cbcvebase.

Apple iOS vulnerabilities

1,765 known vulnerabilities affecting apple/ios.

Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7

Vulnerabilities

Page 48 of 89
CVE-2016-1717P3HIGHCVSS 7.8v9.2.1
CVE-2016-1717 [HIGH] CVE-2016-1717: iOS 9.2.1 Apple Security Update: About the security content of iOS 9.2.1 Product: iOS Version: 9.2.1 CVE: CVE-2016-1717 Component: CVE-ID
apple
CVE-2016-4627P4HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4627 [HIGH] CVE-2016-4627: iOS 9.3.3 Apple Security Update: About the security content of iOS 9.3.3 Product: iOS Version: 9.3.3 CVE: CVE-2016-4627 Component: IOAcceleratorFamily Impact: A local user may be able to execute arbitrary code with kernel privileges Description: A null pointer dereference was addressed through improved validation.
apple
CVE-2016-4626P4HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4626 [HIGH] CVE-2016-4626: iOS 9.3.3 Apple Security Update: About the security content of iOS 9.3.3 Product: iOS Version: 9.3.3 CVE: CVE-2016-4626 Component: IOHIDFamily Impact: A local user may be able to execute arbitrary code with kernel privileges Description: A null pointer dereference was addressed through improved input validation.
apple
CVE-2016-1832P3HIGHCVSS 7.8v9.3.2
CVE-2016-1832 [HIGH] CVE-2016-1832: iOS 9.3.2 Apple Security Update: About the security content of iOS 9.3.2 Product: iOS Version: 9.3.2 CVE: CVE-2016-1832 Component: CVE-ID Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2022-32887P3HIGHCVSS 7.8≥ unspecified, < 162022-11-01
CVE-2022-32887 [HIGH] CVE-2022-32887: The issue was addressed with improved memory handling. This issue is fixed in iOS 16. An app may be The issue was addressed with improved memory handling. This issue is fixed in iOS 16. An app may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2022-32889P3HIGHCVSS 7.8≥ unspecified, < 162022-11-01
CVE-2022-32889 [HIGH] CVE-2022-32889: The issue was addressed with improved memory handling. This issue is fixed in iOS 16, watchOS 9. An The issue was addressed with improved memory handling. This issue is fixed in iOS 16, watchOS 9. An app may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-9900P3HIGHCVSS 7.8≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-22
CVE-2020-9900 [HIGH] CWE-59 CVE-2020-9900: An issue existed within the path validation logic for symlinks. This issue was addressed with improv An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. A local attacker may be able to elevate their privileges.
nvd
CVE-2020-9901P3HIGHCVSS 7.8≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-22
CVE-2020-9901 [HIGH] CWE-59 CVE-2020-9901: An issue existed within the path validation logic for symlinks. This issue was addressed with improv An issue existed within the path validation logic for symlinks. This issue was addressed with improved path sanitization. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. A local attacker may be able to elevate their privileges.
nvd
CVE-2022-32865P3HIGHCVSS 7.8v162022-09-12
CVE-2022-32865 [HIGH] CVE-2022-32865: iOS 16 Apple Security Update: About the security content of iOS 16 Product: iOS Version: 16 CVE: CVE-2022-32865 Component: DriverKit Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2019-8529P3HIGHCVSS 7.8≥ unspecified, < iOS 12.22019-12-18
CVE-2019-8529 [HIGH] CWE-787 CVE-2019-8529: A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 1 A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2017-7063P4HIGHCVSS 7.5v10.3.32017-07-19
CVE-2017-7063 [HIGH] CVE-2017-7063: iOS 10.3.3 Apple Security Update: About the security content of iOS 10.3.3 Product: iOS Version: 10.3.3 CVE: CVE-2017-7063 Component: Messages Impact: A remote attacker may cause an unexpected application termination Description: A memory consumption issue was addressed through improved memory handling.
apple
CVE-2015-6992P3HIGHCVSS 7.5v9.1
CVE-2015-6992 [HIGH] CVE-2015-6992: iOS 9.1 Apple Security Update: About the security content of iOS 9.1 Product: iOS Version: 9.1 CVE: CVE-2015-6992 Component: CVE-ID
apple
CVE-2015-6975P3HIGHCVSS 7.5v9.1
CVE-2015-6975 [HIGH] CVE-2015-6975: iOS 9.1 Apple Security Update: About the security content of iOS 9.1 Product: iOS Version: 9.1 CVE: CVE-2015-6975 Component: CVE-ID
apple
CVE-2015-7017P3HIGHCVSS 7.5v9.1
CVE-2015-7017 [HIGH] CVE-2015-7017: iOS 9.1 Apple Security Update: About the security content of iOS 9.1 Product: iOS Version: 9.1 CVE: CVE-2015-7017 Component: CVE-ID
apple
CVE-2017-2461P3HIGHCVSS 7.5v10.32017-03-27
CVE-2017-2461 [HIGH] CVE-2017-2461: iOS 10.3 Apple Security Update: About the security content of iOS 10.3 Product: iOS Version: 10.3 CVE: CVE-2017-2461 Component: CoreText Impact: Processing a maliciously crafted text message may lead to application denial of service Description: A resource exhaustion issue was addressed through improved input validation.
apple
CVE-2015-5775P3HIGHCVSS 7.5v8.4.1
CVE-2015-5775 [HIGH] CVE-2015-5775: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-5775 Component: CVE-ID
apple
CVE-2015-3804P3HIGHCVSS 7.5v8.4.1
CVE-2015-3804 [HIGH] CVE-2015-3804: iOS 8.4.1 Apple Security Update: About the security content of iOS 8.4.1 Product: iOS Version: 8.4.1 CVE: CVE-2015-3804 Component: CVE-ID
apple
CVE-2015-3717P3HIGHCVSS 7.5v8.4
CVE-2015-3717 [HIGH] CVE-2015-3717: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3717 Component: CVE-ID
apple
CVE-2021-36690P3HIGHCVSS 7.5v162022-09-12
CVE-2021-36690 [HIGH] CVE-2021-36690: iOS 16 Apple Security Update: About the security content of iOS 16 Product: iOS Version: 16 CVE: CVE-2021-36690 Component: CVE-2021-36690
apple
CVE-2014-3192P4HIGHCVSS 7.5v8.1.3
CVE-2014-3192 [HIGH] CVE-2014-3192: iOS 8.1.3 Apple Security Update: About the security content of iOS 8.1.3 Product: iOS Version: 8.1.3 CVE: CVE-2014-3192 Component: CVE-ID
apple
Apple iOS vulnerabilities | cvebase