Apple Ios 13.6 And Ipados vulnerabilities
71 known vulnerabilities affecting apple/ios_13.6_and_ipados.
Total CVEs
71
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
3
Severity breakdown
CRITICAL6HIGH47MEDIUM17LOW1
Vulnerabilities
Page 1 of 4
CVE-2020-9934P2MEDIUMCVSS 5.5KEVPoCv13.62020-07-15
CVE-2020-9934 [MEDIUM] CVE-2020-9934: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9934
Component: CoreFoundation
Impact: A local user may be able to view sensitive user information
Description: An issue existed in the handling of environment variables. This issue was addressed with improved validation.
apple
CVE-2020-9907P1HIGHCVSS 7.8KEVv13.62020-07-15
CVE-2020-9907 [HIGH] CVE-2020-9907: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9907
Component: AVEVideoEncoder
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed by removing the vulnerable code.
apple
CVE-2020-9910P1HIGHCVSS 8.8Exploitedv13.62020-07-15
CVE-2020-9910 [HIGH] CVE-2020-9910: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9910
Component: WebKit
Impact: A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication
Description: Multiple issues were addressed with improved logic.
apple
CVE-2020-9895P3CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9895 [CRITICAL] CVE-2020-9895: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9895
Component: WebKit
Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2020-9906P3CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9906 [CRITICAL] CVE-2020-9906: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9906
Component: Wi-Fi
Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2020-9893P3HIGHCVSS 8.8v13.62020-07-15
CVE-2020-9893 [HIGH] CVE-2020-9893: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9893
Component: WebKit
Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2020-9920P3CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9920 [CRITICAL] CVE-2020-9920: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9920
Component: Mail
Impact: A malicious mail server may overwrite arbitrary mail files
Description: A path handling issue was addressed with improved validation.
apple
CVE-2020-9918P3CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9918 [CRITICAL] CVE-2020-9918: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9918
Component: Wi-Fi
Impact: A remote attacker may be able to cause unexpected system termination or corrupt kernel memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9883P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9883 [HIGH] CVE-2020-9883: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9883
Component: CoreGraphics
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2019-19906P3HIGHCVSS 7.5v13.62020-07-15
CVE-2019-19906 [HIGH] CVE-2019-19906: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2019-19906
Component: CVE-2019-19906
apple
CVE-2020-9876P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9876 [HIGH] CVE-2020-9876: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9876
Component: ImageIO
Impact: Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9889P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9889 [HIGH] CVE-2020-9889: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9889
Component: Audio
Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9919P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9919 [HIGH] CVE-2020-9919: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9919
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9868P3CRITICALCVSS 9.1v13.62020-07-15
CVE-2020-9868 [CRITICAL] CVE-2020-9868: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9868
Component: Security
Impact: An attacker may have been able to impersonate a trusted website using shared key material for an administrator added certificate
Description: A certificate validation issue existed when processing administrator added certificates. This issue was addressed with improv
apple
CVE-2020-9873P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9873 [HIGH] CVE-2020-9873: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9873
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9938P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9938 [HIGH] CVE-2020-9938: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9938
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9984P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9984 [HIGH] CVE-2020-9984: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9984
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9898P3CRITICALCVSS 9.8v13.62020-07-15
CVE-2020-9898 [CRITICAL] CVE-2020-9898: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9898
Component: WebDAV
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: This issue was addressed with improved entitlements.
apple
CVE-2020-9865P3HIGHCVSS 8.6v13.62020-07-15
CVE-2020-9865 [HIGH] CVE-2020-9865: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9865
Component: Crash Reporter
Impact: A malicious application may be able to break out of its sandbox
Description: A memory corruption issue was addressed by removing the vulnerable code.
apple
CVE-2020-9863P3HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9863 [HIGH] CVE-2020-9863: iOS 13.6 and iPadOS 13.6
Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6
Product: iOS 13.6 and iPadOS
Version: 13.6
CVE: CVE-2020-9863
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory initialization issue was addressed with improved memory handling.
apple
1 / 4Next →