Apple Ios 17.3 And Ipados vulnerabilities
20 known vulnerabilities affecting apple/ios_17.3_and_ipados.
Total CVEs
20
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
HIGH8MEDIUM8LOW4
Vulnerabilities
Page 1 of 1
CVE-2024-23204HIGHCVSS 7.5v17.32024-01-22
CVE-2024-23204 [HIGH] CVE-2024-23204: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23204
Component: Shortcuts
Impact: A shortcut may be able to use sensitive data with certain actions without prompting the user
Description: The issue was addressed with additional permissions checks.
apple
CVE-2024-23214HIGHCVSS 8.8v17.32024-01-22
CVE-2024-23214 [HIGH] CVE-2024-23214: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23214
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2024-23208HIGHCVSS 7.8v17.32024-01-22
CVE-2024-23208 [HIGH] CVE-2024-23208: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23208
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23212HIGHCVSS 7.8v17.32024-01-22
CVE-2024-23212 [HIGH] CVE-2024-23212: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23212
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23203HIGHCVSS 7.5v17.32024-01-22
CVE-2024-23203 [HIGH] CVE-2024-23203: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23203
Component: Shortcuts
Impact: A shortcut may be able to use sensitive data with certain actions without prompting the user
Description: The issue was addressed with additional permissions checks.
apple
CVE-2024-23222HIGHCVSS 8.8KEVv17.32024-01-22
CVE-2024-23222 [HIGH] CVE-2024-23222: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23222
Component: CVE-2024-23222
apple
CVE-2024-23213HIGHCVSS 8.8v17.32024-01-22
CVE-2024-23213 [HIGH] CVE-2024-23213: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23213
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-27791HIGHCVSS 7.1v17.32024-01-22
CVE-2024-27791 [HIGH] CVE-2024-27791: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-27791
Component: Power Manager
Impact: An app may be able to corrupt coprocessor memory
Description: The issue was addressed with improved checks.
apple
CVE-2024-23206MEDIUMCVSS 6.5v17.32024-01-22
CVE-2024-23206 [MEDIUM] CVE-2024-23206: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23206
Component: WebKit
Impact: A maliciously crafted webpage may be able to fingerprint the user
Description: An access issue was addressed with improved access restrictions.
apple
CVE-2024-23207MEDIUMCVSS 5.5v17.32024-01-22
CVE-2024-23207 [MEDIUM] CVE-2024-23207: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23207
Component: Mail Search
Impact: An app may be able to access sensitive user data
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2024-23215MEDIUMCVSS 5.5v17.32024-01-22
CVE-2024-23215 [MEDIUM] CVE-2024-23215: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23215
Component: TCC
Impact: An app may be able to access user-sensitive data
Description: An issue was addressed with improved handling of temporary files.
apple
CVE-2024-23218MEDIUMCVSS 5.9v17.32024-01-22
CVE-2024-23218 [MEDIUM] CVE-2024-23218: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23218
Component: CoreCrypto
Impact: An attacker may be able to decrypt legacy RSA PKCS#1 v1.5 ciphertexts without having the private key
Description: A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions.
apple
CVE-2024-23271MEDIUMCVSS 6.5v17.32024-01-22
CVE-2024-23271 [MEDIUM] CVE-2024-23271: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23271
Component: WebKit
Impact: A malicious website may cause unexpected cross-origin behavior
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-23223MEDIUMCVSS 6.2v17.32024-01-22
CVE-2024-23223 [MEDIUM] CVE-2024-23223: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23223
Component: NSSpellChecker
Impact: An app may be able to access sensitive user data
Description: A privacy issue was addressed with improved handling of files.
apple
CVE-2024-23219MEDIUMCVSS 6.2v17.32024-01-22
CVE-2024-23219 [MEDIUM] CVE-2024-23219: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23219
Component: Reset Services
Impact: Stolen Device Protection may be unexpectedly disabled
Description: The issue was addressed with improved authentication.
apple
CVE-2024-23201MEDIUMCVSS 5.5v17.32024-01-22
CVE-2024-23201 [MEDIUM] CVE-2024-23201: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23201
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23217LOWCVSS 3.3v17.32024-01-22
CVE-2024-23217 [LOW] CVE-2024-23217: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23217
Component: Shortcuts
Impact: An app may be able to bypass certain Privacy preferences
Description: A privacy issue was addressed with improved handling of temporary files.
apple
CVE-2024-23211LOWCVSS 3.3v17.32024-01-22
CVE-2024-23211 [LOW] CVE-2024-23211: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23211
Component: Safari
Impact: A user's private browsing activity may be visible in Settings
Description: A privacy issue was addressed with improved handling of user preferences.
apple
CVE-2024-23228LOWCVSS 3.3v17.32024-01-22
CVE-2024-23228 [LOW] CVE-2024-23228: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23228
Component: Notes
Impact: Locked Notes content may have been unexpectedly unlocked
Description: This issue was addressed through improved state management.
apple
CVE-2024-23210LOWCVSS 3.3v17.32024-01-22
CVE-2024-23210 [LOW] CVE-2024-23210: iOS 17.3 and iPadOS 17.3
Apple Security Update: About the security content of iOS 17.3 and iPadOS 17.3
Product: iOS 17.3 and iPadOS
Version: 17.3
CVE: CVE-2024-23210
Component: Time Zone
Impact: An app may be able to view a user's phone number in system logs
Description: This issue was addressed with improved redaction of sensitive information.
apple