Apple Ios 14.2 And Ipados vulnerabilities
32 known vulnerabilities affecting apple/ios_14.2_and_ipados.
Total CVEs
32
CISA KEV
3
actively exploited
Public exploits
2
Exploited in wild
3
Severity breakdown
HIGH25MEDIUM7
Vulnerabilities
Page 1 of 2
CVE-2020-27930P1HIGHCVSS 7.8KEVPoCv14.22020-11-05
CVE-2020-27930 [HIGH] CVE-2020-27930: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27930
Component: FontParser
Impact: Processing a maliciously crafted font may lead to arbitrary code execution. Apple is aware of reports that an exploit for this issue exists in the wild.
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2020-27950P2MEDIUMCVSS 5.5KEVPoCv14.22020-11-05
CVE-2020-27950 [MEDIUM] CVE-2020-27950: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27950
Component: Kernel
Impact: A malicious application may be able to disclose kernel memory. Apple is aware of reports that an exploit for this issue exists in the wild.
Description: A memory initialization issue was addressed.
apple
CVE-2020-27932P1HIGHCVSS 7.8KEVv14.22020-11-05
CVE-2020-27932 [HIGH] CVE-2020-27932: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27932
Component: Kernel
Impact: A malicious application may be able to execute arbitrary code with kernel privileges. Apple is aware of reports that an exploit for this issue exists in the wild.
Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2020-27920P3HIGHCVSS 8.8v14.22020-11-05
CVE-2020-27920 [HIGH] CVE-2020-27920: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27920
Component: Keyboard
Impact: A person with physical access to an iOS device may be able to access stored passwords without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2020-27916P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27916 [HIGH] CVE-2020-27916: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27916
Component: Audio
Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution
Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2020-27911P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27911 [HIGH] CVE-2020-27911: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27911
Component: Keyboard
Impact: A person with physical access to an iOS device may be able to access stored passwords without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2020-27912P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27912 [HIGH] CVE-2020-27912: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27912
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2020-10017P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-10017 [HIGH] CVE-2020-10017: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-10017
Component: CoreAudio
Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution
Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2020-27910P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27910 [HIGH] CVE-2020-27910: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27910
Component: Audio
Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-27918P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27918 [HIGH] CVE-2020-27918: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27918
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2020-9897P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-9897 [HIGH] CVE-2020-9897: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-9897
Component: CoreGraphics
Impact: Processing a maliciously crafted PDF may lead to arbitrary code execution
Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2020-27909P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27909 [HIGH] CVE-2020-27909: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27909
Component: CoreAudio
Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-27917P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27917 [HIGH] CVE-2020-27917: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27917
Component: Keyboard
Impact: A person with physical access to an iOS device may be able to access stored passwords without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2020-10016P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-10016 [HIGH] CVE-2020-10016: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-10016
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2020-27927P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27927 [HIGH] CVE-2020-27927: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27927
Component: FontParser
Impact: Processing a maliciously crafted font file may lead to arbitrary code execution
Description: An out-of-bounds write issue was addressed with improved bounds checking.
apple
CVE-2020-27923P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27923 [HIGH] CVE-2020-27923: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27923
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2020-10004P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-10004 [HIGH] CVE-2020-10004: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-10004
Component: Model I/O
Impact: Opening a maliciously crafted file may lead to unexpected application termination or arbitrary code execution
Description: A logic issue was addressed with improved state management.
apple
CVE-2020-27905P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27905 [HIGH] CVE-2020-27905: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27905
Component: IOAcceleratorFamily
Impact: A malicious application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved state management.
apple
CVE-2020-27908P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27908 [HIGH] CVE-2020-27908: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27908
Component: CoreAudio
Impact: Processing a maliciously crafted audio file may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2020-27924P3HIGHCVSS 7.8v14.22020-11-05
CVE-2020-27924 [HIGH] CVE-2020-27924: iOS 14.2 and iPadOS 14.2
Apple Security Update: About the security content of iOS 14.2 and iPadOS 14.2
Product: iOS 14.2 and iPadOS
Version: 14.2
CVE: CVE-2020-27924
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
apple
1 / 2Next →