cbcvebase.

Apple iOS vulnerabilities

1,765 known vulnerabilities affecting apple/ios.

Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7

Vulnerabilities

Page 49 of 89
CVE-2018-4394P3HIGHCVSS 7.8v12.12018-10-30
CVE-2018-4394 [HIGH] CVE-2018-4394: iOS 12.1 Apple Security Update: About the security content of iOS 12.1 Product: iOS Version: 12.1 CVE: CVE-2018-4394 Component: ICU Impact: Processing a maliciously crafted string may lead to heap corruption Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2019-8665P3HIGHCVSS 7.5≥ unspecified, < iOS 12.42019-12-18
CVE-2019-8665 [HIGH] CWE-20 CVE-2019-8665: A denial of service issue was addressed with improved validation. This issue is fixed in iOS 12.4, w A denial of service issue was addressed with improved validation. This issue is fixed in iOS 12.4, watchOS 5.3. A remote attacker may cause an unexpected application termination.
nvdapple
CVE-2015-3703P3MEDIUMCVSS 6.8v8.4
CVE-2015-3703 [MEDIUM] CVE-2015-3703: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3703 Component: CVE-ID
apple
CVE-2020-9931P3HIGHCVSS 7.5≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-16
CVE-2020-9931 [HIGH] CWE-20 CVE-2020-9931: A denial of service issue was addressed with improved input validation. This issue is fixed in iOS 1 A denial of service issue was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6. A remote attacker may cause an unexpected application termination.
nvd
CVE-2015-5942P3MEDIUMCVSS 6.8v9.1
CVE-2015-5942 [MEDIUM] CVE-2015-5942: iOS 9.1 Apple Security Update: About the security content of iOS 9.1 Product: iOS Version: 9.1 CVE: CVE-2015-5942 Component: CVE-2015-5942
apple
CVE-2018-4465P3HIGHCVSS 7.8v12.1.12018-12-05
CVE-2018-4465 [HIGH] CVE-2018-4465: iOS 12.1.1 Apple Security Update: About the security content of iOS 12.1.1 Product: iOS Version: 12.1.1 CVE: CVE-2018-4465 Component: Disk Images Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2015-5927P3MEDIUMCVSS 6.8v9.1
CVE-2015-5927 [MEDIUM] CVE-2015-5927: iOS 9.1 Apple Security Update: About the security content of iOS 9.1 Product: iOS Version: 9.1 CVE: CVE-2015-5927 Component: CVE-ID
apple
CVE-2020-9825P3HIGHCVSS 7.8≥ unspecified, < iOS 13.5 and iPadOS 13.52020-06-09
CVE-2020-9825 [HIGH] CVE-2020-9825: An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.5 An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5. A malicious application may be able to bypass Privacy preferences.
nvd
CVE-2015-3694P3MEDIUMCVSS 6.8v8.4
CVE-2015-3694 [MEDIUM] CVE-2015-3694: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3694 Component: CVE-ID
apple
CVE-2015-3719P3MEDIUMCVSS 6.8v8.4
CVE-2015-3719 [MEDIUM] CVE-2015-3719: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3719 Component: CVE-ID
apple
CVE-2015-1098P3HIGHCVSS 7.3v8.3
CVE-2015-1098 [HIGH] CVE-2015-1098: iOS 8.3 Apple Security Update: About the security content of iOS 8.3 Product: iOS Version: 8.3 CVE: CVE-2015-1098 Component: CVE-ID
apple
CVE-2016-4653P3HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4653 [HIGH] CVE-2016-4653: iOS 9.3.3 Apple Security Update: About the security content of iOS 9.3.3 Product: iOS Version: 9.3.3 CVE: CVE-2016-4653 Component: Kernel Impact: A local user may be able to execute arbitrary code with kernel privileges Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2015-3723P3MEDIUMCVSS 6.8v8.4
CVE-2015-3723 [MEDIUM] CVE-2015-3723: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3723 Component: CVE-ID
apple
CVE-2019-8633P3HIGHCVSS 7.5≥ unspecified, < 12.32020-10-27
CVE-2019-8633 [HIGH] CWE-20 CVE-2019-8633: A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Moja A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, tvOS 12.3, watchOS 5.3. An application may be able to read restricted memory.
nvdapple
CVE-2016-4582P3HIGHCVSS 7.8v9.3.32016-07-18
CVE-2016-4582 [HIGH] CVE-2016-4582: iOS 9.3.3 Apple Security Update: About the security content of iOS 9.3.3 Product: iOS Version: 9.3.3 CVE: CVE-2016-4582 Component: Kernel Impact: A local user may be able to execute arbitrary code with kernel privileges Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2016-1832P3HIGHCVSS 7.8v9.3.2
CVE-2016-1832 [HIGH] CVE-2016-1832: iOS 9.3.2 Apple Security Update: About the security content of iOS 9.3.2 Product: iOS Version: 9.3.2 CVE: CVE-2016-1832 Component: CVE-ID Impact: Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2016-1722P3HIGHCVSS 7.8v9.2.1
CVE-2016-1722 [HIGH] CVE-2016-1722: iOS 9.2.1 Apple Security Update: About the security content of iOS 9.2.1 Product: iOS Version: 9.2.1 CVE: CVE-2016-1722 Component: CVE-ID
apple
CVE-2016-7630P3CRITICALCVSS 9.8v10.22016-12-12
CVE-2016-7630 [CRITICAL] CVE-2016-7630: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7630 Component: WebSheet Impact: A sandboxed process may be able to circumvent sandbox restrictions Description: A sandbox escape issue was addressed through additional restrictions.
apple
CVE-2019-8631P3HIGHCVSS 7.5≥ unspecified, < 12.32020-10-27
CVE-2019-8631 [HIGH] CVE-2019-8631: A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.1 A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, tvOS 12.3. Users removed from an iMessage conversation may still be able to alter state.
nvdapple
CVE-2017-13874P3HIGHCVSS 7.5v11.22017-12-02
CVE-2017-13874 [HIGH] CVE-2017-13874: iOS 11.2 Apple Security Update: About the security content of iOS 11.2 Product: iOS Version: 11.2 CVE: CVE-2017-13874 Component: Mail Impact: Incorrect certificate is used for encryption Description: A S/MIME issue existed in the handling of encrypted email. This issue was addressed through improved selection of the encryption certificate.
apple
Apple iOS vulnerabilities | cvebase