Apple Ios 14.5 And Ipados vulnerabilities

62 known vulnerabilities affecting apple/ios_14.5_and_ipados.

Total CVEs
62
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL3HIGH27MEDIUM30LOW2

Vulnerabilities

Page 2 of 4
CVE-2021-30652HIGHCVSS 7.0v14.52021-04-26
CVE-2021-30652 [HIGH] CVE-2021-30652: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-30652 Component: Kernel Impact: A malicious application may be able to disclose kernel memory Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-1875HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1875 [HIGH] CVE-2021-1875: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1875 Component: Kernel Impact: A malicious application may be able to disclose kernel memory Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2021-30662HIGHCVSS 7.3v14.52021-04-26
CVE-2021-30662 [HIGH] CVE-2021-30662: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-30662 Component: ImageIO Impact: Processing a maliciously crafted file may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-1809HIGHCVSS 7.5v14.52021-04-26
CVE-2021-1809 [HIGH] CVE-2021-1809: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1809 Component: CoreAudio Impact: A malicious application may be able to read restricted memory Description: A memory corruption issue was addressed with improved validation.
apple
CVE-2021-1874HIGHCVSS 8.8v14.52021-04-26
CVE-2021-1874 [HIGH] CVE-2021-1874: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1874 Component: Kernel Impact: An application may be able to execute arbitrary code with kernel privileges Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1867HIGHCVSS 8.8v14.52021-04-26
CVE-2021-1867 [HIGH] CVE-2021-1867: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1867 Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-1813HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1813 [HIGH] CVE-2021-1813: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1813 Component: Foundation Impact: A malicious application may be able to gain root privileges Description: A validation issue was addressed with improved logic.
apple
CVE-2021-1816HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1816 [HIGH] CVE-2021-1816: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1816 Component: Kernel Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2021-1812HIGHCVSS 7.8v14.52021-04-26
CVE-2021-1812 [HIGH] CVE-2021-1812: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1812 Component: Core Motion Impact: A malicious application may be able to execute arbitrary code with system privileges Description: A logic issue was addressed with improved validation.
apple
CVE-2021-30653HIGHCVSS 7.8v14.52021-04-26
CVE-2021-30653 [HIGH] CVE-2021-30653: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-30653 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-1857MEDIUMCVSS 6.5v14.52021-04-26
CVE-2021-1857 [MEDIUM] CVE-2021-1857: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1857 Component: CFNetwork Impact: Processing maliciously crafted web content may disclose sensitive user information Description: A memory initialization issue was addressed with improved memory handling.
apple
CVE-2021-1811MEDIUMCVSS 6.5v14.52021-04-26
CVE-2021-1811 [MEDIUM] CVE-2021-1811: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1811 Component: CoreText Impact: Processing a maliciously crafted font may result in the disclosure of process memory Description: A logic issue was addressed with improved state management.
apple
CVE-2021-1822MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1822 [MEDIUM] CVE-2021-1822: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1822 Component: MobileInstallation Impact: A local user may be able to modify protected parts of the file system Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-1848MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1848 [MEDIUM] CVE-2021-1848: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1848 Component: Wallet Impact: A local user may be able to view sensitive information in the app switcher Description: The issue was addressed with improved UI handling.
apple
CVE-2021-1825MEDIUMCVSS 6.1v14.52021-04-26
CVE-2021-1825 [MEDIUM] CVE-2021-1825: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1825 Component: WebKit Impact: Processing maliciously crafted web content may lead to a cross site scripting attack Description: An input validation issue was addressed with improved input validation.
apple
CVE-2021-1872MEDIUMCVSS 4.3v14.52021-04-26
CVE-2021-1872 [MEDIUM] CVE-2021-1872: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1872 Component: FaceTime Impact: Muting a CallKit call while ringing may not result in mute being enabled Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30659MEDIUMCVSS 6.5v14.52021-04-26
CVE-2021-30659 [MEDIUM] CVE-2021-30659: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-30659 Component: CoreFoundation Impact: A malicious application may be able to leak sensitive user information Description: A validation issue was addressed with improved logic.
apple
CVE-2021-1831MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1831 [MEDIUM] CVE-2021-1831: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1831 Component: Shortcuts Impact: An application may allow shortcuts to access restricted files Description: The issue was addressed with improved permissions logic.
apple
CVE-2021-1826MEDIUMCVSS 6.1v14.52021-04-26
CVE-2021-1826 [MEDIUM] CVE-2021-1826: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1826 Component: WebKit Impact: Processing maliciously crafted web content may lead to universal cross site scripting Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-1807MEDIUMCVSS 5.5v14.52021-04-26
CVE-2021-1807 [MEDIUM] CVE-2021-1807: iOS 14.5 and iPadOS 14.5 Apple Security Update: About the security content of iOS 14.5 and iPadOS 14.5 Product: iOS 14.5 and iPadOS Version: 14.5 CVE: CVE-2021-1807 Component: Safari Impact: A local user may be able to write arbitrary files Description: A validation issue was addressed with improved input sanitization.
apple