Apple Ios 14.4 And Ipados vulnerabilities

54 known vulnerabilities affecting apple/ios_14.4_and_ipados.

Total CVEs
54
CISA KEV
5
actively exploited
Public exploits
0
Exploited in wild
5
Severity breakdown
CRITICAL6HIGH35MEDIUM12LOW1

Vulnerabilities

Page 1 of 3
CVE-2021-1871CRITICALCVSS 9.8KEVv14.42021-01-26
CVE-2021-1871 [CRITICAL] CVE-2021-1871: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1871 Component: WebKit Impact: A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-1818CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1818 [CRITICAL] CVE-2021-1818: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1818 Component: ImageIO Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1870CRITICALCVSS 9.8KEVv14.42021-01-26
CVE-2021-1870 [CRITICAL] CVE-2021-1870: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1870 Component: WebKit Impact: A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-1796CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1796 [CRITICAL] CVE-2021-1796: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1796 Component: Bluetooth Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2021-1794CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1794 [CRITICAL] CVE-2021-1794: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1794 Component: Bluetooth Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-1795CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1795 [CRITICAL] CVE-2021-1795: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1795 Component: Bluetooth Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2021-1767HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1767 [HIGH] CVE-2021-1767: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1767 Component: Model I/O Impact: Processing a maliciously crafted image may lead to heap corruption Description: This issue was addressed with improved checks.
apple
CVE-2021-1789HIGHCVSS 8.8KEVv14.42021-01-26
CVE-2021-1789 [HIGH] CVE-2021-1789: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1789 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2021-1763HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1763 [HIGH] CVE-2021-1763: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1763 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2021-1774HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1774 [HIGH] CVE-2021-1774: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1774 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-1754HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1754 [HIGH] CVE-2021-1754: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1754 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-1737HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1737 [HIGH] CVE-2021-1737: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1737 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2021-1793HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1793 [HIGH] CVE-2021-1793: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1793 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-1783HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1783 [HIGH] CVE-2021-1783: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1783 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An access issue was addressed with improved memory management.
apple
CVE-2021-1759HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1759 [HIGH] CVE-2021-1759: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1759 Component: CoreMedia Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-1788HIGHCVSS 8.8v14.42021-01-26
CVE-2021-1788 [HIGH] CVE-2021-1788: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1788 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2021-1764HIGHCVSS 7.5v14.42021-01-26
CVE-2021-1764 [HIGH] CVE-2021-1764: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1764 Component: Kernel Impact: A remote attacker may be able to cause a denial of service Description: A use after free issue was addressed with improved memory management.
apple
CVE-2021-1838HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1838 [HIGH] CVE-2021-1838: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1838 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-1787HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1787 [HIGH] CVE-2021-1787: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1787 Component: Crash Reporter Impact: A local attacker may be able to elevate their privileges Description: Multiple issues were addressed with improved logic.
apple
CVE-2021-1758HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1758 [HIGH] CVE-2021-1758: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1758 Component: FontParser Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple