Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 56 of 89
CVE-2016-4718P4MEDIUMCVSS 6.5v102016-09-13
CVE-2016-4718 [MEDIUM] CVE-2016-4718: iOS 10
Apple Security Update: About the security content of iOS 10
Product: iOS
Version: 10
CVE: CVE-2016-4718
Component: This issue was addressed through improved bounds checking.
apple
CVE-2018-4157P4HIGHCVSS 7.0v11.32018-03-29
CVE-2018-4157 [HIGH] CVE-2018-4157: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4157
Component: Quick Look
Impact: An application may be able to gain elevated privileges
Description: A race condition was addressed with additional validation.
apple
CVE-2018-4155P4HIGHCVSS 7.0v11.32018-03-29
CVE-2018-4155 [HIGH] CVE-2018-4155: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4155
Component: CoreFoundation
Impact: An application may be able to gain elevated privileges
Description: A race condition was addressed with additional validation.
apple
CVE-2018-4166P4HIGHCVSS 7.0v11.32018-03-29
CVE-2018-4166 [HIGH] CVE-2018-4166: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4166
Component: NSURLSession
Impact: An application may be able to gain elevated privileges
Description: A race condition was addressed with additional validation.
apple
CVE-2015-1095P4HIGHCVSS 7.2v8.3
CVE-2015-1095 [HIGH] CVE-2015-1095: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1095
Component: CVE-ID
apple
CVE-2016-7599P4MEDIUMCVSS 6.5v10.22016-12-12
CVE-2016-7599 [MEDIUM] CVE-2016-7599: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7599
Component: WebKit
Impact: Processing maliciously crafted web content may result in the disclosure of user information
Description: An issue existed in the handling of HTTP redirects. This issue was addressed through improved cross origin validation.
apple
CVE-2016-7598P4MEDIUMCVSS 6.5v10.22016-12-12
CVE-2016-7598 [MEDIUM] CVE-2016-7598: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7598
Component: WebKit
Impact: Processing maliciously crafted web content may result in the disclosure of process memory
Description: An uninitialized memory access issue was addressed through improved memory initialization.
apple
CVE-2020-9915P4MEDIUMCVSS 6.5≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-16
CVE-2020-9915 [MEDIUM] CVE-2020-9915: An access issue existed in Content Security Policy. This issue was addressed with improved access re
An access issue existed in Content Security Policy. This issue was addressed with improved access restrictions. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing maliciously crafted web content may prevent Content Security Policy
nvd
CVE-2020-9770P4MEDIUMCVSS 6.5≥ unspecified, < iOS 13.4 and iPadOS 13.42020-04-01
CVE-2020-9770 [MEDIUM] CVE-2020-9770: A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPad
A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPadOS 13.4. An attacker in a privileged network position may be able to intercept Bluetooth traffic.
nvd
CVE-2019-8608P4MEDIUMCVSS 6.3≥ unspecified, < iOS 12.32019-12-18
CVE-2019-8608 [MEDIUM] CWE-416 CVE-2019-8608: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2016-1788P4MEDIUMCVSS 5.9v9.3
CVE-2016-1788 [MEDIUM] CVE-2016-1788: iOS 9.3
Apple Security Update: About the security content of iOS 9.3
Product: iOS
Version: 9.3
CVE: CVE-2016-1788
Component: CVE-ID
apple
CVE-2020-9909P4MEDIUMCVSS 5.9≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-16
CVE-2020-9909 [MEDIUM] CWE-125 CVE-2020-9909: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 a
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.
nvd
CVE-2014-8127P4MEDIUMCVSS 6.5v8.4
CVE-2014-8127 [MEDIUM] CVE-2014-8127: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2014-8127
Component: CVE-2014-8127
apple
CVE-2020-10135P3MEDIUMCVSS 5.4v12.42019-07-22
CVE-2020-10135 [MEDIUM] CVE-2020-10135: iOS 12.4
Apple Security Update: About the security content of iOS 12.4
Product: iOS
Version: 12.4
CVE: CVE-2020-10135
Component: The changes for this issue mitigate CVE-2020-10135.
apple
CVE-2017-13834P4HIGHCVSS 7.8v112017-09-19
CVE-2017-13834 [HIGH] CVE-2017-13834: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-13834
Component: Kernel
Impact: Processing a malformed mach binary may lead to arbitrary code execution
Description: A memory corruption issue was addressed through improved validation.
apple
CVE-2017-0381P4HIGHCVSS 7.8v112017-09-19
CVE-2017-0381 [HIGH] CVE-2017-0381: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-0381
Component: CoreAudio
Impact: An application may be able to read restricted memory
Description: An out-of-bounds read was addressed by updating to Opus version 1.1.4.
apple
CVE-2014-8128P4MEDIUMCVSS 6.5v8.4
CVE-2014-8128 [MEDIUM] CVE-2014-8128: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2014-8128
Component: CVE-2014-8128
apple
CVE-2015-1122P4MEDIUMCVSS 6.8v8.3
CVE-2015-1122 [MEDIUM] CVE-2015-1122: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1122
Component: CVE-2015-1076
apple
CVE-2015-1120P4MEDIUMCVSS 6.8v8.3
CVE-2015-1120 [MEDIUM] CVE-2015-1120: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1120
Component: CVE-2015-1076
apple
CVE-2015-3659P4MEDIUMCVSS 6.8v8.4
CVE-2015-3659 [MEDIUM] CVE-2015-3659: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3659
Component: CVE-ID
apple