Apple iOS vulnerabilities
1,765 known vulnerabilities affecting apple/ios.
Total CVEs
1,765
CISA KEV
27
actively exploited
Public exploits
229
Exploited in wild
43
Severity breakdown
CRITICAL119HIGH907MEDIUM638LOW94UNKNOWN7
Vulnerabilities
Page 82 of 89
CVE-2018-4365P4MEDIUMCVSS 5.5v12.12018-10-30
CVE-2018-4365 [MEDIUM] CVE-2018-4365: iOS 12.1
Apple Security Update: About the security content of iOS 12.1
Product: iOS
Version: 12.1
CVE: CVE-2018-4365
Component: Contacts
Impact: Processing a maliciously crafted vcf file may lead to a denial of service
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2022-32827P4MEDIUMCVSS 5.5v162022-09-12
CVE-2022-32827 [MEDIUM] CVE-2022-32827: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32827
Component: AppleAVD
Impact: An app may be able to cause a denial-of-service
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2016-1865P4MEDIUMCVSS 5.5v9.3.32016-07-18
CVE-2016-1865 [MEDIUM] CVE-2016-1865: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-1865
Component: Kernel
Impact: A local user may be able to cause a system denial of service
Description: A null pointer dereference was addressed through improved input validation.
apple
CVE-2015-3722P4MEDIUMCVSS 4.3v8.4
CVE-2015-3722 [MEDIUM] CVE-2015-3722: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3722
Component: CVE-ID
apple
CVE-2015-3763P4MEDIUMCVSS 4.3v8.4.1
CVE-2015-3763 [MEDIUM] CVE-2015-3763: iOS 8.4.1
Apple Security Update: About the security content of iOS 8.4.1
Product: iOS
Version: 8.4.1
CVE: CVE-2015-3763
Component: CVE-2015-3763
Impact: An malicious app may be able to read other apps' managed preferences
Description: An issue existed in the third-party app sandbox. This issue was addressed by improving the third-party sandbox profile.
apple
CVE-2016-1781P4MEDIUMCVSS 4.3v9.3
CVE-2016-1781 [MEDIUM] CVE-2016-1781: iOS 9.3
Apple Security Update: About the security content of iOS 9.3
Product: iOS
Version: 9.3
CVE: CVE-2016-1781
Component: CVE-ID
apple
CVE-2018-4307P4MEDIUMCVSS 4.3v122018-09-17
CVE-2018-4307 [MEDIUM] CVE-2018-4307: iOS 12
Apple Security Update: About the security content of iOS 12
Product: iOS
Version: 12
CVE: CVE-2018-4307
Component: Safari
Impact: A malicious website may be able to exfiltrate autofilled data in Safari
Description: A logic issue was addressed with improved state management.
apple
CVE-2019-8550P4MEDIUMCVSS 4.3≥ unspecified, < iOS 12.22019-12-18
CVE-2019-8550 [MEDIUM] CWE-459 CVE-2019-8550: An issue existed in the pausing of FaceTime video. The issue was resolved with improved logic. This
An issue existed in the pausing of FaceTime video. The issue was resolved with improved logic. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, watchOS 5.2. A user’s video may not be paused in a FaceTime call if they exit the FaceTime app while the call is ringing.
nvdapple
CVE-2019-7284P4MEDIUMCVSS 4.3≥ unspecified, < iOS 12.22019-12-18
CVE-2019-7284 [MEDIUM] CVE-2019-7284: This issue was addressed with improved checks. This issue is fixed in iOS 12.2. Processing a malicio
This issue was addressed with improved checks. This issue is fixed in iOS 12.2. Processing a maliciously crafted mail message may lead to S/MIME signature spoofing.
nvdapple
CVE-2020-3888P4MEDIUMCVSS 4.3≥ unspecified, < iOS 13.4 and iPadOS 13.42020-04-01
CVE-2020-3888 [MEDIUM] CVE-2020-3888: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 1
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4. A maliciously crafted page may interfere with other web contexts.
