Apple Ios 15.7.2 And Ipados vulnerabilities

21 known vulnerabilities affecting apple/ios_15.7.2_and_ipados.

Total CVEs
21
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL1HIGH13MEDIUM7

Vulnerabilities

Page 1 of 2
CVE-2022-42837CRITICALCVSS 9.8v15.7.22022-12-13
CVE-2022-42837 [CRITICAL] CVE-2022-42837: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42837 Component: IOHIDFamily Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with improved state handling.
apple
CVE-2022-46691HIGHCVSS 8.8v15.7.22022-12-13
CVE-2022-46691 [HIGH] CVE-2022-46691: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46691 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A memory consumption issue was addressed with improved memory handling.
apple
CVE-2022-42840HIGHCVSS 7.8v15.7.22022-12-13
CVE-2022-42840 [HIGH] CVE-2022-42840: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42840 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with additional validation.
apple
CVE-2022-42864HIGHCVSS 7.0v15.7.22022-12-13
CVE-2022-42864 [HIGH] CVE-2022-42864: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42864 Component: IOHIDFamily Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with improved state handling.
apple
CVE-2022-40304HIGHCVSS 7.8v15.7.22022-12-13
CVE-2022-40304 [HIGH] CVE-2022-40304: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-40304 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with additional validation.
apple
CVE-2022-46694HIGHCVSS 7.8v15.7.22022-12-13
CVE-2022-46694 [HIGH] CVE-2022-46694: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46694 Component: AppleAVD Impact: Parsing a maliciously crafted video file may lead to kernel code execution Description: An out-of-bounds write issue was addressed with improved input validation.
apple
CVE-2022-42848HIGHCVSS 7.8v15.7.22022-12-13
CVE-2022-42848 [HIGH] CVE-2022-42848: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42848 Component: AVEVideoEncoder Impact: An app may be able to execute arbitrary code with kernel privileges Description: A logic issue was addressed with improved checks.
apple
CVE-2022-42861HIGHCVSS 8.8v15.7.22022-12-13
CVE-2022-42861 [HIGH] CVE-2022-42861: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42861 Component: File System Impact: An app may be able to break out of its sandbox Description: This issue was addressed with improved checks.
apple
CVE-2022-42856HIGHCVSS 8.8KEVv15.7.22022-12-13
CVE-2022-42856 [HIGH] CVE-2022-42856: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42856 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1. Description: A type confusion issue was addressed w
apple
CVE-2023-23496HIGHCVSS 8.8v15.7.22022-12-13
CVE-2023-23496 [HIGH] CVE-2023-23496: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2023-23496 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: The issue was addressed with improved checks.
apple
CVE-2022-42855HIGHCVSS 7.1v15.7.22022-12-13
CVE-2022-42855 [HIGH] CVE-2022-42855: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42855 Component: Preferences Impact: An app may be able to use arbitrary entitlements Description: A logic issue was addressed with improved state management.
apple
CVE-2022-46689HIGHCVSS 7.0PoCv15.7.22022-12-13
CVE-2022-46689 [HIGH] CVE-2022-46689: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46689 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with additional validation.
apple
CVE-2022-46700HIGHCVSS 8.8v15.7.22022-12-13
CVE-2022-46700 [HIGH] CVE-2022-46700: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46700 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2022-40303HIGHCVSS 7.5v15.7.22022-12-13
CVE-2022-40303 [HIGH] CVE-2022-40303: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-40303 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A race condition was addressed with additional validation.
apple
CVE-2022-46705MEDIUMCVSS 4.3v15.7.22022-12-13
CVE-2022-46705 [MEDIUM] CVE-2022-46705: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46705 Component: WebKit Impact: Visiting a malicious website may lead to address bar spoofing Description: A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation.
apple
CVE-2022-46718MEDIUMCVSS 5.5v15.7.22022-12-13
CVE-2022-46718 [MEDIUM] CVE-2022-46718: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46718 Component: TCC Impact: An app may be able to read sensitive location information Description: A logic issue was addressed with improved restrictions.
apple
CVE-2022-46695MEDIUMCVSS 6.5v15.7.22022-12-13
CVE-2022-46695 [MEDIUM] CVE-2022-46695: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46695 Component: Safari Impact: Visiting a website that frames malicious content may lead to UI spoofing Description: A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation.
apple
CVE-2022-42846MEDIUMCVSS 5.5v15.7.22022-12-13
CVE-2022-42846 [MEDIUM] CVE-2022-42846: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-42846 Component: Graphics Driver Impact: Parsing a maliciously crafted video file may lead to unexpected system termination Description: The issue was addressed with improved memory handling.
apple
CVE-2022-46692MEDIUMCVSS 5.5v15.7.22022-12-13
CVE-2022-46692 [MEDIUM] CVE-2022-46692: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46692 Component: WebKit Impact: Processing maliciously crafted web content may bypass Same Origin Policy Description: A logic issue was addressed with improved state management.
apple
CVE-2022-46703MEDIUMCVSS 5.5v15.7.22022-12-13
CVE-2022-46703 [MEDIUM] CVE-2022-46703: iOS 15.7.2 and iPadOS 15.7.2 Apple Security Update: About the security content of iOS 15.7.2 and iPadOS 15.7.2 Product: iOS 15.7.2 and iPadOS Version: 15.7.2 CVE: CVE-2022-46703 Component: Weather Impact: An app may be able to read sensitive location information Description: A logic issue was addressed with improved restrictions.
apple