Apple Ios 17.1 And Ipados vulnerabilities

38 known vulnerabilities affecting apple/ios_17.1_and_ipados.

Total CVEs
38
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH12MEDIUM24LOW2

Vulnerabilities

Page 2 of 2
CVE-2023-42843MEDIUMCVSS 4.3v17.12023-10-25
CVE-2023-42843 [MEDIUM] CVE-2023-42843: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42843 Component: WebKit Impact: Visiting a malicious website may lead to address bar spoofing Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2023-41254MEDIUMCVSS 5.5v17.12023-10-25
CVE-2023-41254 [MEDIUM] CVE-2023-41254: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-41254 Component: Weather Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-42878MEDIUMCVSS 5.5v17.12023-10-25
CVE-2023-42878 [MEDIUM] CVE-2023-42878: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42878 Component: Share Sheet Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-42855MEDIUMCVSS 4.6v17.12023-10-25
CVE-2023-42855 [MEDIUM] CVE-2023-42855: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42855 Component: Setup Assistant Impact: An attacker with physical access may be able to silently persist an Apple ID on an erased device Description: This issue was addressed with improved state management.
apple
CVE-2023-42823MEDIUMCVSS 5.5v17.12023-10-25
CVE-2023-42823 [MEDIUM] CVE-2023-42823: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42823 Component: CVE-2023-42823
apple
CVE-2023-42845MEDIUMCVSS 5.3v17.12023-10-25
CVE-2023-42845 [MEDIUM] CVE-2023-42845: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42845 Component: Photos Impact: Photos in the Hidden Photos Album may be viewed without authentication Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-42951MEDIUMCVSS 4.3v17.12023-10-25
CVE-2023-42951 [MEDIUM] CVE-2023-42951: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42951 Component: Safari Impact: A user may be unable to delete browsing history items Description: The issue was addressed with improved handling of caches.
apple
CVE-2023-42836MEDIUMCVSS 5.3v17.12023-10-25
CVE-2023-42836 [MEDIUM] CVE-2023-42836: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42836 Component: Sandbox Impact: An attacker may be able to access connected network volumes mounted in the home directory Description: A logic issue was addressed with improved checks.
apple
CVE-2023-41982MEDIUMCVSS 4.6v17.12023-10-25
CVE-2023-41982 [MEDIUM] CVE-2023-41982: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-41982 Component: Siri Impact: An attacker with physical access may be able to use Siri to access sensitive user data Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2023-41997MEDIUMCVSS 4.6v17.12023-10-25
CVE-2023-41997 [MEDIUM] CVE-2023-41997: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-41997 Component: Siri Impact: An attacker with physical access may be able to use Siri to access sensitive user data Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2023-41072MEDIUMCVSS 5.5v17.12023-10-25
CVE-2023-41072 [MEDIUM] CVE-2023-41072: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-41072 Component: Contacts Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-42952MEDIUMCVSS 4.4v17.12023-10-25
CVE-2023-42952 [MEDIUM] CVE-2023-42952: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42952 Component: Automation Impact: An app with root privileges may be able to access private information Description: The issue was addressed with improved checks.
apple
CVE-2023-40413MEDIUMCVSS 5.5v17.12023-10-25
CVE-2023-40413 [MEDIUM] CVE-2023-40413: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-40413 Component: Find My Impact: An app may be able to read sensitive location information Description: The issue was addressed with improved handling of caches.
apple
CVE-2023-40449MEDIUMCVSS 5.5v17.12023-10-25
CVE-2023-40449 [MEDIUM] CVE-2023-40449: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-40449 Component: CoreAnimation Impact: An app may be able to cause a denial-of-service Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40416MEDIUMCVSS 6.5v17.12023-10-25
CVE-2023-40416 [MEDIUM] CVE-2023-40416: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-40416 Component: ImageIO Impact: Processing an image may result in disclosure of process memory Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40408MEDIUMCVSS 5.3v17.12023-10-25
CVE-2023-40408 [MEDIUM] CVE-2023-40408: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-40408 Component: Mail Drafts Impact: Hide My Email may be deactivated unexpectedly Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2023-42857LOWCVSS 3.3v17.12023-10-25
CVE-2023-42857 [LOW] CVE-2023-42857: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42857 Component: Contacts Impact: An app may be able to access sensitive user data Description: A privacy issue was addressed with improved private data redaction for log entries.
apple
CVE-2023-42939LOWCVSS 3.3v17.12023-10-25
CVE-2023-42939 [LOW] CVE-2023-42939: iOS 17.1 and iPadOS 17.1 Apple Security Update: About the security content of iOS 17.1 and iPadOS 17.1 Product: iOS 17.1 and iPadOS Version: 17.1 CVE: CVE-2023-42939 Component: WebKit Impact: A user's private browsing activity may be unexpectedly saved in the App Privacy Report Description: A logic issue was addressed with improved checks.
apple