Apple Ios 15 And Ipados vulnerabilities
46 known vulnerabilities affecting apple/ios_15_and_ipados.
Total CVEs
46
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH26MEDIUM17LOW2
Vulnerabilities
Page 2 of 3
CVE-2021-30838P3HIGHCVSS 7.8v152021-09-20
CVE-2021-30838 [HIGH] CVE-2021-30838: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30838
Impact: A malicious application may be able to execute arbitrary code with system privileges on devices with an Apple Neural Engine
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-30840P3HIGHCVSS 7.8v152021-09-20
CVE-2021-30840 [HIGH] CVE-2021-30840: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30840
Component: FontParser
Impact: Processing a maliciously crafted dfont file may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-30825P3HIGHCVSS 7.8v152021-09-20
CVE-2021-30825 [HIGH] CVE-2021-30825: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30825
Component: CoreML
Impact: A local attacker may be able to cause unexpected application termination or arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-30826P3HIGHCVSS 7.5v152021-09-20
CVE-2021-30826 [HIGH] CVE-2021-30826: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30826
Component: Telephony
Impact: In certain situations, the baseband would fail to enable integrity and ciphering protection
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30882P3HIGHCVSS 7.5v152021-09-20
CVE-2021-30882 [HIGH] CVE-2021-30882: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30882
Component: FaceTime
Impact: An application with microphone permission may unexpectedly access microphone input during a FaceTime call
Description: A logic issue was addressed with improved validation.
apple
CVE-2021-31005P3HIGHCVSS 7.5v152021-09-20
CVE-2021-31005 [HIGH] CVE-2021-31005: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-31005
Component: WebKit
Impact: Turning off "Block all remote content" may not apply to all remote content types
Description: A logic issue was addressed with improved state management.
apple
CVE-2021-30874P3HIGHCVSS 7.5v152021-09-20
CVE-2021-30874 [HIGH] CVE-2021-30874: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30874
Component: NetworkExtension
Impact: A VPN configuration may be installed by an app without user permission
Description: An authorization issue was addressed with improved state management.
apple
CVE-2021-30857P4HIGHCVSS 7.0v152021-09-20
CVE-2021-30857 [HIGH] CVE-2021-30857: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30857
Component: Kernel
Impact: A malicious application may be able to execute arbitrary code with kernel privileges
Description: A race condition was addressed with improved locking.
apple
CVE-2021-30897P4MEDIUMCVSS 6.5v152021-09-20
CVE-2021-30897 [MEDIUM] CVE-2021-30897: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30897
Component: WebKit
Impact: A malicious website may exfiltrate data cross-origin
Description: An issue existed in the specification for the resource timing API. The specification was updated and the updated specification was implemented.
apple
CVE-2021-31001P4MEDIUMCVSS 6.5v152021-09-20
CVE-2021-31001 [MEDIUM] CVE-2021-31001: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-31001
Component: Telephony
Impact: An attacker in a privileged network position may be able to leak sensitive user information
Description: An access issue was addressed with improved access restrictions.
apple
CVE-2021-30870P4MEDIUMCVSS 6.5v152021-09-20
CVE-2021-30870 [MEDIUM] CVE-2021-30870: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30870
Component: Quick Look
Impact: Previewing an html file attached to a note may unexpectedly contact remote servers
Description: A logic issue existed in the handling of document loads. This issue was addressed with improved state management.
apple
CVE-2021-30855P4MEDIUMCVSS 5.5v152021-09-20
CVE-2021-30855 [MEDIUM] CVE-2021-30855: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30855
Component: Preferences
Impact: An application may be able to access restricted files
Description: A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks.
apple
CVE-2021-30930P4MEDIUMCVSS 5.3v152021-09-20
CVE-2021-30930 [MEDIUM] CVE-2021-30930: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30930
Component: WebRTC
Impact: Visiting a maliciously crafted website may lead to the disclosure of sensitive user information
Description: A logic issue was addressed with improved restrictions.
apple
CVE-2021-30866P4MEDIUMCVSS 6.5v152021-09-20
CVE-2021-30866 [MEDIUM] CVE-2021-30866: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30866
Impact: A malicious application may be able to execute arbitrary code with system privileges on devices with an Apple Neural Engine
Description: A memory corruption issue was addressed with improved memory handling.
apple
CVE-2021-30836P4MEDIUMCVSS 5.5v152021-09-20
CVE-2021-30836 [MEDIUM] CVE-2021-30836: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30836
Component: WebKit
Impact: Processing a maliciously crafted audio file may disclose restricted memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-30863P4MEDIUMCVSS 6.8v152021-09-20
CVE-2021-30863 [MEDIUM] CVE-2021-30863: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30863
Component: Face ID
Impact: A 3D model constructed to look like the enrolled user may be able to authenticate via Face ID
Description: This issue was addressed by improving Face ID anti-spoofing models.
apple
CVE-2021-30831P4MEDIUMCVSS 5.5v152021-09-20
CVE-2021-30831 [MEDIUM] CVE-2021-30831: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30831
Component: FontParser
Impact: Processing a maliciously crafted font may result in the disclosure of process memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-30819P4MEDIUMCVSS 5.5v152021-09-20
CVE-2021-30819 [MEDIUM] CVE-2021-30819: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30819
Component: Model I/O
Impact: Processing a maliciously crafted USD file may disclose memory contents
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2021-30867P4MEDIUMCVSS 5.5v152021-09-20
CVE-2021-30867 [MEDIUM] CVE-2021-30867: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30867
Component: Foundation
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2021-30808P4MEDIUMCVSS 5.5v152021-09-20
CVE-2021-30808 [MEDIUM] CVE-2021-30808: iOS 15 and iPadOS 15
Apple Security Update: About the security content of iOS 15 and iPadOS 15
Product: iOS 15 and iPadOS
Version: 15
CVE: CVE-2021-30808
Component: Sandbox
Impact: A malicious application may be able to modify protected parts of the file system
Description: This issue was addressed with improved checks.
apple