Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 7 of 89
CVE-2018-4306P2HIGHCVSS 8.8PoCv122018-09-17
CVE-2018-4306 [HIGH] CVE-2018-4306: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4306
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2018-4317P2HIGHCVSS 8.8PoCv122018-09-17
CVE-2018-4317 [HIGH] CVE-2018-4317: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4317
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2018-4318P2HIGHCVSS 8.8PoCv122018-09-17
CVE-2018-4318 [HIGH] CVE-2018-4318: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4318
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2017-7047P2HIGHCVSS 8.8PoCv10.3.32017-07-19
CVE-2017-7047 [HIGH] CVE-2017-7047: iOS 10.3.3
Apple Security Update: About the security content of iOS 10.3.3
Product: iOS
Version: 10.3.3
CVE: CVE-2017-7047
Component: Kernel
Impact: An application may be able to read restricted memory
Description: A validation issue was addressed with improved input sanitization.
apple
CVE-2017-2515P2HIGHCVSS 8.8PoCv10.3.22017-05-15
CVE-2017-2515 [HIGH] CVE-2017-2515: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-2515
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-2457P2HIGHCVSS 8.8PoCv10.32017-03-27
CVE-2017-2457 [HIGH] CVE-2017-2457: iOS 10.3
Apple Security Update: About the security content of iOS 10.3
Product: iOS
Version: 10.3
CVE: CVE-2017-2457
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed through improved memory handling.
apple
CVE-2017-2514P2HIGHCVSS 8.8PoCv10.3.22017-05-15
CVE-2017-2514 [HIGH] CVE-2017-2514: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-2514
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13783P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13783 [HIGH] CVE-2017-13783: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13783
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13796P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13796 [HIGH] CVE-2017-13796: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13796
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13791P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13791 [HIGH] CVE-2017-13791: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13791
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13792P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13792 [HIGH] CVE-2017-13792: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13792
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13795P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13795 [HIGH] CVE-2017-13795: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13795
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13802P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13802 [HIGH] CVE-2017-13802: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13802
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13785P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13785 [HIGH] CVE-2017-13785: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13785
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2017-13784P2HIGHCVSS 8.8PoCv11.12017-10-31
CVE-2017-13784 [HIGH] CVE-2017-13784: iOS 11.1
Apple Security Update: About the security content of iOS 11.1
Product: iOS
Version: 11.1
CVE: CVE-2017-13784
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2016-7626P2HIGHCVSS 8.8PoCv10.22016-12-12
CVE-2016-7626 [HIGH] CVE-2016-7626: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7626
Component: Profiles
Impact: Opening a maliciously crafted certificate may lead to arbitrary code execution
Description: A memory corruption issue existed in the handling of certificate profiles. This issue was addressed through improved input validation.
apple
CVE-2018-4243P3HIGHCVSS 7.8PoCv11.42018-05-29
CVE-2018-4243 [HIGH] CVE-2018-4243: iOS 11.4
Apple Security Update: About the security content of iOS 11.4
Product: iOS
Version: 11.4
CVE: CVE-2018-4243
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2017-7115P3HIGHCVSS 8.1PoCv112017-09-19
CVE-2017-7115 [HIGH] CVE-2017-7115: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-7115
Component: Wi-Fi
Impact: Malicious code executing on the Wi-Fi chip may be able to execute arbitrary code with kernel privileges on the application processor
Description: Multiple race conditions were addressed through improved validation.
apple
CVE-2018-4438P2HIGHCVSS 8.8PoCv12.1.12018-12-05
CVE-2018-4438 [HIGH] CVE-2018-4438: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4438
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A logic issue existed resulting in memory corruption. This was addressed with improved state management.
apple
CVE-2018-4442P2HIGHCVSS 8.8PoCv12.1.12018-12-05
CVE-2018-4442 [HIGH] CVE-2018-4442: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4442
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
apple