cbcvebase.

Apple iOS vulnerabilities

1,765 known vulnerabilities affecting apple/ios.

Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7

Vulnerabilities

Page 56 of 89
CVE-2016-4718P4MEDIUMCVSS 6.5v102016-09-13
CVE-2016-4718 [MEDIUM] CVE-2016-4718: iOS 10 Apple Security Update: About the security content of iOS 10 Product: iOS Version: 10 CVE: CVE-2016-4718 Component: This issue was addressed through improved bounds checking.
apple
CVE-2018-4157P4HIGHCVSS 7.0v11.32018-03-29
CVE-2018-4157 [HIGH] CVE-2018-4157: iOS 11.3 Apple Security Update: About the security content of iOS 11.3 Product: iOS Version: 11.3 CVE: CVE-2018-4157 Component: Quick Look Impact: An application may be able to gain elevated privileges Description: A race condition was addressed with additional validation.
apple
CVE-2018-4155P4HIGHCVSS 7.0v11.32018-03-29
CVE-2018-4155 [HIGH] CVE-2018-4155: iOS 11.3 Apple Security Update: About the security content of iOS 11.3 Product: iOS Version: 11.3 CVE: CVE-2018-4155 Component: CoreFoundation Impact: An application may be able to gain elevated privileges Description: A race condition was addressed with additional validation.
apple
CVE-2018-4166P4HIGHCVSS 7.0v11.32018-03-29
CVE-2018-4166 [HIGH] CVE-2018-4166: iOS 11.3 Apple Security Update: About the security content of iOS 11.3 Product: iOS Version: 11.3 CVE: CVE-2018-4166 Component: NSURLSession Impact: An application may be able to gain elevated privileges Description: A race condition was addressed with additional validation.
apple
CVE-2015-1095P4HIGHCVSS 7.2v8.3
CVE-2015-1095 [HIGH] CVE-2015-1095: iOS 8.3 Apple Security Update: About the security content of iOS 8.3 Product: iOS Version: 8.3 CVE: CVE-2015-1095 Component: CVE-ID
apple
CVE-2016-7599P4MEDIUMCVSS 6.5v10.22016-12-12
CVE-2016-7599 [MEDIUM] CVE-2016-7599: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7599 Component: WebKit Impact: Processing maliciously crafted web content may result in the disclosure of user information Description: An issue existed in the handling of HTTP redirects. This issue was addressed through improved cross origin validation.
apple
CVE-2016-7598P4MEDIUMCVSS 6.5v10.22016-12-12
CVE-2016-7598 [MEDIUM] CVE-2016-7598: iOS 10.2 Apple Security Update: About the security content of iOS 10.2 Product: iOS Version: 10.2 CVE: CVE-2016-7598 Component: WebKit Impact: Processing maliciously crafted web content may result in the disclosure of process memory Description: An uninitialized memory access issue was addressed through improved memory initialization.
apple
CVE-2020-9915P4MEDIUMCVSS 6.5≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-16
CVE-2020-9915 [MEDIUM] CVE-2020-9915: An access issue existed in Content Security Policy. This issue was addressed with improved access re An access issue existed in Content Security Policy. This issue was addressed with improved access restrictions. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8, Safari 13.1.2, iTunes 12.10.8 for Windows, iCloud for Windows 11.3, iCloud for Windows 7.20. Processing maliciously crafted web content may prevent Content Security Policy
nvd
CVE-2020-9770P4MEDIUMCVSS 6.5≥ unspecified, < iOS 13.4 and iPadOS 13.42020-04-01
CVE-2020-9770 [MEDIUM] CVE-2020-9770: A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPad A logic issue was addressed with improved state management. This issue is fixed in iOS 13.4 and iPadOS 13.4. An attacker in a privileged network position may be able to intercept Bluetooth traffic.
nvd
CVE-2019-8608P4MEDIUMCVSS 6.3≥ unspecified, < iOS 12.32019-12-18
CVE-2019-8608 [MEDIUM] CWE-416 CVE-2019-8608: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, Safari 12.1.1, iTunes for Windows 12.9.5, iCloud for Windows 7.12. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2016-1788P4MEDIUMCVSS 5.9v9.3
CVE-2016-1788 [MEDIUM] CVE-2016-1788: iOS 9.3 Apple Security Update: About the security content of iOS 9.3 Product: iOS Version: 9.3 CVE: CVE-2016-1788 Component: CVE-ID
apple
CVE-2020-9909P4MEDIUMCVSS 5.9≥ unspecified, < iOS 13.6 and iPadOS 13.62020-10-16
CVE-2020-9909 [MEDIUM] CWE-125 CVE-2020-9909: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 a An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8, watchOS 6.2.8. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.
nvd
CVE-2014-8127P4MEDIUMCVSS 6.5v8.4
CVE-2014-8127 [MEDIUM] CVE-2014-8127: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2014-8127 Component: CVE-2014-8127
apple
CVE-2020-10135P3MEDIUMCVSS 5.4v12.42019-07-22
CVE-2020-10135 [MEDIUM] CVE-2020-10135: iOS 12.4 Apple Security Update: About the security content of iOS 12.4 Product: iOS Version: 12.4 CVE: CVE-2020-10135 Component: The changes for this issue mitigate CVE-2020-10135.
apple
CVE-2017-13834P4HIGHCVSS 7.8v112017-09-19
CVE-2017-13834 [HIGH] CVE-2017-13834: iOS 11 Apple Security Update: About the security content of iOS 11 Product: iOS Version: 11 CVE: CVE-2017-13834 Component: Kernel Impact: Processing a malformed mach binary may lead to arbitrary code execution Description: A memory corruption issue was addressed through improved validation.
apple
CVE-2017-0381P4HIGHCVSS 7.8v112017-09-19
CVE-2017-0381 [HIGH] CVE-2017-0381: iOS 11 Apple Security Update: About the security content of iOS 11 Product: iOS Version: 11 CVE: CVE-2017-0381 Component: CoreAudio Impact: An application may be able to read restricted memory Description: An out-of-bounds read was addressed by updating to Opus version 1.1.4.
apple
CVE-2014-8128P4MEDIUMCVSS 6.5v8.4
CVE-2014-8128 [MEDIUM] CVE-2014-8128: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2014-8128 Component: CVE-2014-8128
apple
CVE-2015-1122P4MEDIUMCVSS 6.8v8.3
CVE-2015-1122 [MEDIUM] CVE-2015-1122: iOS 8.3 Apple Security Update: About the security content of iOS 8.3 Product: iOS Version: 8.3 CVE: CVE-2015-1122 Component: CVE-2015-1076
apple
CVE-2015-1120P4MEDIUMCVSS 6.8v8.3
CVE-2015-1120 [MEDIUM] CVE-2015-1120: iOS 8.3 Apple Security Update: About the security content of iOS 8.3 Product: iOS Version: 8.3 CVE: CVE-2015-1120 Component: CVE-2015-1076
apple
CVE-2015-3659P4MEDIUMCVSS 6.8v8.4
CVE-2015-3659 [MEDIUM] CVE-2015-3659: iOS 8.4 Apple Security Update: About the security content of iOS 8.4 Product: iOS Version: 8.4 CVE: CVE-2015-3659 Component: CVE-ID
apple
Apple iOS vulnerabilities | cvebase