Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 10 of 89
CVE-2017-6998P3HIGHCVSS 7.8PoCv10.3.22017-05-15
CVE-2017-6998 [HIGH] CVE-2017-6998: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-6998
Component: AVEVideoEncoder
Impact: An application may be able to gain kernel privileges
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-6995P3HIGHCVSS 7.8PoCv10.3.22017-05-15
CVE-2017-6995 [HIGH] CVE-2017-6995: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-6995
Component: AVEVideoEncoder
Impact: An application may be able to gain kernel privileges
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-6996P3HIGHCVSS 7.8PoCv10.3.22017-05-15
CVE-2017-6996 [HIGH] CVE-2017-6996: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-6996
Component: AVEVideoEncoder
Impact: An application may be able to gain kernel privileges
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-6994P3HIGHCVSS 7.8PoCv10.3.22017-05-15
CVE-2017-6994 [HIGH] CVE-2017-6994: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-6994
Component: AVEVideoEncoder
Impact: An application may be able to gain kernel privileges
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-6989P3HIGHCVSS 7.8PoCv10.3.22017-05-15
CVE-2017-6989 [HIGH] CVE-2017-6989: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-6989
Component: AVEVideoEncoder
Impact: An application may be able to gain kernel privileges
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2016-4669P3HIGHCVSS 7.8PoCv10.12016-10-24
CVE-2016-4669 [HIGH] CVE-2016-4669: iOS 10.1
Apple Security Update: About the security content of iOS 10.1
Product: iOS
Version: 10.1
CVE: CVE-2016-4669
Component: Kernel
Impact: A local user may be able to cause an unexpected system termination or arbitrary code execution in the kernel
Description: Multiple input validation issues existed in MIG generated code. These issues were addressed through improved validation.
apple
CVE-2017-2364P3MEDIUMCVSS 6.5PoCv10.32017-03-27
CVE-2017-2364 [MEDIUM] CVE-2017-2364: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2364
Component: WebKit
Impact: Processing maliciously crafted web content may exfiltrate data cross-origin
Description: Multiple validation issues existed in the handling of page loading. This issue was addressed through improved logic.
apple
CVE-2016-1828P3HIGHCVSS 7.8PoCv9.3.2
CVE-2016-1828 [HIGH] CVE-2016-1828: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1828
Component: CVE-ID
Impact: A local attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed through improved input validation.
apple
CVE-2016-1827P3HIGHCVSS 7.8PoCv9.3.2
CVE-2016-1827 [HIGH] CVE-2016-1827: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1827
Component: CVE-ID
Impact: A local attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed through improved input validation.
apple
CVE-2017-2367P3MEDIUMCVSS 6.5PoCv10.32017-03-27
CVE-2017-2367 [MEDIUM] CVE-2017-2367: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2367
Component: WebKit
Impact: A malicious website may exfiltrate data cross-origin
Description: A validation issue existed in the handling of page loading. This issue was addressed through improved logic.
apple
CVE-2017-2479P3MEDIUMCVSS 6.5PoCv10.32017-03-27
CVE-2017-2479 [MEDIUM] CVE-2017-2479: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2479
Component: WebKit
Impact: Processing maliciously crafted web content may exfiltrate data cross-origin
Description: A validation issue existed in element handling. This issue was addressed through improved validation.
apple
CVE-2017-2371P3MEDIUMCVSS 6.5PoCv10.2.12017-01-23
CVE-2017-2371 [MEDIUM] CVE-2017-2371: iOS 10.2.1
Apple Security Update: About the security content of iOS 10.2.1
Product: iOS
Version: 10.2.1
CVE: CVE-2017-2371
Component: WebKit
Impact: A malicious website can open popups
Description: An issue existed in the handling of blocking popups. This was addressed through improved input validation.
apple
CVE-2017-7089P3MEDIUMCVSS 6.1PoCv112017-09-19
CVE-2017-7089 [MEDIUM] CVE-2017-7089: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-7089
Component: WebKit
Impact: Processing maliciously crafted web content may lead to universal cross site scripting
Description: A logic issue existed in the handling of the parent-tab. This issue was addressed with improved state management.
apple
CVE-2016-1803P3HIGHCVSS 7.8PoCv9.3.2
CVE-2016-1803 [HIGH] CVE-2016-1803: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1803
Component: CVE-ID
apple
CVE-2016-1755P3HIGHCVSS 7.8PoCv9.3
CVE-2016-1755 [HIGH] CVE-2016-1755: iOS 9.3
Apple Security Update: About the security content of iOS 9.3
Product: iOS
Version: 9.3
CVE: CVE-2016-1755
Component: CVE-ID
apple
CVE-2016-1813P3HIGHCVSS 7.8PoCv9.3.2
CVE-2016-1813 [HIGH] CVE-2016-1813: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1813
Component: CVE-ID
apple
CVE-2019-6205P3HIGHCVSS 7.8PoC≥ unspecified, < iOS 12.1.32019-03-05
CVE-2019-6205 [HIGH] CWE-787 CVE-2019-6205: A memory corruption issue was addressed with improved lock state checking. This issue is fixed in iO
A memory corruption issue was addressed with improved lock state checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2. A malicious application may cause unexpected changes in memory shared between processes.
nvdapple
CVE-2019-8514P3HIGHCVSS 7.8PoC≥ unspecified, < iOS 12.22019-12-18
CVE-2019-8514 [HIGH] CVE-2019-8514: A logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS M
A logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. An application may be able to gain elevated privileges.
nvdapple
CVE-2017-2442P3MEDIUMCVSS 6.5PoCv10.32017-03-27
CVE-2017-2442 [MEDIUM] CVE-2017-2442: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2442
Component: WebKit JavaScript Bindings
Impact: Processing maliciously crafted web content may exfiltrate data cross-origin
Description: Multiple validation issues existed in the handling of page loading. This issue was addressed through improved logic.
apple
CVE-2019-8717P3HIGHCVSS 7.8PoCv132019-09-19
CVE-2019-8717 [HIGH] CVE-2019-8717: iOS 13
Apple Security Update: About the security content of iOS 13
Product: iOS
Version: 13
CVE: CVE-2019-8717
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple