Apple Ios 16.4 And Ipados vulnerabilities
53 known vulnerabilities affecting apple/ios_16.4_and_ipados.
Total CVEs
53
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
2
Severity breakdown
CRITICAL2HIGH17MEDIUM26LOW8
Vulnerabilities
Page 2 of 3
CVE-2023-27933P4MEDIUMCVSS 6.7v16.42023-03-27
CVE-2023-27933 [MEDIUM] CVE-2023-27933: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27933
Component: Kernel
Impact: An app with root privileges may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42865P4MEDIUMCVSS 6.5v16.42023-03-27
CVE-2023-42865 [MEDIUM] CVE-2023-42865: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-42865
Component: ImageIO
Impact: Processing an image may result in disclosure of process memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2023-42862P4MEDIUMCVSS 6.5v16.42023-03-27
CVE-2023-42862 [MEDIUM] CVE-2023-42862: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-42862
Component: ImageIO
Impact: Processing an image may result in disclosure of process memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2023-27954P4MEDIUMCVSS 6.5v16.42023-03-27
CVE-2023-27954 [MEDIUM] CVE-2023-27954: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27954
Component: WebKit
Impact: A website may be able to track sensitive user information
Description: The issue was addressed by removing origin information.
apple
CVE-2023-28187P4MEDIUMCVSS 6.5v16.42023-03-27
CVE-2023-28187 [MEDIUM] CVE-2023-28187: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-28187
Component: Kernel
Impact: A user may be able to cause a denial-of-service
Description: This issue was addressed with improved state management.
apple
CVE-2023-28188P4MEDIUMCVSS 6.5v16.42023-03-27
CVE-2023-28188 [MEDIUM] CVE-2023-28188: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-28188
Component: TextKit
Impact: A remote user may be able to cause a denial-of-service
Description: A denial-of-service issue was addressed with improved input validation.
apple
CVE-2014-1745P4HIGHCVSS 7.1v16.42023-03-27
CVE-2014-1745 [HIGH] CVE-2014-1745: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2014-1745
Component: WebKit
Impact: Processing a file may lead to a denial-of-service or potentially disclose memory contents
Description: The issue was addressed with improved checks.
apple
CVE-2023-23528P4MEDIUMCVSS 6.5v16.42023-03-27
CVE-2023-23528 [MEDIUM] CVE-2023-23528: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-23528
Component: Core Bluetooth
Impact: Processing a maliciously crafted Bluetooth packet may result in disclosure of process memory
Description: An out-of-bounds read was addressed with improved bounds checking.
apple
CVE-2023-27955P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-27955 [MEDIUM] CVE-2023-27955: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27955
Component: ColorSync
Impact: An app may be able to read arbitrary files
Description: The issue was addressed with improved checks.
apple
CVE-2023-23527P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-23527 [MEDIUM] CVE-2023-23527: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-23527
Component: AppleMobileFileIntegrity
Impact: A user may gain access to protected parts of the file system
Description: The issue was addressed with improved checks.
apple
CVE-2023-23535P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-23535 [MEDIUM] CVE-2023-23535: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-23535
Component: ImageIO
Impact: Processing a maliciously crafted image may result in disclosure of process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-32370P4MEDIUMCVSS 5.3v16.42023-03-27
CVE-2023-32370 [MEDIUM] CVE-2023-32370: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-32370
Component: WebKit
Impact: Content Security Policy to block domains with wildcards may fail
Description: A logic issue was addressed with improved validation.
apple
CVE-2023-27929P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-27929 [MEDIUM] CVE-2023-27929: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27929
Component: ImageIO
Impact: Processing a maliciously crafted image may result in disclosure of process memory
Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2023-27956P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-27956 [MEDIUM] CVE-2023-27956: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27956
Component: FontParser
Impact: Processing a maliciously crafted image may result in disclosure of process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-32424P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-32424 [MEDIUM] CVE-2023-32424: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-32424
Component: Kernel
Impact: An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-23494P4MEDIUMCVSS 5.3v16.42023-03-27
CVE-2023-23494 [MEDIUM] CVE-2023-23494: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-23494
Component: CarPlay
Impact: A user in a privileged network position may be able to cause a denial-of-service
Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2023-27942P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-27942 [MEDIUM] CVE-2023-27942: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27942
Component: Podcasts
Impact: An app may be able to access user-sensitive data
Description: The issue was addressed with improved checks.
apple
CVE-2023-27961P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-27961 [MEDIUM] CVE-2023-27961: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27961
Component: Calendar
Impact: Importing a maliciously crafted calendar invitation may exfiltrate user information
Description: Multiple validation issues were addressed with improved input sanitization.
apple
CVE-2023-27931P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-27931 [MEDIUM] CVE-2023-27931: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27931
Component: AppleMobileFileIntegrity
Impact: An app may be able to access user-sensitive data
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-27932P4MEDIUMCVSS 5.5v16.42023-03-27
CVE-2023-27932 [MEDIUM] CVE-2023-27932: iOS 16.4 and iPadOS 16.4
Apple Security Update: About the security content of iOS 16.4 and iPadOS 16.4
Product: iOS 16.4 and iPadOS
Version: 16.4
CVE: CVE-2023-27932
Component: WebKit
Impact: Processing maliciously crafted web content may bypass Same Origin Policy
Description: This issue was addressed with improved state management.
apple