Apple Ios 13.6 And Ipados vulnerabilities

71 known vulnerabilities affecting apple/ios_13.6_and_ipados.

Total CVEs
71
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL6HIGH47MEDIUM17LOW1

Vulnerabilities

Page 2 of 4
CVE-2020-9891HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9891 [HIGH] CVE-2020-9891: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9891 Component: Audio Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2020-9940HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9940 [HIGH] CVE-2020-9940: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9940 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9893HIGHCVSS 8.8v13.62020-07-15
CVE-2020-9893 [HIGH] CVE-2020-9893: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9893 Component: WebKit Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2020-9910HIGHCVSS 8.8v13.62020-07-15
CVE-2020-9910 [HIGH] CVE-2020-9910: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9910 Component: WebKit Impact: A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication Description: Multiple issues were addressed with improved logic.
apple
CVE-2020-9892HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9892 [HIGH] CVE-2020-9892: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9892 Component: Kernel Impact: A malicious application may be able to execute arbitrary code with system privileges Description: Multiple memory corruption issues were addressed with improved state management.
apple
CVE-2020-9984HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9984 [HIGH] CVE-2020-9984: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9984 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-9872HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9872 [HIGH] CVE-2020-9872: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9872 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9874HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9874 [HIGH] CVE-2020-9874: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9874 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9862HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9862 [HIGH] CVE-2020-9862: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9862 Component: WebKit Web Inspector Impact: Copying a URL from Web Inspector may lead to command injection Description: A command injection issue existed in Web Inspector. This issue was addressed with improved escaping.
apple
CVE-2020-9905HIGHCVSS 7.5v13.62020-07-15
CVE-2020-9905 [HIGH] CVE-2020-9905: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9905 Component: Kernel Impact: A remote attacker may be able to cause a denial of service Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2020-9881HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9881 [HIGH] CVE-2020-9881: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9881 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9878HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9878 [HIGH] CVE-2020-9878: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9878 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9884HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9884 [HIGH] CVE-2020-9884: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9884 Component: Audio Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9865HIGHCVSS 8.6v13.62020-07-15
CVE-2020-9865 [HIGH] CVE-2020-9865: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9865 Component: Crash Reporter Impact: A malicious application may be able to break out of its sandbox Description: A memory corruption issue was addressed by removing the vulnerable code.
apple
CVE-2020-9889HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9889 [HIGH] CVE-2020-9889: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9889 Component: Audio Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9937HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9937 [HIGH] CVE-2020-9937: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9937 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9985HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9985 [HIGH] CVE-2020-9985: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9985 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2020-9879HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9879 [HIGH] CVE-2020-9879: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9879 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-9917HIGHCVSS 7.5v13.62020-07-15
CVE-2020-9917 [HIGH] CVE-2020-9917: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9917 Component: Wi-Fi Impact: A remote attacker may be able to cause a denial of service Description: This issue was addressed with improved checks.
apple
CVE-2020-9919HIGHCVSS 7.8v13.62020-07-15
CVE-2020-9919 [HIGH] CVE-2020-9919: iOS 13.6 and iPadOS 13.6 Apple Security Update: About the security content of iOS 13.6 and iPadOS 13.6 Product: iOS 13.6 and iPadOS Version: 13.6 CVE: CVE-2020-9919 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: A buffer overflow issue was addressed with improved memory handling.
apple