cbcvebase.

Apple Ios 13.6 And Ipados vulnerabilities

71 known vulnerabilities affecting apple/ios_13.6_and_ipados.

Total CVEs
71
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
3
Severity breakdown
CRITICAL6HIGH47MEDIUM17LOW1

Vulnerabilities

Page 1 of 4
CVE-2020-9934P2MEDIUMCVSS 5.5KEVPoCv13.62020-07-15
CVE-2020-9934 [MEDIUM] CVE-2020-9934: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9934 Component: CoreFoundation Impact: A local user may be able to view sensitive user information Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2020-9907P1HIGHCVSS 7.8KEVv13.62020-07-15
CVE-2020-9907 [HIGH] CVE-2020-9907: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9907 Component: AVEVideoEncoder Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory corruption issue was addressed by removing the vulnerable code.
apple
CVE-2020-9910P1HIGHCVSS 8.8Exploitedv13.62020-07-15
CVE-2020-9910 [HIGH] CVE-2020-9910: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9910 Component: WebKit Impact: A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication Description: Multiple issues were addressed with improved logic.
apple
CVE-2020-9895P3CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9895 [CRITICAL] CVE-2020-9895: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9895 Component: WebKit Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2020-9906P3CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9906 [CRITICAL] CVE-2020-9906: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9906 Component: Wi-Fi Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2020-9893P3HIGHCVSS 8.8v13.62020-07-15
CVE-2020-9893 [HIGH] CVE-2020-9893: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9893 Component: WebKit Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2020-9920P3CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9920 [CRITICAL] CVE-2020-9920: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9920 Component: Mail Impact: A malicious mail server may overwrite arbitrary mail files Description: A path handling issue was addressed with improved validation.
apple
CVE-2020-9918P3CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9918 [CRITICAL] CVE-2020-9918: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9918 Component: Wi-Fi Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9883P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9883 [HIGH] CVE-2020-9883: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9883 Component: CoreGraphics Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2019-19906P3HIGHCVSS 7.5v13.62020-07-15
CVE-2019-19906 [HIGH] CVE-2019-19906: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2019-19906 Component: CVE-2019-19906
apple
CVE-2020-9876P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9876 [HIGH] CVE-2020-9876: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9876 Component: ImageIO Impact: Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9889P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9889 [HIGH] CVE-2020-9889: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9889 Component: Audio Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9919P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9919 [HIGH] CVE-2020-9919: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9919 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9868P3CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9868 [CRITICAL] CVE-2020-9868: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9868 Component: Security Impact: An attacker may have been able to impersonate a trusted website using shared key material for an administrator added certificate Description: A certificate validation issue existed when processing administrator added certificates. This issue was addressed with improv
apple
CVE-2020-9873P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9873 [HIGH] CVE-2020-9873: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9873 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9938P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9938 [HIGH] CVE-2020-9938: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9938 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9984P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9984 [HIGH] CVE-2020-9984: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9984 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9898P3CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9898 [CRITICAL] CVE-2020-9898: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9898 Component: WebDAV Impact: A sandboxed process may be able to circumvent sandbox restrictions Description: This issue was addressed with improved entitlements.
apple
CVE-2020-9865P3HIGHCVSS 8.6v13.62020-07-15
CVE-2020-9865 [HIGH] CVE-2020-9865: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9865 Component: Crash Reporter Impact: A malicious application may be able to break out of its sandbox Description: A memory corruption issue was addressed by removing the vulnerable code.
apple
CVE-2020-9863P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9863 [HIGH] CVE-2020-9863: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9863 Component: Kernel Impact: An application may be able to execute arbitrary code with kernel privileges Description: A memory initialization issue was addressed with improved memory handling.
apple
Apple Ios 13.6 And Ipados vulnerabilities | cvebase