Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 48 of 89
CVE-2016-1717P3HIGHCVSS 7.8v9.2.1
CVE-2016-1717 [HIGH] CVE-2016-1717: iOS 9.2.1
Apple Security Update: About the security content of iOS 9.2.1
Product: iOS
Version: 9.2.1
CVE: CVE-2016-1717
Component: CVE-ID
apple
CVE-2016-4627P4HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4627 [HIGH] CVE-2016-4627: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-4627
Component: IOAcceleratorFamily
Impact: A local user may be able to execute arbitrary code with kernel privileges
Description: A null pointer dereference was addressed through improved validation.
apple
CVE-2016-4626P4HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4626 [HIGH] CVE-2016-4626: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-4626
Component: IOHIDFamily
Impact: A local user may be able to execute arbitrary code with kernel privileges
Description: A null pointer dereference was addressed through improved input validation.
apple
CVE-2016-1832P3HIGHCVSS 7.8v9.3.2
CVE-2016-1832 [HIGH] CVE-2016-1832: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1832
Component: CVE-ID
Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2022-32887P3HIGHCVSS 7.8≥ unspecified, < 162022-11-01
CVE-2022-32887 [HIGH] CVE-2022-32887: The issue was addressed with improved memory handling. This issue is fixed in iOS 16. An app may be
The issue was addressed with improved memory handling. This issue is fixed in iOS 16. An app may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2022-32889P3HIGHCVSS 7.8≥ unspecified, < 162022-11-01
CVE-2022-32889 [HIGH] CVE-2022-32889: The issue was addressed with improved memory handling. This issue is fixed in iOS 16, watchOS 9. An
The issue was addressed with improved memory handling. This issue is fixed in iOS 16, watchOS 9. An app may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-9900P3HIGHCVSS 7.8≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-22
CVE-2020-9900 [HIGH] CWE-59 CVE-2020-9900: An issue existed within the path validation logic for symlinks. This issue was addressed with improv
An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. A local attacker may be able to elevate their privileges.
nvd
CVE-2020-9901P3HIGHCVSS 7.8≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-22
CVE-2020-9901 [HIGH] CWE-59 CVE-2020-9901: An issue existed within the path validation logic for symlinks. This issue was addressed with improv
An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. A local attacker may be able to elevate their privileges.
nvd
CVE-2022-32865P3HIGHCVSS 7.8v162022-09-12
CVE-2022-32865 [HIGH] CVE-2022-32865: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32865
Component: DriverKit
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2019-8529P3HIGHCVSS 7.8≥ unspecified, < iOS 12.22019-12-18
CVE-2019-8529 [HIGH] CWE-787 CVE-2019-8529: A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 1
A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2017-7063P4HIGHCVSS 7.5v10.3.32017-07-19
CVE-2017-7063 [HIGH] CVE-2017-7063: iOS 10.3.3
Apple Security Update: About the security content of iOS 10.3.3
Product: iOS
Version: 10.3.3
CVE: CVE-2017-7063
Component: Messages
Impact: A remote attacker may cause an unexpected application termination
Description: A memory consumption issue was addressed through improved memory handling.
apple
CVE-2015-6992P3HIGHCVSS 7.5v9.1
CVE-2015-6992 [HIGH] CVE-2015-6992: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-6992
Component: CVE-ID
apple
CVE-2015-6975P3HIGHCVSS 7.5v9.1
CVE-2015-6975 [HIGH] CVE-2015-6975: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-6975
Component: CVE-ID
apple
CVE-2015-7017P3HIGHCVSS 7.5v9.1
CVE-2015-7017 [HIGH] CVE-2015-7017: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-7017
Component: CVE-ID
apple
CVE-2017-2461P3HIGHCVSS 7.5v10.32017-03-27
CVE-2017-2461 [HIGH] CVE-2017-2461: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2461
Component: CoreText
Impact: Processing a maliciously crafted text message may lead to application denial of service
Description: A resource exhaustion issue was addressed through improved input validation.
apple
CVE-2015-5775P3HIGHCVSS 7.5v8.4.1
CVE-2015-5775 [HIGH] CVE-2015-5775: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-5775
Component: CVE-ID
apple
CVE-2015-3804P3HIGHCVSS 7.5v8.4.1
CVE-2015-3804 [HIGH] CVE-2015-3804: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3804
Component: CVE-ID
apple
CVE-2015-3717P3HIGHCVSS 7.5v8.4
CVE-2015-3717 [HIGH] CVE-2015-3717: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3717
Component: CVE-ID
apple
CVE-2021-36690P3HIGHCVSS 7.5v162022-09-12
CVE-2021-36690 [HIGH] CVE-2021-36690: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2021-36690
Component: CVE-2021-36690
apple
CVE-2014-3192P4HIGHCVSS 7.5v8.1.3
CVE-2014-3192 [HIGH] CVE-2014-3192: iOS 8.1.3
Apple Security Update: About the security content of iOS 8.1.3
Product: iOS
Version: 8.1.3
CVE: CVE-2014-3192
Component: CVE-ID
apple