nvd
CVE-2018-4445P4MEDIUMCVSS 4.3v12.1.12018-12-05
CVE-2018-4445 [MEDIUM] CVE-2018-4445: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4445
Component: Safari
Impact: A user may be unable to fully delete browsing history
Description: "Clear History and Website Data" did not clear the history. The issue was addressed with improved data deletion.
apple
CVE-2016-1814P4MEDIUMCVSS 5.5v9.3.2
CVE-2016-1814 [MEDIUM] CVE-2016-1814: iOS 9.3.2
Apple Security Update: About the security content of iOS 9.3.2
Product: iOS
Version: 9.3.2
CVE: CVE-2016-1814
Component: CVE-ID
apple
CVE-2017-7118P4MEDIUMCVSS 5.5v112017-09-19
CVE-2017-7118 [MEDIUM] CVE-2017-7118: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-7118
Component: Messages
Impact: Processing a maliciously crafted image may lead to a denial of service
Description: A denial of service issue was addressed through improved validation.
apple
CVE-2017-7072P4MEDIUMCVSS 5.5v112017-09-19
CVE-2017-7072 [MEDIUM] CVE-2017-7072: iOS 11
Apple Security Update: About the security content of iOS 11
Product: iOS
Version: 11
CVE: CVE-2017-7072
Component: HFS
Impact: An application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2017-7003P4MEDIUMCVSS 5.5v10.3.22017-05-15
CVE-2017-7003 [MEDIUM] CVE-2017-7003: iOS 10.3.2
Apple Security Update: About the security content of iOS 10.3.2
Product: iOS
Version: 10.3.2
CVE: CVE-2017-7003
Component: CoreText
Impact: Processing a maliciously crafted file may lead to application termination
Description: A denial of service issue was addressed through improved validation.
apple
CVE-2016-7615P4MEDIUMCVSS 5.5v10.22016-12-12
CVE-2016-7615 [MEDIUM] CVE-2016-7615: iOS 10.2
Apple Security Update: About the security content of iOS 10.2
Product: iOS
Version: 10.2
CVE: CVE-2016-7615
Component: Kernel
Impact: A local user may be able to cause a system denial of service
Description: A denial of service issue was addressed through improved memory handling.
apple
CVE-2015-7022P4MEDIUMCVSS 4.3v9.1
CVE-2015-7022 [MEDIUM] CVE-2015-7022: iOS 9.1
Apple Security Update: About the security content of iOS 9.1
Product: iOS
Version: 9.1
CVE: CVE-2015-7022
Component: CVE-ID
apple
CVE-2016-1780P4MEDIUMCVSS 4.3v9.3
CVE-2016-1780 [MEDIUM] CVE-2016-1780: iOS 9.3
Apple Security Update: About the security content of iOS 9.3
Product: iOS
Version: 9.3
CVE: CVE-2016-1780
Component: CVE-ID
apple
CVE-2016-4603P4MEDIUMCVSS 4.3v9.3.32016-07-18
CVE-2016-4603 [MEDIUM] CVE-2016-4603: iOS 9.3.3
Apple Security Update: About the security content of iOS 9.3.3
Product: iOS
Version: 9.3.3
CVE: CVE-2016-4603
Component: Web Media
Impact: Viewing a video in Safari's Private Browsing mode displays the URL of the video outside of Private Browsing mode
Description: A privacy issue existed in the handling of user data by Safari View Controller. This issue was addressed through improved state management.
apple
CVE-2018-4168P4MEDIUMCVSS 4.6v11.32018-03-29
CVE-2018-4168 [MEDIUM] CVE-2018-4168: iOS 11.3
Apple Security Update: About the security content of iOS 11.3
Product: iOS
Version: 11.3
CVE: CVE-2018-4168
Component: Files Widget
Impact: File Widget may display contents on a locked device
Description: The File Widget was displaying cached data when in the locked state. This issue was addressed with improved state management.
apple