Apple Ios 14.8 And Ipados vulnerabilities
25 known vulnerabilities affecting apple/ios_14.8_and_ipados.
Total CVEs
25
CISA KEV
3
actively exploited
Public exploits
0
Exploited in wild
3
Severity breakdown
CRITICAL1HIGH19MEDIUM5
Vulnerabilities
Page 1 of 2
CVE-2021-30820CRITICALCVSS 9.8v14.82021-09-13
CVE-2021-30820 [CRITICAL] CVE-2021-30820: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30820
Component: Bluetooth
Impact: A remote attacker may be able to cause arbitrary code execution
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30838HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30838 [HIGH] CVE-2021-30838: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30838
Impact: A malicious application may be able to execute arbitrary code with system privileges
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-31010HIGHCVSS 7.5KEVv14.82021-09-13
CVE-2021-31010 [HIGH] CVE-2021-31010: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-31010
Component: Core Telephony
Impact: A sandboxed process may be able to circumvent sandbox restrictions. Apple was aware of a report that this issue may have been actively exploited at the time of release.
Description: A deserialization issue was addressed through improved validation.
apple
CVE-2021-30847HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30847 [HIGH] CVE-2021-30847: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30847
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-30852HIGHCVSS 8.8v14.82021-09-13
CVE-2021-30852 [HIGH] CVE-2021-30852: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30852
Component: Foundation
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2021-30834HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30834 [HIGH] CVE-2021-30834: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30834
Component: CoreAudio
Impact: Processing a malicious audio file may result in unexpected application termination or arbitrary code execution
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30928HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30928 [HIGH] CVE-2021-30928: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30928
Component: CoreGraphics
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2021-30841HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30841 [HIGH] CVE-2021-30841: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30841
Component: FontParser
Impact: Processing a maliciously crafted dfont file may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-30826HIGHCVSS 7.5v14.82021-09-13
CVE-2021-30826 [HIGH] CVE-2021-30826: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30826
Component: Telephony
Impact: In certain situations, the baseband would fail to enable integrity and ciphering protection
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30858HIGHCVSS 8.8KEVv14.82021-09-13
CVE-2021-30858 [HIGH] CVE-2021-30858: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30858
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Description: A use after free issue was addressed with improved memory management.
apple
CVE-2021-30818HIGHCVSS 8.8v14.82021-09-13
CVE-2021-30818 [HIGH] CVE-2021-30818: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30818
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2021-30848HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30848 [HIGH] CVE-2021-30848: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30848
Component: WebKit
Impact: Processing maliciously crafted web content may lead to code execution
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-30859HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30859 [HIGH] CVE-2021-30859: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30859
Component: Kernel
Impact: A malicious application may be able to execute arbitrary code with kernel privileges
Description: A type confusion issue was addressed with improved state handling.
apple
CVE-2021-30857HIGHCVSS 7.0v14.82021-09-13
CVE-2021-30857 [HIGH] CVE-2021-30857: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30857
Component: Kernel
Impact: A malicious application may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with improved locking.
apple
CVE-2021-30843HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30843 [HIGH] CVE-2021-30843: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30843
Component: FontParser
Impact: Processing a maliciously crafted dfont file may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-30860HIGHCVSS 7.8KEVv14.82021-09-13
CVE-2021-30860 [HIGH] CVE-2021-30860: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30860
Component: CoreGraphics
Impact: Processing a maliciously crafted PDF may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
Description: An integer overflow was addressed with improved input validation.
apple
CVE-2021-30846HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30846 [HIGH] CVE-2021-30846: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30846
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-30849HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30849 [HIGH] CVE-2021-30849: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30849
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2021-30864HIGHCVSS 8.6v14.82021-09-13
CVE-2021-30864 [HIGH] CVE-2021-30864: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30864
Component: CoreServices
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30842HIGHCVSS 7.8v14.82021-09-13
CVE-2021-30842 [HIGH] CVE-2021-30842: iOS 14.8 and iPadOS 14.8
Apple Security Update: About the security content of iOS 14.8 and iPadOS 14.8
Product: iOS 14.8 and iPadOS
Version: 14.8
CVE: CVE-2021-30842
Component: FontParser
Impact: Processing a maliciously crafted dfont file may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
1 / 2Next →