Apple Ios 15.3 And Ipados vulnerabilities

10 known vulnerabilities affecting apple/ios_15.3_and_ipados.

Total CVEs
10
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL1HIGH6MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2022-22587CRITICALCVSS 9.8KEVv15.32022-01-26
CVE-2022-22587 [CRITICAL] CVE-2022-22587: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22587 Component: IOMobileFrameBuffer Impact: A malicious application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited. Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2022-22584HIGHCVSS 7.8v15.32022-01-26
CVE-2022-22584 [HIGH] CVE-2022-22584: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22584 Component: ColorSync Impact: Processing a maliciously crafted file may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved validation.
apple
CVE-2022-22585HIGHCVSS 7.5v15.32022-01-26
CVE-2022-22585 [HIGH] CVE-2022-22585: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22585 Component: Crash Reporter Impact: A malicious application may be able to gain root privileges Description: A logic issue was addressed with improved validation.
apple
CVE-2022-22593HIGHCVSS 7.8v15.32022-01-26
CVE-2022-22593 [HIGH] CVE-2022-22593: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22593 Component: Kernel Impact: A malicious application may be able to execute arbitrary code with kernel privileges Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2022-22579HIGHCVSS 7.8v15.32022-01-26
CVE-2022-22579 [HIGH] CVE-2022-22579: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22579 Component: Model I/O Impact: Processing a maliciously crafted STL file may lead to unexpected application termination or arbitrary code execution Description: An information disclosure issue was addressed with improved state management.
apple
CVE-2022-22578HIGHCVSS 7.8v15.32022-01-26
CVE-2022-22578 [HIGH] CVE-2022-22578: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22578 Component: Crash Reporter Impact: A malicious application may be able to gain root privileges Description: A logic issue was addressed with improved validation.
apple
CVE-2022-22590HIGHCVSS 8.8v15.32022-01-26
CVE-2022-22590 [HIGH] CVE-2022-22590: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22590 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A use after free issue was addressed with improved memory management.
apple
CVE-2022-22594MEDIUMCVSS 6.5v15.32022-01-26
CVE-2022-22594 [MEDIUM] CVE-2022-22594: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22594 Component: WebKit Storage Impact: A website may be able to track sensitive user information Description: A cross-origin issue in the IndexDB API was addressed with improved input validation.
apple
CVE-2022-22589MEDIUMCVSS 6.1v15.32022-01-26
CVE-2022-22589 [MEDIUM] CVE-2022-22589: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22589 Component: WebKit Impact: Processing a maliciously crafted mail message may lead to running arbitrary javascript Description: A validation issue was addressed with improved input sanitization.
apple
CVE-2022-22592MEDIUMCVSS 6.5v15.32022-01-26
CVE-2022-22592 [MEDIUM] CVE-2022-22592: iOS 15.3 and iPadOS 15.3 Apple Security Update: About the security content of iOS 15.3 and iPadOS 15.3 Product: iOS 15.3 and iPadOS Version: 15.3 CVE: CVE-2022-22592 Component: WebKit Impact: Processing maliciously crafted web content may prevent Content Security Policy from being enforced Description: A logic issue was addressed with improved state management.
apple