Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 61 of 89
CVE-2022-42791P4HIGHCVSS 7.0v162022-09-12
CVE-2022-42791 [HIGH] CVE-2022-42791: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-42791
Component: Software Update
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with improved state handling.
apple
CVE-2019-8517P4MEDIUMCVSS 6.5≥ unspecified, < iOS 12.22019-12-18
CVE-2019-8517 [MEDIUM] CWE-125 CVE-2019-8517: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.2,
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. Processing a maliciously crafted font may result in the disclosure of process memory.
nvdapple
CVE-2015-7942P4MEDIUMCVSS 5.0v9.3
CVE-2015-7942 [MEDIUM] CVE-2015-7942: iOS 9.3
Apple Security Update: About the security content of iOS 9.3
Product: iOS
Version: 9.3
CVE: CVE-2015-7942
Component: CVE-2015-7499
apple
CVE-2017-7153P4MEDIUMCVSS 6.1v11.22017-12-02
CVE-2017-7153 [MEDIUM] CVE-2017-7153: iOS 11.2
Apple Security Update: About the security content of iOS 11.2
Product: iOS
Version: 11.2
CVE: CVE-2017-7153
Component: WebKit
Impact: Visiting a malicious website may lead to user interface spoofing
Description: Redirect responses to 401 Unauthorized may allow a malicious website to incorrectly display the lock icon on mixed content. This issue was addressed through improved URL display logic.
apple
CVE-2019-8525P4MEDIUMCVSS 6.7≥ unspecified, < 12.22020-10-27
CVE-2019-8525 [MEDIUM] CWE-787 CVE-2019-8525: A memory corruption issue was addressed with improved state management. This issue is fixed in macOS
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. An application may be able to execute arbitrary c
nvdapple
CVE-2016-7579P4MEDIUMCVSS 5.9v10.12016-10-24
CVE-2016-7579 [MEDIUM] CVE-2016-7579: iOS 10.1
Apple Security Update: About the security content of iOS 10.1
Product: iOS
Version: 10.1
CVE: CVE-2016-7579
Component: CFNetwork Proxies
Impact: An attacker in a privileged network position may be able to leak sensitive user information
Description: A phishing issue existed in the handling of proxy credentials. This issue was addressed by removing unsolicited proxy password authentication prompts.
apple
CVE-2018-4174P4MEDIUMCVSS 5.9v11.32018-03-29
CVE-2018-4174 [MEDIUM] CVE-2018-4174: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4174
Component: Mail
Impact: An attacker in a privileged network position may be able to intercept the contents of S/MIME-encrypted e-mail
Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2015-1063P4HIGHCVSS 7.8v8.2
CVE-2015-1063 [HIGH] CVE-2015-1063: iOS 8.2
Apple Security Update: About the security content of iOS 8.2
Product: iOS
Version: 8.2
CVE: CVE-2015-1063
Component: CVE-ID
Impact: An attacker with a privileged network position may be able to execute arbitrary code
Description: Multiple buffer overflows existed in the handling of data during iCloud Keychain recovery. These issues were addressed through improved bounds checking.
apple
CVE-2016-4679P4MEDIUMCVSS 5.5v10.12016-10-24
CVE-2016-4679 [MEDIUM] CVE-2016-4679: iOS 10.1
Apple Security Update: About the security content of iOS 10.1
Product: iOS
Version: 10.1
CVE: CVE-2016-4679
Component: Kernel
Impact: A local application may be able to execute arbitrary code with root privileges
Description: Multiple object lifetime issues existed when spawning new processes. These were addressed through improved validation.
apple
CVE-2015-3784P4MEDIUMCVSS 5.0v8.4.1
CVE-2015-3784 [MEDIUM] CVE-2015-3784: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3784
Component: CVE-ID
apple
CVE-2015-1092P4MEDIUMCVSS 5.0v8.3
CVE-2015-1092 [MEDIUM] CVE-2015-1092: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1092
Component: CVE-ID
apple
CVE-2015-7081P4MEDIUMCVSS 5.0v9.2
CVE-2015-7081 [MEDIUM] CVE-2015-7081: iOS 9.2
Apple Security Update: About the security content of iOS 9.2
Product: iOS
Version: 9.2
CVE: CVE-2015-7081
Component: CVE-ID
apple
CVE-2018-4215P4HIGHCVSS 7.8v11.42018-05-29
CVE-2018-4215 [HIGH] CVE-2018-4215: iOS 11.4
Apple Security Update: About the security content of iOS 11.4
Product: iOS
Version: 11.4
CVE: CVE-2018-4215
Component: Bluetooth
Impact: A malicious application may be able to elevate privileges
Description: A buffer overflow was addressed with improved size validation.
apple
CVE-2014-4493P4HIGHCVSS 7.5v8.1.3
CVE-2014-4493 [HIGH] CVE-2014-4493: iOS 8.1.3
Apple Security Update: About the security content of iOS 8.1.3
Product: iOS
Version: 8.1.3
CVE: CVE-2014-4493
Component: CVE-ID
apple
CVE-2015-1069P4MEDIUMCVSS 6.8v8.3
CVE-2015-1069 [MEDIUM] CVE-2015-1069: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1069
Component: CVE-ID
apple
CVE-2015-5928P4MEDIUMCVSS 6.8v9.1
CVE-2015-5928 [MEDIUM] CVE-2015-5928: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-5928
Component: CVE-ID
apple
CVE-2015-1078P4MEDIUMCVSS 6.8v8.3
CVE-2015-1078 [MEDIUM] CVE-2015-1078: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1078
Component: CVE-2015-1076
apple
CVE-2015-1077P4MEDIUMCVSS 6.8v8.3
CVE-2015-1077 [MEDIUM] CVE-2015-1077: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1077
Component: CVE-2015-1076
apple
CVE-2015-1074P4MEDIUMCVSS 6.8v8.3
CVE-2015-1074 [MEDIUM] CVE-2015-1074: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1074
Component: CVE-2015-1072
apple
CVE-2015-1082P4MEDIUMCVSS 6.8v8.3
CVE-2015-1082 [MEDIUM] CVE-2015-1082: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1082
Component: CVE-2015-1076
apple