cbcvebase.

Apple Ios 16.5 And Ipados vulnerabilities

46 known vulnerabilities affecting apple/ios_16.5_and_ipados.

Total CVEs
46
CISA KEV
3
actively exploited
Public exploits
0
Exploited in wild
5
Severity breakdown
CRITICAL2HIGH12MEDIUM29LOW3

Vulnerabilities

Page 1 of 3
CVE-2023-32373P1HIGHCVSS 8.8KEVv16.52023-05-18
CVE-2023-32373 [HIGH] CVE-2023-32373: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32373 Component: WebKit Impact: Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-32409P1HIGHCVSS 8.6KEVv16.52023-05-18
CVE-2023-32409 [HIGH] CVE-2023-32409: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32409 Component: WebKit Impact: A remote attacker may be able to break out of Web Content sandbox. Apple is aware of a report that this issue may have been actively exploited. Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-28204P1MEDIUMCVSS 6.5KEVv16.52023-05-18
CVE-2023-28204 [MEDIUM] CVE-2023-28204: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-28204 Component: WebKit Impact: Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been actively exploited. Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2023-32402P1MEDIUMCVSS 6.5Exploitedv16.52023-05-18
CVE-2023-32402 [MEDIUM] CVE-2023-32402: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32402 Component: WebKit Impact: Processing web content may disclose sensitive information Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2023-32423P2MEDIUMCVSS 6.5Exploitedv16.52023-05-18
CVE-2023-32423 [MEDIUM] CVE-2023-32423: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32423 Component: WebKit Impact: Processing web content may disclose sensitive information Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2023-32412P3CRITICALCVSS 9.8v16.52023-05-18
CVE-2023-32412 [CRITICAL] CVE-2023-32412: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32412 Component: Telephony Impact: A remote attacker may be able to cause unexpected app termination or arbitrary code execution Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-32419P3CRITICALCVSS 9.8v16.52023-05-18
CVE-2023-32419 [CRITICAL] CVE-2023-32419: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32419 Component: Cellular Impact: A remote attacker may be able to cause arbitrary code execution Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-32384P3HIGHCVSS 7.8v16.52023-05-18
CVE-2023-32384 [HIGH] CVE-2023-32384: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32384 Component: ImageIO Impact: Processing an image may lead to arbitrary code execution Description: A buffer overflow was addressed with improved bounds checking.
apple
CVE-2023-32398P3HIGHCVSS 7.8v16.52023-05-18
CVE-2023-32398 [HIGH] CVE-2023-32398: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32398 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-27930P3HIGHCVSS 7.8v16.52023-05-18
CVE-2023-27930 [HIGH] CVE-2023-27930: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-27930 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-32428P3HIGHCVSS 7.8v16.52023-05-18
CVE-2023-32428 [HIGH] CVE-2023-32428: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32428 Component: MallocStackLogging Impact: An app may be able to gain root privileges Description: This issue was addressed with improved file handling.
apple
CVE-2023-32437P3HIGHCVSS 8.6v16.52023-05-18
CVE-2023-32437 [HIGH] CVE-2023-32437: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32437 Component: NSURLSession Impact: An app may be able to break out of its sandbox Description: The issue was addressed with improvements to the file handling protocol.
apple
CVE-2023-42869P3HIGHCVSS 7.5v16.52023-05-18
CVE-2023-42869 [HIGH] CVE-2023-42869: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-42869 Component: LaunchServices Impact: An app may bypass Gatekeeper checks Description: A logic issue was addressed with improved checks.
apple
CVE-2023-32425P3HIGHCVSS 7.8v16.52023-05-18
CVE-2023-32425 [HIGH] CVE-2023-32425: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32425 Impact: An app may be able to gain elevated privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-32413P4HIGHCVSS 7.0v16.52023-05-18
CVE-2023-32413 [HIGH] CVE-2023-32413: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32413 Component: Kernel Impact: An app may be able to gain root privileges Description: A race condition was addressed with improved state handling.
apple
CVE-2023-32357P4HIGHCVSS 7.1v16.52023-05-18
CVE-2023-32357 [HIGH] CVE-2023-32357: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32357 Component: Sandbox Impact: An app may be able to retain access to system configuration files even after its permission is revoked Description: An authorization issue was addressed with improved state management.
apple
CVE-2023-29469P4MEDIUMCVSS 6.5v16.52023-05-18
CVE-2023-29469 [MEDIUM] CVE-2023-29469: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-29469 Component: LaunchServices Impact: An app may bypass Gatekeeper checks Description: A logic issue was addressed with improved checks.
apple
CVE-2023-32420P4HIGHCVSS 7.1v16.52023-05-18
CVE-2023-32420 [HIGH] CVE-2023-32420: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32420 Component: IOSurfaceAccelerator Impact: An app may be able to cause unexpected system termination or read kernel memory Description: An out-of-bounds read was addressed with improved input validation.
apple
CVE-2023-34352P4MEDIUMCVSS 5.3v16.52023-05-18
CVE-2023-34352 [MEDIUM] CVE-2023-34352: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-34352 Component: Accounts Impact: An attacker may be able to leak user account emails Description: A permissions issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-32407P4MEDIUMCVSS 5.5v16.52023-05-18
CVE-2023-32407 [MEDIUM] CVE-2023-32407: iOS 16.5 and iPadOS 16.5 Apple Security Update: About the security content of iOS 16.5 and iPadOS 16.5 Product: iOS 16.5 and iPadOS Version: 16.5 CVE: CVE-2023-32407 Component: Metal Impact: An app may be able to bypass Privacy preferences Description: A logic issue was addressed with improved state management.
apple
Apple Ios 16.5 And Ipados vulnerabilities | cvebase