Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 25 of 89
CVE-2017-13849P4MEDIUMCVSS 5.5PoCv11.12017-10-31
CVE-2017-13849 [MEDIUM] CVE-2017-13849: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13849
Component: CoreText
Impact: Processing a maliciously crafted text file may lead to an unexpected application termination
Description: A denial of service issue was addressed through improved memory handling.
apple
CVE-2018-4110P3CRITICALCVSS 9.8v11.32018-03-29
CVE-2018-4110 [CRITICAL] CVE-2018-4110: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4110
Component: Web App
Impact: Cookies may unexpectedly persist in web app
Description: A cookie management issue was addressed with improved state management.
apple
CVE-2016-7663P3CRITICALCVSS 9.8v10.22016-12-12
CVE-2016-7663 [CRITICAL] CVE-2016-7663: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7663
Component: CoreFoundation
Impact: Processing malicious strings may lead to an unexpected application termination or arbitrary code execution
Description: A memory corruption issue existed in the processing of strings. This issue was addressed through improved bounds checking.
apple
CVE-2017-9233P3HIGHCVSS 7.5v112017-09-19
CVE-2017-9233 [HIGH] CVE-2017-9233: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-9233
Component: CVE-2017-9233
Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2018-16860P3HIGHCVSS 7.5v12.42019-07-22
CVE-2018-16860 [HIGH] CVE-2018-16860: iOS 12.4
Apple Security Update: About the security content of iOS 12.4
Product: iOS
Version: 12.4
CVE: CVE-2018-16860
Component: Heimdal
Impact: An issue existed in Samba that may allow attackers to perform unauthorized actions by intercepting communications between services
Description: This issue was addressed with improved checks to prevent unauthorized actions.
apple
CVE-2015-7987P3CRITICALCVSS 9.8v9.1
CVE-2015-7987 [CRITICAL] CVE-2015-7987: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-7987
Component: CVE-ID
Impact: A local application may be able to cause a denial of service
Description: A null pointer dereference issue was addressed through improved memory handling.
apple
CVE-2018-4332P3CRITICALCVSS 9.8v122018-09-17
CVE-2018-4332 [CRITICAL] CVE-2018-4332: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4332
Component: Heimdal
Impact: An application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2015-3768P3CRITICALCVSS 9.3v8.4.1
CVE-2015-3768 [CRITICAL] CVE-2015-3768: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3768
Component: CVE-ID
apple
CVE-2019-8756P3CRITICALCVSS 9.8≥ unspecified, < 132020-10-27
CVE-2019-8756 [CRITICAL] CWE-787 CVE-2019-8756: Multiple memory corruption issues were addressed with improved input validation. This issue is fixed
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 7.14, iCloud for Windows 10.7, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iTunes 12.10.1 for Windows. Multiple issues in libxml2.
nvdapple
CVE-2019-8749P3CRITICALCVSS 9.8≥ unspecified, < 132020-10-27
CVE-2019-8749 [CRITICAL] CWE-787 CVE-2019-8749: Multiple memory corruption issues were addressed with improved input validation. This issue is fixed
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13, iCloud for Windows 7.14, iCloud for Windows 10.7, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6, iTunes 12.10.1 for Windows. Multiple issues in libxml2.
nvdapple
CVE-2017-7000P3HIGHCVSS 8.8v10.3.22017-05-15
CVE-2017-7000 [HIGH] CVE-2017-7000: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-7000
Component: SQLite
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved input validation.
apple
CVE-2017-5130P3HIGHCVSS 8.8v112017-09-19
CVE-2017-5130 [HIGH] CVE-2017-5130: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-5130
Component: CVE-2017-9233
Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2016-1859P3HIGHCVSS 8.8v9.3.2
CVE-2016-1859 [HIGH] CVE-2016-1859: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1859
Component: CVE-ID
apple
CVE-2016-1807P4MEDIUMCVSS 5.1PoCv9.3.2
CVE-2016-1807 [MEDIUM] CVE-2016-1807: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1807
Component: CVE-ID
apple
CVE-2016-9063P3CRITICALCVSS 9.8v112017-09-19
CVE-2016-9063 [CRITICAL] CVE-2016-9063: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2016-9063
Component: CVE-2016-9063
apple
CVE-2018-4191P3HIGHCVSS 8.8v122018-09-17
CVE-2018-4191 [HIGH] CVE-2018-4191: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4191
Component: WebKit
Impact: Unexpected interaction causes an ASSERT failure
Description: A memory corruption issue was addressed with improved validation.
apple
CVE-2018-4316P3HIGHCVSS 8.8v122018-09-17
CVE-2018-4316 [HIGH] CVE-2018-4316: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4316
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2016-7632P3HIGHCVSS 8.8v10.22016-12-12
CVE-2016-7632 [HIGH] CVE-2016-7632: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7632
Component: WebKit
Impact: Visiting a maliciously crafted webpage may lead to an unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed through improved state management.
apple
CVE-2016-7611P3HIGHCVSS 8.8v10.22016-12-12
CVE-2016-7611 [HIGH] CVE-2016-7611: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7611
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved state management.
apple
CVE-2016-7639P3HIGHCVSS 8.8v10.22016-12-12
CVE-2016-7639 [HIGH] CVE-2016-7639: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7639
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved state management.
apple