Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 49 of 89
CVE-2018-4394P3HIGHCVSS 7.8v12.12018-10-30
CVE-2018-4394 [HIGH] CVE-2018-4394: iOS 12.1
Apple Security Update: About the security content of iOS 12.1
Product: iOS
Version: 12.1
CVE: CVE-2018-4394
Component: ICU
Impact: Processing a maliciously crafted string may lead to heap corruption
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2019-8665P3HIGHCVSS 7.5≥ unspecified, < iOS 12.42019-12-18
CVE-2019-8665 [HIGH] CWE-20 CVE-2019-8665: A denial of service issue was addressed with improved validation. This issue is fixed in iOS 12.4, w
A denial of service issue was addressed with improved validation. This issue is fixed in iOS 12.4, watchOS 5.3. A remote attacker may cause an unexpected application termination.
nvdapple
CVE-2015-3703P3MEDIUMCVSS 6.8v8.4
CVE-2015-3703 [MEDIUM] CVE-2015-3703: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3703
Component: CVE-ID
apple
CVE-2020-9931P3HIGHCVSS 7.5≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-16
CVE-2020-9931 [HIGH] CWE-20 CVE-2020-9931: A denial of service issue was addressed with improved input validation. This issue is fixed in iOS 1
A denial of service issue was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6. A remote attacker may cause an unexpected application termination.
nvd
CVE-2015-5942P3MEDIUMCVSS 6.8v9.1
CVE-2015-5942 [MEDIUM] CVE-2015-5942: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-5942
Component: CVE-2015-5942
apple
CVE-2018-4465P3HIGHCVSS 7.8v12.1.12018-12-05
CVE-2018-4465 [HIGH] CVE-2018-4465: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4465
Component: Disk Images
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2015-5927P3MEDIUMCVSS 6.8v9.1
CVE-2015-5927 [MEDIUM] CVE-2015-5927: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-5927
Component: CVE-ID
apple
CVE-2020-9825P3HIGHCVSS 7.8≥ unspecified, < iOS 13.5 and iPadOS 13.52020-06-09
CVE-2020-9825 [HIGH] CVE-2020-9825: An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.5
An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5. A malicious application may be able to bypass Privacy preferences.
nvd
CVE-2015-3694P3MEDIUMCVSS 6.8v8.4
CVE-2015-3694 [MEDIUM] CVE-2015-3694: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3694
Component: CVE-ID
apple
CVE-2015-3719P3MEDIUMCVSS 6.8v8.4
CVE-2015-3719 [MEDIUM] CVE-2015-3719: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3719
Component: CVE-ID
apple
CVE-2015-1098P3HIGHCVSS 7.3v8.3
CVE-2015-1098 [HIGH] CVE-2015-1098: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1098
Component: CVE-ID
apple
CVE-2016-4653P3HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4653 [HIGH] CVE-2016-4653: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-4653
Component: Kernel
Impact: A local user may be able to execute arbitrary code with kernel privileges
Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2015-3723P3MEDIUMCVSS 6.8v8.4
CVE-2015-3723 [MEDIUM] CVE-2015-3723: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3723
Component: CVE-ID
apple
CVE-2019-8633P3HIGHCVSS 7.5≥ unspecified, < 12.32020-10-27
CVE-2019-8633 [HIGH] CWE-20 CVE-2019-8633: A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Moja
A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, tvOS 12.3, watchOS 5.3. An application may be able to read restricted memory.
nvdapple
CVE-2016-4582P3HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4582 [HIGH] CVE-2016-4582: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-4582
Component: Kernel
Impact: A local user may be able to execute arbitrary code with kernel privileges
Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2016-1832P3HIGHCVSS 7.8v9.3.2
CVE-2016-1832 [HIGH] CVE-2016-1832: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1832
Component: CVE-ID
Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2016-1722P3HIGHCVSS 7.8v9.2.1
CVE-2016-1722 [HIGH] CVE-2016-1722: iOS 9.2.1
Apple Security Update: About the security content of iOS 9.2.1
Product: iOS
Version: 9.2.1
CVE: CVE-2016-1722
Component: CVE-ID
apple
CVE-2016-7630P3CRITICALCVSS 9.8v10.22016-12-12
CVE-2016-7630 [CRITICAL] CVE-2016-7630: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7630
Component: WebSheet
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: A sandbox escape issue was addressed through additional restrictions.
apple
CVE-2019-8631P3HIGHCVSS 7.5≥ unspecified, < 12.32020-10-27
CVE-2019-8631 [HIGH] CVE-2019-8631: A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.1
A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, tvOS 12.3. Users removed from an iMessage conversation may still be able to alter state.
nvdapple
CVE-2017-13874P3HIGHCVSS 7.5v11.22017-12-02
CVE-2017-13874 [HIGH] CVE-2017-13874: iOS 11.2
Apple Security Update: About the security content of iOS 11.2
Product: iOS
Version: 11.2
CVE: CVE-2017-13874
Component: Mail
Impact: Incorrect certificate is used for encryption
Description: A S/MIME issue existed in the handling of encrypted email. This issue was addressed through improved selection of the encryption certificate.
apple