Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 48 of 89
CVE-2017-2398P3HIGHCVSS 7.8v10.32017-03-27
CVE-2017-2398 [HIGH] CVE-2017-2398: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2398
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed through improved input validation.
apple
CVE-2016-1830P3HIGHCVSS 7.8v9.3.2
CVE-2016-1830 [HIGH] CVE-2016-1830: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1830
Component: CVE-ID
Impact: A local attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A memory corruption issue was addressed through improved input validation.
apple
CVE-2017-13830P3HIGHCVSS 7.8v112017-09-19
CVE-2017-13830 [HIGH] CVE-2017-13830: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-13830
Component: HFS
Impact: An application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4131P3HIGHCVSS 7.8v11.32018-03-29
CVE-2018-4131 [HIGH] CVE-2018-4131: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4131
Component: WindowServer
Impact: An unprivileged application may be able to log keystrokes entered into other applications even when secure input mode is enabled
Description: By scanning key states, an unprivileged application could log keystrokes entered into other applications even when secure input mode was enabled. This issue was addressed by
apple
CVE-2018-4412P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4412 [HIGH] CVE-2018-4412: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4412
Component: CoreFoundation
Impact: A malicious application may be able to elevate privileges
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2018-4414P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4414 [HIGH] CVE-2018-4414: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4414
Component: CoreFoundation
Impact: An application may be able to gain elevated privileges
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2018-4419P3HIGHCVSS 7.8v12.12018-10-30
CVE-2018-4419 [HIGH] CVE-2018-4419: iOS 12.1
Apple Security Update: About the security content of iOS 12.1
Product: iOS
Version: 12.1
CVE: CVE-2018-4419
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4337P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4337 [HIGH] CVE-2018-4337: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4337
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4383P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4383 [HIGH] CVE-2018-4383: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4383
Component: IOKit
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2018-4408P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4408 [HIGH] CVE-2018-4408: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4408
Component: IOHIDFamily
Impact: A malicious application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2018-4426P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4426 [HIGH] CVE-2018-4426: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4426
Component: Grand Central Dispatch
Impact: An application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4340P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4340 [HIGH] CVE-2018-4340: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4340
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4336P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4336 [HIGH] CVE-2018-4336: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4336
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4401P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4401 [HIGH] CVE-2018-4401: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4401
Component: IOUserEthernet
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4425P3HIGHCVSS 7.8v122018-09-17
CVE-2018-4425 [HIGH] CVE-2018-4425: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4425
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2018-4461P3HIGHCVSS 7.8v12.1.12018-12-05
CVE-2018-4461 [HIGH] CVE-2018-4461: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4461
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2018-4447P3HIGHCVSS 7.8v12.1.12018-12-05
CVE-2018-4447 [HIGH] CVE-2018-4447: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4447
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2017-2499P3HIGHCVSS 7.8v10.3.22017-05-15
CVE-2017-2499 [HIGH] CVE-2017-2499: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-2499
Component: WebKit Web Inspector
Impact: An application may be able to execute unsigned code
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2019-6202P3HIGHCVSS 7.8≥ unspecified, < iOS 12.1.32019-03-05
CVE-2019-6202 [HIGH] CWE-125 CVE-2019-6202: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, watchOS 5.1.3. A malicious application may be able to elevate privileges.
nvdapple
CVE-2019-8552P3HIGHCVSS 7.8≥ unspecified, < iOS 12.22019-12-18
CVE-2019-8552 [HIGH] CWE-665 CVE-2019-8552: A memory initialization issue was addressed with improved memory handling. This issue is fixed in iO
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to elevate privileges.
nvdapple