Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 60 of 89
CVE-2015-3742P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3742 [MEDIUM] CVE-2015-3742: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3742
Component: CVE-ID
apple
CVE-2015-7104P4MEDIUMCVSS 6.8v9.1
CVE-2015-7104 [MEDIUM] CVE-2015-7104: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-7104
Component: CVE-2015-7014
apple
CVE-2016-4449P4HIGHCVSS 7.1v9.3.32016-07-18
CVE-2016-4449 [HIGH] CVE-2016-4449: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-4449
Component: Libc
Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A buffer overflow existed within the "link_ntoa()" function in linkaddr.c. This issue was addressed through additional bounds checking.
apple
CVE-2015-3735P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3735 [MEDIUM] CVE-2015-3735: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3735
Component: CVE-ID
apple
CVE-2015-3739P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3739 [MEDIUM] CVE-2015-3739: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3739
Component: CVE-ID
apple
CVE-2015-3733P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3733 [MEDIUM] CVE-2015-3733: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3733
Component: CVE-ID
apple
CVE-2015-3737P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3737 [MEDIUM] CVE-2015-3737: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3737
Component: CVE-ID
apple
CVE-2015-3734P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3734 [MEDIUM] CVE-2015-3734: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3734
Component: CVE-ID
apple
CVE-2015-3736P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3736 [MEDIUM] CVE-2015-3736: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3736
Component: CVE-ID
apple
CVE-2015-3732P4MEDIUMCVSS 6.8v8.4.1
CVE-2015-3732 [MEDIUM] CVE-2015-3732: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3732
Component: CVE-ID
apple
CVE-2015-3658P4MEDIUMCVSS 6.8v8.4
CVE-2015-3658 [MEDIUM] CVE-2015-3658: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3658
Component: CVE-ID
apple
CVE-2015-3727P4MEDIUMCVSS 6.8v8.4
CVE-2015-3727 [MEDIUM] CVE-2015-3727: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3727
Component: CVE-ID
apple
CVE-2018-4113P4MEDIUMCVSS 6.5v11.32018-03-29
CVE-2018-4113 [MEDIUM] CVE-2018-4113: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4113
Component: WebKit
Impact: Unexpected interaction with indexing types causing an ASSERT failure
Description: An array indexing issue existed in the handling of a function in javascript core. This issue was addressed through improved checks
apple
CVE-2021-30786P4HIGHCVSS 7.0≥ unspecified, < 14.72021-09-08
CVE-2021-30786 [HIGH] CWE-362 CVE-2021-30786: A race condition was addressed with improved state handling. This issue is fixed in iOS 14.7, macOS
A race condition was addressed with improved state handling. This issue is fixed in iOS 14.7, macOS Big Sur 11.5. Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution.
nvd
CVE-2016-7623P4MEDIUMCVSS 6.5v10.22016-12-12
CVE-2016-7623 [MEDIUM] CVE-2016-7623: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7623
Component: WebKit
Impact: Visiting a maliciously crafted website may compromise user information
Description: An issue existed in the handling of blob URLs. This issue was addressed through improved URL handling.
apple
CVE-2016-4760P4MEDIUMCVSS 6.5v102016-09-13
CVE-2016-4760 [MEDIUM] CVE-2016-4760: iOS 10
Apple Security Update: About the security content of iOS 10
Product: iOS
Version: 10
CVE: CVE-2016-4760
Component: WebKit
Impact: A malicious website may be able to access non-HTTP services
Description: Safari's support of HTTP/0.9 allowed cross-protocol exploitation of non-HTTP services using DNS rebinding. The issue was addressed by restricting HTTP/0.9 responses to default ports and canceling resource loads if the document was loaded with a differe
apple
CVE-2015-3750P4MEDIUMCVSS 6.4v8.4.1
CVE-2015-3750 [MEDIUM] CVE-2015-3750: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3750
Component: CVE-ID
apple
CVE-2018-4460P4MEDIUMCVSS 6.5v12.1.12018-12-05
CVE-2018-4460 [MEDIUM] CVE-2018-4460: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4460
Component: Kernel
Impact: An attacker in a privileged position may be able to perform a denial of service attack
Description: A denial of service issue was addressed by removing the vulnerable code.
apple
CVE-2017-7106P4MEDIUMCVSS 6.5v112017-09-19
CVE-2017-7106 [MEDIUM] CVE-2017-7106: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-7106
Component: WebKit
Impact: Visiting a malicious website may lead to address bar spoofing
Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2017-2493P4MEDIUMCVSS 6.5v10.32017-03-27
CVE-2017-2493 [MEDIUM] CVE-2017-2493: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2493
Component: WebKit
Impact: Processing maliciously crafted web content may exfiltrate data cross-origin
Description: A validation issue existed in element handling. This issue was addressed through improved validation.
apple