Impact: An attacker in a privileged network position may be able to alter network traffic
Description: This issue was addressed by using HTTPS when sending information over the network.
apple
CVE-2024-54541MEDIUMCVSS 5.52024-12-11
CVE-2024-54541 [MEDIUM] CVE-2024-54541: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54541
Component: APFS
Impact: An app may be able to access user-sensitive data
Description: This issue was addressed through improved state management.
apple
CVE-2024-54510MEDIUMCVSS 5.12024-12-11
CVE-2024-54510 [MEDIUM] CVE-2024-54510: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54510
Component: Kernel
Impact: An app may be able to leak sensitive kernel state
Description: A race condition was addressed with improved locking.
apple
CVE-2024-54502MEDIUMCVSS 6.52024-12-11
CVE-2024-54502 [MEDIUM] CVE-2024-54502: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54502
Component: WebKit
Impact: Processing maliciously crafted web content may lead to an unexpected process crash
Description: The issue was addressed with improved checks.
apple
CVE-2024-54518MEDIUMCVSS 5.32024-12-11
CVE-2024-54518 [MEDIUM] CVE-2024-54518: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54518
Component: IOMobileFrameBuffer
Impact: An app may be able to corrupt coprocessor memory
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-44246MEDIUMCVSS 5.32024-12-11
CVE-2024-44246 [MEDIUM] CVE-2024-44246: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-44246
Component: Safari
Impact: On a device with Private Relay enabled, adding a website to the Safari Reading List may reveal the originating IP address to the website
Description: The issue was addressed with improved routing of Safari-originated requests.
apple
CVE-2024-54485LOWCVSS 2.42024-12-11
CVE-2024-54485 [LOW] CVE-2024-54485: iOS18.2 and iPadOS18.2
Apple Security Update: About the security content of iOS18.2 and iPadOS18.2
Product: iOS18.2 and iPadOS18.2
CVE: CVE-2024-54485
Component: VoiceOver
Impact: An attacker with physical access to an iOS device may be able to view notification content from the lock screen
Description: The issue was addressed by adding additional logic.
apple