Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
227
Exploited in wild
30
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 2 of 89
CVE-2022-32883MEDIUMCVSS 5.5≥ unspecified, < 162022-09-20
CVE-2022-32883 [MEDIUM] CWE-284 CVE-2022-32883: A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.6,
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to read sensitive location information.
nvdapple
CVE-2022-32854MEDIUMCVSS 5.5≥ unspecified, < 162022-09-20
CVE-2022-32854 [MEDIUM] CVE-2022-32854: This issue was addressed with improved checks. This issue is fixed in iOS 15.7 and iPadOS 15.7, iOS
This issue was addressed with improved checks. This issue is fixed in iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to bypass Privacy preferences.
nvdapple
CVE-2022-32864MEDIUMCVSS 5.5≥ unspecified, < 162022-09-20
CVE-2022-32864 [MEDIUM] CVE-2022-32864: The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6, i
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to disclose kernel memory.
nvdapple
CVE-2022-32868MEDIUMCVSS 4.3≥ unspecified, < 162022-09-20
CVE-2022-32868 [MEDIUM] CVE-2022-32868: A logic issue was addressed with improved state management. This issue is fixed in Safari 16, iOS 16
A logic issue was addressed with improved state management. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. A website may be able to track users through Safari web extensions.
nvdapple
CVE-2022-32872LOWCVSS 2.4≥ unspecified, < 162022-09-20
CVE-2022-32872 [LOW] CWE-284 CVE-2022-32872: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 16, iOS 15.7 and
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 16, iOS 15.7 and iPadOS 15.7. A person with physical access to an iOS device may be able to access photos from the lock screen.
nvdapple
CVE-2022-46709CRITICALCVSS 9.8v162022-09-12
CVE-2022-46709 [CRITICAL] CVE-2022-46709: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-46709
Component: Wi-Fi
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2022-32865HIGHCVSS 7.8v162022-09-12
CVE-2022-32865 [HIGH] CVE-2022-32865: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32865
Component: DriverKit
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2022-26744HIGHCVSS 7.8v162022-09-12
CVE-2022-26744 [HIGH] CVE-2022-26744: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-26744
Component: GPU Drivers
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2022-32892HIGHCVSS 8.6v162022-09-12
CVE-2022-32892 [HIGH] CVE-2022-32892: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32892
Component: WebKit Sandboxing
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: An access issue was addressed with improvements to the sandbox.
apple
CVE-2021-36690HIGHCVSS 7.5v162022-09-12
CVE-2021-36690 [HIGH] CVE-2021-36690: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2021-36690
Component: CVE-2021-36690
apple
CVE-2022-32866HIGHCVSS 7.8v162022-09-12
CVE-2022-32866 [HIGH] CVE-2022-32866: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32866
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2022-32888HIGHCVSS 8.8v162022-09-12
CVE-2022-32888 [HIGH] CVE-2022-32888: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32888
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2022-32898HIGHCVSS 7.8v162022-09-12
CVE-2022-32898 [HIGH] CVE-2022-32898: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32898
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2022-22643HIGHCVSS 7.5v162022-09-12
CVE-2022-22643 [HIGH] CVE-2022-22643: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-22643
Component: FaceTime
Impact: A user may send audio and video in a FaceTime call without knowing that they have done so
Description: This issue was addressed with improved checks.
apple
CVE-2022-32793HIGHCVSS 7.5v162022-09-12
CVE-2022-32793 [HIGH] CVE-2022-32793: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32793
Component: GPU Drivers
Impact: An app may be able to disclose kernel memory
Description: Multiple out-of-bounds write issues were addressed with improved bounds checking.
apple
CVE-2022-32899HIGHCVSS 7.8v162022-09-12
CVE-2022-32899 [HIGH] CVE-2022-32899: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32899
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2022-32914HIGHCVSS 7.8v162022-09-12
CVE-2022-32914 [HIGH] CVE-2022-32914: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32914
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2022-42791HIGHCVSS 7.0v162022-09-12
CVE-2022-42791 [HIGH] CVE-2022-42791: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-42791
Component: Software Update
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with improved state handling.
apple
CVE-2022-42795HIGHCVSS 8.8v162022-09-12
CVE-2022-42795 [HIGH] CVE-2022-42795: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-42795
Component: Accelerate Framework
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A memory consumption issue was addressed with improved memory handling.
apple
CVE-2022-32877MEDIUMCVSS 5.5v162022-09-12
CVE-2022-32877 [MEDIUM] CVE-2022-32877: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32877
Component: AppleMobileFileIntegrity
Impact: An app may be able to access user-sensitive data
Description: A configuration issue was addressed with additional restrictions.
apple