Apple Ios 14.5 And Ipados vulnerabilities
62 known vulnerabilities affecting apple/ios_14.5_and_ipados.
Total CVEs
62
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL3HIGH27MEDIUM30LOW2
Vulnerabilities
Page 2 of 4
CVE-2021-30652HIGHCVSS 7.0v14.52021-04-26
CVE-2021-30652 [HIGH] CVE-2021-30652: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-30652
Component: Kernel
Impact: A malicious application may be able to disclose kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-1875HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1875 [HIGH] CVE-2021-1875: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1875
Component: Kernel
Impact: A malicious application may be able to disclose kernel memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-30662HIGHCVSS 7.3v14.52021-04-26
CVE-2021-30662 [HIGH] CVE-2021-30662: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-30662
Component: ImageIO
Impact: Processing a maliciously crafted file may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-1809HIGHCVSS 7.5v14.52021-04-26
CVE-2021-1809 [HIGH] CVE-2021-1809: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1809
Component: CoreAudio
Impact: A malicious application may be able to read restricted memory
Description: A memory corruption issue was addressed with improved validation.
apple
CVE-2021-1874HIGHCVSS 8.8v14.52021-04-26
CVE-2021-1874 [HIGH] CVE-2021-1874: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1874
Component: Kernel
Impact: An application may be able to execute arbitrary code with kernel privileges
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1867HIGHCVSS 8.8v14.52021-04-26
CVE-2021-1867 [HIGH] CVE-2021-1867: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1867
Impact: A malicious application may be able to execute arbitrary code with kernel privileges
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-1813HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1813 [HIGH] CVE-2021-1813: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1813
Component: Foundation
Impact: A malicious application may be able to gain root privileges
Description: A validation issue was addressed with improved logic.
apple
CVE-2021-1816HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1816 [HIGH] CVE-2021-1816: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1816
Component: Kernel
Impact: A malicious application may be able to execute arbitrary code with kernel privileges
Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2021-1812HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1812 [HIGH] CVE-2021-1812: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1812
Component: Core Motion
Impact: A malicious application may be able to execute arbitrary code with system privileges
Description: A logic issue was addressed with improved validation.
apple
CVE-2021-30653HIGHCVSS 7.8v14.52021-04-26
CVE-2021-30653 [HIGH] CVE-2021-30653: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-30653
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-1857MEDIUMCVSS 6.5v14.52021-04-26
CVE-2021-1857 [MEDIUM] CVE-2021-1857: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1857
Component: CFNetwork
Impact: Processing maliciously crafted web content may disclose sensitive user information
Description: A memory initialization issue was addressed with improved memory handling.
apple
CVE-2021-1811MEDIUMCVSS 6.5v14.52021-04-26
CVE-2021-1811 [MEDIUM] CVE-2021-1811: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1811
Component: CoreText
Impact: Processing a maliciously crafted font may result in the disclosure of process memory
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1822MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1822 [MEDIUM] CVE-2021-1822: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1822
Component: MobileInstallation
Impact: A local user may be able to modify protected parts of the file system
Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-1848MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1848 [MEDIUM] CVE-2021-1848: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1848
Component: Wallet
Impact: A local user may be able to view sensitive information in the app switcher
Description: The issue was addressed with improved UI handling.
apple
CVE-2021-1825MEDIUMCVSS 6.1v14.52021-04-26
CVE-2021-1825 [MEDIUM] CVE-2021-1825: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1825
Component: WebKit
Impact: Processing maliciously crafted web content may lead to a cross site scripting attack
Description: An input validation issue was addressed with improved input validation.
apple
CVE-2021-1872MEDIUMCVSS 4.3v14.52021-04-26
CVE-2021-1872 [MEDIUM] CVE-2021-1872: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1872
Component: FaceTime
Impact: Muting a CallKit call while ringing may not result in mute being enabled
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30659MEDIUMCVSS 6.5v14.52021-04-26
CVE-2021-30659 [MEDIUM] CVE-2021-30659: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-30659
Component: CoreFoundation
Impact: A malicious application may be able to leak sensitive user information
Description: A validation issue was addressed with improved logic.
apple
CVE-2021-1831MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1831 [MEDIUM] CVE-2021-1831: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1831
Component: Shortcuts
Impact: An application may allow shortcuts to access restricted files
Description: The issue was addressed with improved permissions logic.
apple
CVE-2021-1826MEDIUMCVSS 6.1v14.52021-04-26
CVE-2021-1826 [MEDIUM] CVE-2021-1826: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1826
Component: WebKit
Impact: Processing maliciously crafted web content may lead to universal cross site scripting
Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-1807MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1807 [MEDIUM] CVE-2021-1807: iOS 14.5 and iPadOS 14.5
Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5
Product: iOS 14.5 and iPadOS
Version: 14.5
CVE: CVE-2021-1807
Component: Safari
Impact: A local user may be able to write arbitrary files
Description: A validation issue was addressed with improved input sanitization.
apple