Apple Ios 17.1 And Ipados vulnerabilities
38 known vulnerabilities affecting apple/ios_17.1_and_ipados.
Total CVEs
38
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH12MEDIUM24LOW2
Vulnerabilities
Page 1 of 2
CVE-2023-42852P3HIGHCVSS 8.8v17.12023-10-25
CVE-2023-42852 [HIGH] CVE-2023-42852: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42852
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A logic issue was addressed with improved checks.
apple
CVE-2023-40447P3HIGHCVSS 8.8v17.12023-10-25
CVE-2023-40447 [HIGH] CVE-2023-40447: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-40447
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-41976P3HIGHCVSS 8.8v17.12023-10-25
CVE-2023-41976 [HIGH] CVE-2023-41976: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-41976
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-40423P3HIGHCVSS 7.8v17.12023-10-25
CVE-2023-40423 [HIGH] CVE-2023-40423: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-40423
Component: IOTextEncryptionFamily
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42841P3HIGHCVSS 7.8v17.12023-10-25
CVE-2023-42841 [HIGH] CVE-2023-42841: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42841
Component: Pro Res
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40446P3HIGHCVSS 7.8v17.12023-10-25
CVE-2023-40446 [HIGH] CVE-2023-40446: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-40446
Component: Kernel
Impact: An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42873P3HIGHCVSS 7.8v17.12023-10-25
CVE-2023-42873 [HIGH] CVE-2023-42873: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42873
Component: Pro Res
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-42847P3HIGHCVSS 7.5v17.12023-10-25
CVE-2023-42847 [HIGH] CVE-2023-42847: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42847
Component: Passkeys
Impact: An attacker may be able to access passkeys without authentication
Description: A logic issue was addressed with improved checks.
apple
CVE-2023-42942P3HIGHCVSS 7.8v17.12023-10-25
CVE-2023-42942 [HIGH] CVE-2023-42942: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42942
Component: Kernel
Impact: An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42849P3MEDIUMCVSS 6.5v17.12023-10-25
CVE-2023-42849 [MEDIUM] CVE-2023-42849: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42849
Component: Kernel
Impact: An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42848P3HIGHCVSS 7.8v17.12023-10-25
CVE-2023-42848 [HIGH] CVE-2023-42848: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42848
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to heap corruption
Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-40445P3HIGHCVSS 7.5v17.12023-10-25
CVE-2023-40445 [HIGH] CVE-2023-40445: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-40445
Component: Status Bar
Impact: A device may persistently fail to lock
Description: The issue was addressed with improved UI handling.
apple
CVE-2023-42928P3HIGHCVSS 7.8v17.12023-10-25
CVE-2023-42928 [HIGH] CVE-2023-42928: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42928
Component: FairPlay
Impact: An app may be able to gain elevated privileges
Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-40416P4MEDIUMCVSS 6.5v17.12023-10-25
CVE-2023-40416 [MEDIUM] CVE-2023-40416: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-40416
Component: ImageIO
Impact: Processing an image may result in disclosure of process memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-41983P4MEDIUMCVSS 6.5v17.12023-10-25
CVE-2023-41983 [MEDIUM] CVE-2023-41983: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-41983
Component: WebKit Process Model
Impact: Processing web content may lead to a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42846P4MEDIUMCVSS 5.3v17.12023-10-25
CVE-2023-42846 [MEDIUM] CVE-2023-42846: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42846
Component: Mail Drafts
Impact: Hide My Email may be deactivated unexpectedly
Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2023-41988P4MEDIUMCVSS 6.8v17.12023-10-25
CVE-2023-41988 [MEDIUM] CVE-2023-41988: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-41988
Component: Siri
Impact: An attacker with physical access may be able to use Siri to access sensitive user data
Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2023-42845P4MEDIUMCVSS 5.3v17.12023-10-25
CVE-2023-42845 [MEDIUM] CVE-2023-42845: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42845
Component: Photos
Impact: Photos in the Hidden Photos Album may be viewed without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-40408P4MEDIUMCVSS 5.3v17.12023-10-25
CVE-2023-40408 [MEDIUM] CVE-2023-40408: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-40408
Component: Mail Drafts
Impact: Hide My Email may be deactivated unexpectedly
Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2023-42836P4MEDIUMCVSS 5.3v17.12023-10-25
CVE-2023-42836 [MEDIUM] CVE-2023-42836: iOS 17.1 and iPadOS 17.1
Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1
Product: iOS 17.1 and iPadOS
Version: 17.1
CVE: CVE-2023-42836
Component: Sandbox
Impact: An attacker may be able to access connected network volumes mounted in the home directory
Description: A logic issue was addressed with improved checks.
apple
1 / 2Next →