cbcvebase.

Apple Ios 14.4 And Ipados vulnerabilities

54 known vulnerabilities affecting apple/ios_14.4_and_ipados.

Total CVEs
54
CISA KEV
5
actively exploited
Public exploits
1
Exploited in wild
6
Severity breakdown
CRITICAL6HIGH35MEDIUM12LOW1

Vulnerabilities

Page 1 of 3
CVE-2021-1782P1HIGHCVSS 7.0KEVPoCv14.42021-01-26
CVE-2021-1782 [HIGH] CVE-2021-1782: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1782 Component: Kernel Impact: A malicious application may be able to elevate privileges. Apple is aware of a report that this issue may have been actively exploited. Description: A race condition was addressed with improved locking.
apple
CVE-2021-1789P1HIGHCVSS 8.8KEVv14.42021-01-26
CVE-2021-1789 [HIGH] CVE-2021-1789: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1789 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2021-1870P1CRITICALCVSS 9.8KEVv14.42021-01-26
CVE-2021-1870 [CRITICAL] CVE-2021-1870: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1870 Component: WebKit Impact: A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-1871P1CRITICALCVSS 9.8KEVv14.42021-01-26
CVE-2021-1871 [CRITICAL] CVE-2021-1871: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1871 Component: WebKit Impact: A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-30869P1HIGHCVSS 7.8KEVv14.42021-01-26
CVE-2021-30869 [HIGH] CVE-2021-30869: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-30869 Component: XNU Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2021-1801P1MEDIUMCVSS 6.5Exploitedv14.42021-01-26
CVE-2021-1801 [MEDIUM] CVE-2021-1801: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1801 Component: WebKit Impact: Maliciously crafted web content may violate iframe sandboxing policy Description: This issue was addressed with improved iframe sandbox enforcement.
apple
CVE-2021-1818P3CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1818 [CRITICAL] CVE-2021-1818: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1818 Component: ImageIO Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1795P3CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1795 [CRITICAL] CVE-2021-1795: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1795 Component: Bluetooth Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2021-1796P3CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1796 [CRITICAL] CVE-2021-1796: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1796 Component: Bluetooth Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2021-1794P3CRITICALCVSS 9.8v14.42021-01-26
CVE-2021-1794 [CRITICAL] CVE-2021-1794: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1794 Component: Bluetooth Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-1788P3HIGHCVSS 8.8v14.42021-01-26
CVE-2021-1788 [HIGH] CVE-2021-1788: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1788 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2021-1792P3HIGHCVSS 8.8v14.42021-01-26
CVE-2021-1792 [HIGH] CVE-2021-1792: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1792 Component: CoreText Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-1748P3HIGHCVSS 8.8v14.42021-01-26
CVE-2021-1748 [HIGH] CVE-2021-1748: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1748 Component: IOSkywalkFamily Impact: A local attacker may be able to elevate their privileges Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-1772P3HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1772 [HIGH] CVE-2021-1772: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1772 Component: CoreText Impact: Processing a maliciously crafted text file may lead to arbitrary code execution Description: A stack overflow was addressed with improved input validation.
apple
CVE-2021-1758P3HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1758 [HIGH] CVE-2021-1758: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1758 Component: FontParser Impact: A remote attacker may be able to cause arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-1759P3HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1759 [HIGH] CVE-2021-1759: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1759 Component: CoreMedia Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-1744P3HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1744 [HIGH] CVE-2021-1744: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1744 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2021-1762P3HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1762 [HIGH] CVE-2021-1762: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1762 Component: Model I/O Impact: Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution Description: An out-of-bounds write was addressed with improved input validation.
apple
CVE-2021-1785P3HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1785 [HIGH] CVE-2021-1785: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1785 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-1743P3HIGHCVSS 7.8v14.42021-01-26
CVE-2021-1743 [HIGH] CVE-2021-1743: iOS 14.4 and iPadOS 14.4 Apple Security Update: About the security content of iOS 14.4 and iPadOS 14.4 Product: iOS 14.4 and iPadOS Version: 14.4 CVE: CVE-2021-1743 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: An out-of-bounds read was addressed with improved bounds checking.
apple
Apple Ios 14.4 And Ipados vulnerabilities | cvebase