Apple Ios 13.6 And Ipados vulnerabilities

71 known vulnerabilities affecting apple/ios_13.6_and_ipados.

Total CVEs
71
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL6HIGH47MEDIUM17LOW1

Vulnerabilities

Page 1 of 4
CVE-2020-9920CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9920 [CRITICAL] CVE-2020-9920: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9920 Component: Mail Impact: A malicious mail server may overwrite arbitrary mail files Description: A path handling issue was addressed with improved validation.
apple
CVE-2020-9918CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9918 [CRITICAL] CVE-2020-9918: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9918 Component: Wi-Fi Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9906CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9906 [CRITICAL] CVE-2020-9906: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9906 Component: Wi-Fi Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2020-9868CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9868 [CRITICAL] CVE-2020-9868: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9868 Component: Security Impact: An attacker may have been able to impersonate a trusted website using shared key material for an administrator added certificate Description: A certificate validation issue existed when processing administrator added certificates. This issue was addressed with improv
apple
CVE-2020-9895CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9895 [CRITICAL] CVE-2020-9895: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9895 Component: WebKit Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2020-9898CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9898 [CRITICAL] CVE-2020-9898: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9898 Component: WebDAV Impact: A sandboxed process may be able to circumvent sandbox restrictions Description: This issue was addressed with improved entitlements.
apple
CVE-2020-9903HIGHCVSS 7.5v13.62020-07-15
CVE-2020-9903 [HIGH] CVE-2020-9903: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9903 Component: Safari Login AutoFill Impact: A malicious attacker may cause Safari to suggest a password for the wrong domain Description: A logic issue was addressed with improved restrictions.
apple
CVE-2020-9907HIGHCVSS 7.8KEVv13.62020-07-15
CVE-2020-9907 [HIGH] CVE-2020-9907: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9907 Component: AVEVideoEncoder Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed by removing the vulnerable code.
apple
CVE-2020-9914HIGHCVSS 7.5v13.62020-07-15
CVE-2020-9914 [HIGH] CVE-2020-9914: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9914 Component: GeoServices Impact: A malicious application may be able to read sensitive location information Description: An authorization issue was addressed with improved state management.
apple
CVE-2020-9883HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9883 [HIGH] CVE-2020-9883: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9883 Component: CoreGraphics Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9875HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9875 [HIGH] CVE-2020-9875: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9875 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An integer overflow was addressed through improved input validation.
apple
CVE-2020-9880HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9880 [HIGH] CVE-2020-9880: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9880 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2020-9980HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9980 [HIGH] CVE-2020-9980: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9980 Component: FontParser Impact: Processing a maliciously crafted font file may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9888HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9888 [HIGH] CVE-2020-9888: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9888 Component: Audio Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2020-9873HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9873 [HIGH] CVE-2020-9873: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9873 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2019-19906HIGHCVSS 7.5v13.62020-07-15
CVE-2019-19906 [HIGH] CVE-2019-19906: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2019-19906 Component: CVE-2019-19906
apple
CVE-2020-9882HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9882 [HIGH] CVE-2020-9882: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9882 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9936HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9936 [HIGH] CVE-2020-9936: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9936 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9877HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9877 [HIGH] CVE-2020-9877: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9877 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2020-9871HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9871 [HIGH] CVE-2020-9871: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9871 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple