Apple Ios 17.4 And Ipados vulnerabilities
41 known vulnerabilities affecting apple/ios_17.4_and_ipados.
Total CVEs
41
CISA KEV
2
actively exploited
Public exploits
0
Exploited in wild
2
Severity breakdown
HIGH11MEDIUM21LOW9
Vulnerabilities
Page 1 of 3
CVE-2024-23225P1HIGHCVSS 7.8KEVv17.42024-03-05
CVE-2024-23225 [HIGH] CVE-2024-23225: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23225
Component: CVE-2024-23225
apple
CVE-2024-23296P1HIGHCVSS 7.8KEVv17.42024-03-05
CVE-2024-23296 [HIGH] CVE-2024-23296: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23296
Component: CVE-2024-23296
apple
CVE-2024-23226P3HIGHCVSS 8.8v17.42024-03-05
CVE-2024-23226 [HIGH] CVE-2024-23226: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23226
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-27859P3HIGHCVSS 8.8v17.42024-03-05
CVE-2024-27859 [HIGH] CVE-2024-27859: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-27859
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-0258P3HIGHCVSS 8.6v17.42024-03-05
CVE-2024-0258 [HIGH] CVE-2024-0258: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-0258
Component: Kernel
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: A memory corruption vulnerability was addressed with improved locking.
apple
CVE-2024-23286P3HIGHCVSS 7.8v17.42024-03-05
CVE-2024-23286 [HIGH] CVE-2024-23286: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23286
Component: ImageIO
Impact: Processing an image may lead to arbitrary code execution
Description: A buffer overflow issue was addressed with improved memory handling.
apple
CVE-2024-23278P3HIGHCVSS 8.6v17.42024-03-05
CVE-2024-23278 [HIGH] CVE-2024-23278: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23278
Component: Kernel
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: A memory corruption vulnerability was addressed with improved locking.
apple
CVE-2024-23246P3HIGHCVSS 8.6v17.42024-03-05
CVE-2024-23246 [HIGH] CVE-2024-23246: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23246
Component: UIKit
Impact: An app may be able to break out of its sandbox
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-23265P3HIGHCVSS 7.8v17.42024-03-05
CVE-2024-23265 [HIGH] CVE-2024-23265: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23265
Component: Kernel
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: A memory corruption vulnerability was addressed with improved locking.
apple
CVE-2024-23270P3HIGHCVSS 7.8v17.42024-03-05
CVE-2024-23270 [HIGH] CVE-2024-23270: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23270
Component: Image Processing
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23288P3HIGHCVSS 7.8v17.42024-03-05
CVE-2024-23288 [HIGH] CVE-2024-23288: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23288
Component: AppleMobileFileIntegrity
Impact: An app may be able to elevate privileges
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-23263P3MEDIUMCVSS 6.5v17.42024-03-05
CVE-2024-23263 [MEDIUM] CVE-2024-23263: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23263
Component: WebKit
Impact: Processing maliciously crafted web content may prevent Content Security Policy from being enforced
Description: A logic issue was addressed with improved validation.
apple
CVE-2024-23284P3MEDIUMCVSS 6.5v17.42024-03-05
CVE-2024-23284 [MEDIUM] CVE-2024-23284: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23284
Component: WebKit
Impact: Processing maliciously crafted web content may prevent Content Security Policy from being enforced
Description: A logic issue was addressed with improved state management.
apple
CVE-2024-23280P4MEDIUMCVSS 6.5v17.42024-03-05
CVE-2024-23280 [MEDIUM] CVE-2024-23280: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23280
Component: WebKit
Impact: A maliciously crafted webpage may be able to fingerprint the user
Description: An injection issue was addressed with improved validation.
apple
CVE-2024-23254P4MEDIUMCVSS 6.5v17.42024-03-05
CVE-2024-23254 [MEDIUM] CVE-2024-23254: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23254
Component: WebKit
Impact: A malicious website may exfiltrate audio data cross-origin
Description: The issue was addressed with improved UI handling.
apple
CVE-2024-23259P4MEDIUMCVSS 6.5v17.42024-03-05
CVE-2024-23259 [MEDIUM] CVE-2024-23259: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23259
Component: Safari
Impact: Processing web content may lead to a denial-of-service
Description: The issue was addressed with improved checks.
apple
CVE-2024-23277P4MEDIUMCVSS 5.9v17.42024-03-05
CVE-2024-23277 [MEDIUM] CVE-2024-23277: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23277
Component: Bluetooth
Impact: An attacker in a privileged network position may be able to inject keystrokes by spoofing a keyboard
Description: The issue was addressed with improved checks.
apple
CVE-2024-54658P4MEDIUMCVSS 6.5v17.42024-03-05
CVE-2024-54658 [MEDIUM] CVE-2024-54658: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-54658
Component: WebKit
Impact: Processing web content may lead to a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-23264P4MEDIUMCVSS 5.5v17.42024-03-05
CVE-2024-23264 [MEDIUM] CVE-2024-23264: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23264
Component: Metal
Impact: An application may be able to read restricted memory
Description: A validation issue was addressed with improved input sanitization.
apple
CVE-2024-23287P4MEDIUMCVSS 5.5v17.42024-03-05
CVE-2024-23287 [MEDIUM] CVE-2024-23287: iOS 17.4 and iPadOS 17.4
Apple Security Update: About the security content of iOS 17.4 and iPadOS 17.4
Product: iOS 17.4 and iPadOS
Version: 17.4
CVE: CVE-2024-23287
Component: Messages
Impact: An app may be able to access user-sensitive data
Description: A privacy issue was addressed with improved handling of temporary files.
apple
1 / 3Next →