Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 73 of 89
CVE-2018-4224P4MEDIUMCVSS 5.5v11.42018-05-29
CVE-2018-4224 [MEDIUM] CVE-2018-4224: iOS 11.4
Apple Security Update: About the security content of iOS 11.4
Product: iOS
Version: 11.4
CVE: CVE-2018-4224
Component: Security
Impact: A local user may be able to read a persistent device identifier
Description: An authorization issue was addressed with improved state management.
apple
CVE-2014-4491P4MEDIUMCVSS 5.0v8.1.3
CVE-2014-4491 [MEDIUM] CVE-2014-4491: iOS 8.1.3
Apple Security Update: About the security content of iOS 8.1.3
Product: iOS
Version: 8.1.3
CVE: CVE-2014-4491
Component: CVE-ID
apple
CVE-2018-4223P4MEDIUMCVSS 5.5v11.42018-05-29
CVE-2018-4223 [MEDIUM] CVE-2018-4223: iOS 11.4
Apple Security Update: About the security content of iOS 11.4
Product: iOS
Version: 11.4
CVE: CVE-2018-4223
Component: Security
Impact: A local user may be able to read a persistent account identifier
Description: An authorization issue was addressed with improved state management.
apple
CVE-2019-8510P4MEDIUMCVSS 5.5≥ unspecified, < iOS 12.22019-12-18
CVE-2019-8510 [MEDIUM] CWE-125 CVE-2019-8510: An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed
An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to determine kernel memory layout.
nvdapple
CVE-2015-5759P4MEDIUMCVSS 5.0v8.4.1
CVE-2015-5759 [MEDIUM] CVE-2015-5759: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-5759
Component: CVE-ID
apple
CVE-2020-3836P4MEDIUMCVSS 5.5≥ unspecified, < iOS 13.3.1 and iPadOS 13.3.12020-02-27
CVE-2020-3836 [MEDIUM] CVE-2020-3836: An access issue was addressed with improved memory management. This issue is fixed in iOS 13.3.1 and
An access issue was addressed with improved memory management. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. A malicious application may be able to determine kernel memory layout.
nvd
CVE-2020-3916P4MEDIUMCVSS 5.3≥ unspecified, < iOS 13.4 and iPadOS 13.42020-04-01
CVE-2020-3916 [MEDIUM] CVE-2020-3916: An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4
An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, watchOS 6.2. Setting an alternate app icon may disclose a photo without needing permission to access photos.
nvd
CVE-2020-3918P4MEDIUMCVSS 5.5≥ unspecified, < iOS 13.4 and iPadOS 13.42020-10-22
CVE-2020-3918 [MEDIUM] CVE-2020-3918: An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4
An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. A local user may be able to view sensitive user information.
nvd
CVE-2022-42790P4MEDIUMCVSS 5.5v162022-09-12
CVE-2022-42790 [MEDIUM] CVE-2022-42790: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-42790
Component: Sidecar
Impact: A user may be able to view restricted content from the lock screen
Description: A logic issue was addressed with improved state management.
apple
CVE-2022-32854P4MEDIUMCVSS 5.5≥ unspecified, < 162022-09-20
CVE-2022-32854 [MEDIUM] CVE-2022-32854: This issue was addressed with improved checks. This issue is fixed in iOS 15.7 and iPadOS 15.7, iOS
This issue was addressed with improved checks. This issue is fixed in iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to bypass Privacy preferences.
nvdapple
CVE-2020-3869P4MEDIUMCVSS 5.3≥ unspecified, < iOS 13.3.1 and iPadOS 13.3.12020-02-27
CVE-2020-3869 [MEDIUM] CVE-2020-3869: An issue existed in the handling of the local user's self-view. The issue was corrected with improve
An issue existed in the handling of the local user's self-view. The issue was corrected with improved logic. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. A remote FaceTime user may be able to cause the local user's camera self-view to display the incorrect camera.
nvd
CVE-2015-6999P4MEDIUMCVSS 5.0v9.1
CVE-2015-6999 [MEDIUM] CVE-2015-6999: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-6999
Component: CVE-ID
apple
CVE-2018-4232P4MEDIUMCVSS 4.3v11.42018-05-29
CVE-2018-4232 [MEDIUM] CVE-2018-4232: iOS 11.4
Apple Security Update: About the security content of iOS 11.4
Product: iOS
Version: 11.4
CVE: CVE-2018-4232
Component: WebKit
Impact: Visiting a maliciously crafted website may lead to cookies being overwritten
Description: A permissions issue existed in the handling of web browser cookies. This issue was addressed with improved restrictions.
apple
CVE-2015-3728P4MEDIUMCVSS 4.8v8.4
CVE-2015-3728 [MEDIUM] CVE-2015-3728: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3728
Component: CVE-ID
apple
CVE-2015-3793P4MEDIUMCVSS 4.3v8.4.1
CVE-2015-3793 [MEDIUM] CVE-2015-3793: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3793
Component: CVE-ID
apple
CVE-2015-5749P4MEDIUMCVSS 4.3v8.4.1
CVE-2015-5749 [MEDIUM] CVE-2015-5749: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-5749
Component: CVE-ID
apple
CVE-2016-4781P4MEDIUMCVSS 6.8v10.22016-12-12
CVE-2016-4781 [MEDIUM] CVE-2016-4781: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-4781
Component: SpringBoard
Impact: A person with physical access to an iOS device may be able to unlock the device
Description: In some cases, a counter issue existed in the handling of passcode attempts when resetting the passcode. This was addressed through improved state management.
apple
CVE-2020-9946P4MEDIUMCVSS 6.8≥ unspecified, < iOS 14.0 and iPadOS 14.02020-10-16
CVE-2020-9946 [MEDIUM] CWE-667 CVE-2020-9946: This issue was addressed with improved checks. This issue is fixed in iOS 14.0 and iPadOS 14.0, watc
This issue was addressed with improved checks. This issue is fixed in iOS 14.0 and iPadOS 14.0, watchOS 7.0. The screen lock may not engage after the specified time period.
nvd
CVE-2019-8760P4MEDIUMCVSS 6.8≥ unspecified, < iOS 132019-12-18
CVE-2019-8760 [MEDIUM] CWE-287 CVE-2019-8760: This issue was addressed by improving Face ID machine learning models. This issue is fixed in iOS 13
This issue was addressed by improving Face ID machine learning models. This issue is fixed in iOS 13. A 3D model constructed to look like the enrolled user may authenticate via Face ID.
nvdapple
CVE-2016-1833P4MEDIUMCVSS 5.5v9.3.2
CVE-2016-1833 [MEDIUM] CVE-2016-1833: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1833
Component: CVE-ID
Impact: Visiting a maliciously crafted website may lead to arbitrary code execution
Description: A memory corruption issue was addressed through improved memory handling.
apple