Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 43 of 89
CVE-2017-2389P3HIGHCVSS 8.1v10.32017-03-27
CVE-2017-2389 [HIGH] CVE-2017-2389: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2389
Component: Safari
Impact: Processing maliciously crafted web content may present authentication sheets over arbitrary web sites
Description: A spoofing and denial-of-service issue existed in the handling of HTTP authentication. This issue was addressed through making HTTP authentication sheets non-modal.
apple
CVE-2016-4632P3HIGHCVSS 7.5v9.3.32016-07-18
CVE-2016-4632 [HIGH] CVE-2016-4632: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-4632
Component: ImageIO
Impact: A remote attacker may be able to cause a denial of service
Description: A memory consumption issue was addressed through improved memory handling.
apple
CVE-2015-6978P3MEDIUMCVSS 6.8v9.1
CVE-2015-6978 [MEDIUM] CVE-2015-6978: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-6978
Component: CVE-2015-5942
apple
CVE-2016-1818P3HIGHCVSS 7.8v9.3.2
CVE-2016-1818 [HIGH] CVE-2016-1818: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1818
Component: CVE-ID
apple
CVE-2018-4100P3HIGHCVSS 7.5v11.2.52018-01-23
CVE-2018-4100 [HIGH] CVE-2018-4100: iOS 11.2.5
Apple Security Update: About the security content of iOS 11.2.5
Product: iOS
Version: 11.2.5
CVE: CVE-2018-4100
Component: LinkPresentation
Impact: Processing a maliciously crafted text message may lead to application denial of service
Description: A resource exhaustion issue was addressed with improved input validation.
apple
CVE-2016-4733P3HIGHCVSS 7.8v102016-09-13
CVE-2016-4733 [HIGH] CVE-2016-4733: iOS 10
Apple Security Update: About the security content of iOS 10
Product: iOS
Version: 10
CVE: CVE-2016-4733
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved state management.
apple
CVE-2016-4650P3HIGHCVSS 7.8v9.3.2
CVE-2016-4650 [HIGH] CVE-2016-4650: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-4650
Component: CVE-ID
apple
CVE-2018-4343P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4343 [HIGH] CVE-2018-4343: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4343
Component: Heimdal
Impact: An application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4126P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4126 [HIGH] CVE-2018-4126: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4126
Component: CFNetwork
Impact: An application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2017-2407P3HIGHCVSS 7.8v10.32017-03-27
CVE-2017-2407 [HIGH] CVE-2017-2407: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2407
Component: FontParser
Impact: Parsing a maliciously crafted font file may lead to an unexpected application termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved input validation.
apple
CVE-2017-2406P3HIGHCVSS 7.8v10.32017-03-27
CVE-2017-2406 [HIGH] CVE-2017-2406: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2406
Component: FontParser
Impact: Processing a maliciously crafted font file may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved input validation.
apple
CVE-2017-2435P3HIGHCVSS 7.8v10.32017-03-27
CVE-2017-2435 [HIGH] CVE-2017-2435: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2435
Component: CoreText
Impact: Processing a maliciously crafted font file may lead to arbitrary code execution
Description: A memory corruption issue was addressed through improved input validation.
apple
CVE-2017-2487P3HIGHCVSS 7.8v10.32017-03-27
CVE-2017-2487 [HIGH] CVE-2017-2487: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2487
Component: FontParser
Impact: Processing a maliciously crafted font file may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved input validation.
apple
CVE-2016-1824P3HIGHCVSS 7.8v9.3.2
CVE-2016-1824 [HIGH] CVE-2016-1824: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1824
Component: CVE-ID
apple
CVE-2016-1750P3HIGHCVSS 7.8v9.3
CVE-2016-1750 [HIGH] CVE-2016-1750: iOS 9.3
Apple Security Update: About the security content of iOS 9.3
Product: iOS
Version: 9.3
CVE: CVE-2016-1750
Component: CVE-ID
apple
CVE-2017-2434P3CRITICALCVSS 9.8v10.32017-03-27
CVE-2017-2434 [CRITICAL] CVE-2017-2434: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2434
Component: HomeKit
Impact: Home Control may unexpectedly appear on Control Center
Description: A state issue existed in the handling of Home Control. This issue was addressed through improved validation.
apple
CVE-2017-2401P3HIGHCVSS 7.8v10.32017-03-27
CVE-2017-2401 [HIGH] CVE-2017-2401: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2401
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed through improved input validation.
apple
CVE-2017-7027P3HIGHCVSS 7.8v10.3.32017-07-19
CVE-2017-7027 [HIGH] CVE-2017-7027: iOS 10.3.3
Apple Security Update: About the security content of iOS 10.3.3
Product: iOS
Version: 10.3.3
CVE: CVE-2017-7027
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2017-7009P3HIGHCVSS 7.8v10.3.32017-07-19
CVE-2017-7009 [HIGH] CVE-2017-7009: iOS 10.3.3
Apple Security Update: About the security content of iOS 10.3.3
Product: iOS
Version: 10.3.3
CVE: CVE-2017-7009
Component: IOUSBFamily
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2017-7026P3HIGHCVSS 7.8v10.3.32017-07-19
CVE-2017-7026 [HIGH] CVE-2017-7026: iOS 10.3.3
Apple Security Update: About the security content of iOS 10.3.3
Product: iOS
Version: 10.3.3
CVE: CVE-2017-7026
Component: Kernel
Impact: An application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple