cbcvebase.

Apple iOS vulnerabilities

1,765 known vulnerabilities affecting apple/ios.

Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7

Vulnerabilities

Page 25 of 89
CVE-2017-13849P4MEDIUMCVSS 5.5PoCv11.12017-10-31
CVE-2017-13849 [MEDIUM] CVE-2017-13849: iOS 11.1 Apple Security Update: About the security content of iOS 11.1 Product: iOS Version: 11.1 CVE: CVE-2017-13849 Component: CoreText Impact: Processing a maliciously crafted text file may lead to an unexpected application termination Description: A denial of service issue was addressed through improved memory handling.
apple
CVE-2018-4110P3CRITICALCVSS 9.8v11.32018-03-29
CVE-2018-4110 [CRITICAL] CVE-2018-4110: iOS 11.3 Apple Security Update: About the security content of iOS 11.3 Product: iOS Version: 11.3 CVE: CVE-2018-4110 Component: Web App Impact: Cookies may unexpectedly persist in web app Description: A cookie management issue was addressed with improved state management.
apple
CVE-2016-7663P3CRITICALCVSS 9.8v10.22016-12-12
CVE-2016-7663 [CRITICAL] CVE-2016-7663: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7663 Component: CoreFoundation Impact: Processing malicious strings may lead to an unexpected application termination or arbitrary code execution Description: A memory corruption issue existed in the processing of strings. This issue was addressed through improved bounds checking.
apple
CVE-2017-9233P3HIGHCVSS 7.5v112017-09-19
CVE-2017-9233 [HIGH] CVE-2017-9233: iOS 11 Apple Security Update: About the security content of iOS 11 Product: iOS Version: 11 CVE: CVE-2017-9233 Component: CVE-2017-9233 Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2018-16860P3HIGHCVSS 7.5v12.42019-07-22
CVE-2018-16860 [HIGH] CVE-2018-16860: iOS 12.4 Apple Security Update: About the security content of iOS 12.4 Product: iOS Version: 12.4 CVE: CVE-2018-16860 Component: Heimdal Impact: An issue existed in Samba that may allow attackers to perform unauthorized actions by intercepting communications between services Description: This issue was addressed with improved checks to prevent unauthorized actions.
apple
CVE-2015-7987P3CRITICALCVSS 9.8v9.1
CVE-2015-7987 [CRITICAL] CVE-2015-7987: iOS 9.1 Apple Security Update: About the security content of iOS 9.1 Product: iOS Version: 9.1 CVE: CVE-2015-7987 Component: CVE-ID Impact: A local application may be able to cause a denial of service Description: A null pointer dereference issue was addressed through improved memory handling.
apple
CVE-2018-4332P3CRITICALCVSS 9.8v122018-09-17
CVE-2018-4332 [CRITICAL] CVE-2018-4332: iOS 12 Apple Security Update: About the security content of iOS 12 Product: iOS Version: 12 CVE: CVE-2018-4332 Component: Heimdal Impact: An application may be able to execute arbitrary code with system privileges Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2015-3768P3CRITICALCVSS 9.3v8.4.1
CVE-2015-3768 [CRITICAL] CVE-2015-3768: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3768 Component: CVE-ID
apple
CVE-2019-8756P3CRITICALCVSS 9.8≥ unspecified, < 132020-10-27
CVE-2019-8756 [CRITICAL] CWE-787 CVE-2019-8756: Multiple memory corruption issues were addressed with improved input validation. This issue is fixed Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 7.14, iCloud for Windows 10.7, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iTunes 12.10.1 for Windows. Multiple issues in libxml2.
nvdapple
CVE-2019-8749P3CRITICALCVSS 9.8≥ unspecified, < 132020-10-27
CVE-2019-8749 [CRITICAL] CWE-787 CVE-2019-8749: Multiple memory corruption issues were addressed with improved input validation. This issue is fixed Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 7.14, iCloud for Windows 10.7, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iTunes 12.10.1 for Windows. Multiple issues in libxml2.
nvdapple
CVE-2017-7000P3HIGHCVSS 8.8v10.3.22017-05-15
CVE-2017-7000 [HIGH] CVE-2017-7000: iOS 10.3.2 Apple Security Update: About the security content of iOS 10.3.2 Product: iOS Version: 10.3.2 CVE: CVE-2017-7000 Component: SQLite Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2017-5130P3HIGHCVSS 8.8v112017-09-19
CVE-2017-5130 [HIGH] CVE-2017-5130: iOS 11 Apple Security Update: About the security content of iOS 11 Product: iOS Version: 11 CVE: CVE-2017-5130 Component: CVE-2017-9233 Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2016-1859P3HIGHCVSS 8.8v9.3.2
CVE-2016-1859 [HIGH] CVE-2016-1859: iOS 9.3.2 Apple Security Update: About the security content of iOS 9.3.2 Product: iOS Version: 9.3.2 CVE: CVE-2016-1859 Component: CVE-ID
apple
CVE-2016-1807P4MEDIUMCVSS 5.1PoCv9.3.2
CVE-2016-1807 [MEDIUM] CVE-2016-1807: iOS 9.3.2 Apple Security Update: About the security content of iOS 9.3.2 Product: iOS Version: 9.3.2 CVE: CVE-2016-1807 Component: CVE-ID
apple
CVE-2016-9063P3CRITICALCVSS 9.8v112017-09-19
CVE-2016-9063 [CRITICAL] CVE-2016-9063: iOS 11 Apple Security Update: About the security content of iOS 11 Product: iOS Version: 11 CVE: CVE-2016-9063 Component: CVE-2016-9063
apple
CVE-2018-4191P3HIGHCVSS 8.8v122018-09-17
CVE-2018-4191 [HIGH] CVE-2018-4191: iOS 12 Apple Security Update: About the security content of iOS 12 Product: iOS Version: 12 CVE: CVE-2018-4191 Component: WebKit Impact: Unexpected interaction causes an ASSERT failure Description: A memory corruption issue was addressed with improved validation.
apple
CVE-2018-4316P3HIGHCVSS 8.8v122018-09-17
CVE-2018-4316 [HIGH] CVE-2018-4316: iOS 12 Apple Security Update: About the security content of iOS 12 Product: iOS Version: 12 CVE: CVE-2018-4316 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2016-7632P3HIGHCVSS 8.8v10.22016-12-12
CVE-2016-7632 [HIGH] CVE-2016-7632: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7632 Component: WebKit Impact: Visiting a maliciously crafted webpage may lead to an unexpected application termination or arbitrary code execution Description: A memory corruption issue was addressed through improved state management.
apple
CVE-2016-7611P3HIGHCVSS 8.8v10.22016-12-12
CVE-2016-7611 [HIGH] CVE-2016-7611: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7611 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: Multiple memory corruption issues were addressed through improved state management.
apple
CVE-2016-7639P3HIGHCVSS 8.8v10.22016-12-12
CVE-2016-7639 [HIGH] CVE-2016-7639: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7639 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: Multiple memory corruption issues were addressed through improved state management.
apple