Apple Ios 14.8 And Ipados vulnerabilities

25 known vulnerabilities affecting apple/ios_14.8_and_ipados.

Total CVEs
25
CISA KEV
3
actively exploited
Public exploits
0
Exploited in wild
3
Severity breakdown
CRITICAL1HIGH19MEDIUM5

Vulnerabilities

Page 1 of 2
CVE-2021-30820CRITICALCVSS 9.8v14.82021-09-13
CVE-2021-30820 [CRITICAL] CVE-2021-30820: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30820 Component: Bluetooth Impact: A remote attacker may be able to cause arbitrary code execution Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30838HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30838 [HIGH] CVE-2021-30838: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30838 Impact: A malicious application may be able to execute arbitrary code with system privileges Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-31010HIGHCVSS 7.5KEVv14.82021-09-13
CVE-2021-31010 [HIGH] CVE-2021-31010: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-31010 Component: Core Telephony Impact: A sandboxed process may be able to circumvent sandbox restrictions. Apple was aware of a report that this issue may have been actively exploited at the time of release. Description: A deserialization issue was addressed through improved validation.
apple
CVE-2021-30847HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30847 [HIGH] CVE-2021-30847: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30847 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-30852HIGHCVSS 8.8v14.82021-09-13
CVE-2021-30852 [HIGH] CVE-2021-30852: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30852 Component: Foundation Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2021-30834HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30834 [HIGH] CVE-2021-30834: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30834 Component: CoreAudio Impact: Processing a malicious audio file may result in unexpected application termination or arbitrary code execution Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30928HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30928 [HIGH] CVE-2021-30928: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30928 Component: CoreGraphics Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2021-30841HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30841 [HIGH] CVE-2021-30841: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30841 Component: FontParser Impact: Processing a maliciously crafted dfont file may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-30826HIGHCVSS 7.5v14.82021-09-13
CVE-2021-30826 [HIGH] CVE-2021-30826: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30826 Component: Telephony Impact: In certain situations, the baseband would fail to enable integrity and ciphering protection Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30858HIGHCVSS 8.8KEVv14.82021-09-13
CVE-2021-30858 [HIGH] CVE-2021-30858: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30858 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: A use after free issue was addressed with improved memory management.
apple
CVE-2021-30818HIGHCVSS 8.8v14.82021-09-13
CVE-2021-30818 [HIGH] CVE-2021-30818: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30818 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2021-30848HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30848 [HIGH] CVE-2021-30848: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30848 Component: WebKit Impact: Processing maliciously crafted web content may lead to code execution Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-30859HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30859 [HIGH] CVE-2021-30859: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30859 Component: Kernel Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2021-30857HIGHCVSS 7.0v14.82021-09-13
CVE-2021-30857 [HIGH] CVE-2021-30857: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30857 Component: Kernel Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with improved locking.
apple
CVE-2021-30843HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30843 [HIGH] CVE-2021-30843: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30843 Component: FontParser Impact: Processing a maliciously crafted dfont file may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple
CVE-2021-30860HIGHCVSS 7.8KEVv14.82021-09-13
CVE-2021-30860 [HIGH] CVE-2021-30860: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30860 Component: CoreGraphics Impact: Processing a maliciously crafted PDF may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: An integer overflow was addressed with improved input validation.
apple
CVE-2021-30846HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30846 [HIGH] CVE-2021-30846: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30846 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-30849HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30849 [HIGH] CVE-2021-30849: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30849 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2021-30864HIGHCVSS 8.6v14.82021-09-13
CVE-2021-30864 [HIGH] CVE-2021-30864: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30864 Component: CoreServices Impact: A sandboxed process may be able to circumvent sandbox restrictions Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30842HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30842 [HIGH] CVE-2021-30842: iOS 14.8 and iPadOS 14.8 Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8 Product: iOS 14.8 and iPadOS Version: 14.8 CVE: CVE-2021-30842 Component: FontParser Impact: Processing a maliciously crafted dfont file may lead to arbitrary code execution Description: This issue was addressed with improved checks.
apple