Apple Ios 17 And Ipados vulnerabilities
76 known vulnerabilities affecting apple/ios_17_and_ipados.
Total CVEs
76
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH31MEDIUM29LOW14
Vulnerabilities
Page 2 of 4
CVE-2023-40454HIGHCVSS 7.1v172023-09-18
CVE-2023-40454 [HIGH] CVE-2023-40454: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40454
Component: Kernel
Impact: A remote user may be able to cause kernel code execution
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-40431HIGHCVSS 7.8v172023-09-18
CVE-2023-40431 [HIGH] CVE-2023-40431: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40431
Component: GPU Drivers
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42970HIGHCVSS 8.8v172023-09-18
CVE-2023-42970 [HIGH] CVE-2023-42970: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42970
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-41063HIGHCVSS 7.8v172023-09-18
CVE-2023-41063 [HIGH] CVE-2023-41063: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41063
Component: Pro Res
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42875HIGHCVSS 7.3v172023-09-18
CVE-2023-42875 [HIGH] CVE-2023-42875: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42875
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40452HIGHCVSS 7.1v172023-09-18
CVE-2023-40452 [HIGH] CVE-2023-40452: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40452
Component: Sandbox
Impact: An app may be able to overwrite arbitrary files
Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-41984HIGHCVSS 7.8v172023-09-18
CVE-2023-41984 [HIGH] CVE-2023-41984: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41984
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40393HIGHCVSS 7.5v172023-09-18
CVE-2023-40393 [HIGH] CVE-2023-40393: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40393
Component: Photos
Impact: Photos in the Hidden Photos Album may be viewed without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-42871HIGHCVSS 7.8v172023-09-18
CVE-2023-42871 [HIGH] CVE-2023-42871: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42871
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-39434HIGHCVSS 8.8v172023-09-18
CVE-2023-39434 [HIGH] CVE-2023-39434: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-39434
Component: WebKit
Impact: Processing web content may lead to arbitrary code execution
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-40401HIGHCVSS 7.5v172023-09-18
CVE-2023-40401 [HIGH] CVE-2023-40401: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40401
Component: Passkeys
Impact: An attacker may be able to access passkeys without authentication
Description: The issue was addressed with additional permissions checks.
apple
CVE-2023-41995HIGHCVSS 7.8v172023-09-18
CVE-2023-41995 [HIGH] CVE-2023-41995: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41995
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-40409HIGHCVSS 7.8v172023-09-18
CVE-2023-40409 [HIGH] CVE-2023-40409: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40409
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40428MEDIUMCVSS 5.5v172023-09-18
CVE-2023-40428 [MEDIUM] CVE-2023-40428: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40428
Component: Siri
Impact: An app may be able to access sensitive user data
Description: The issue was addressed with improved handling of caches.
apple
CVE-2023-40417MEDIUMCVSS 5.4v172023-09-18
CVE-2023-40417 [MEDIUM] CVE-2023-40417: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40417
Component: Safari
Impact: Visiting a website that frames malicious content may lead to UI spoofing
Description: A window management issue was addressed with improved state management.
apple
CVE-2023-42961MEDIUMCVSS 6.3v172023-09-18
CVE-2023-42961 [MEDIUM] CVE-2023-42961: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42961
Component: Intents
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: A path handling issue was addressed with improved validation.
apple
CVE-2023-42973MEDIUMCVSS 4.0v172023-09-18
CVE-2023-42973 [MEDIUM] CVE-2023-42973: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42973
Component: Safari Private Browsing
Impact: Private Browsing tabs may be accessed without authentication
Description: The issue was addressed with improved UI.
apple
CVE-2023-40403MEDIUMCVSS 6.5v172023-09-18
CVE-2023-40403 [MEDIUM] CVE-2023-40403: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40403
Component: Kernel
Impact: A remote user may be able to cause kernel code execution
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-41073MEDIUMCVSS 5.5v172023-09-18
CVE-2023-41073 [MEDIUM] CVE-2023-41073: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41073
Component: Kernel
Impact: A remote user may be able to cause kernel code execution
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-41980MEDIUMCVSS 5.5v172023-09-18
CVE-2023-41980 [MEDIUM] CVE-2023-41980: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41980
Component: FileProvider
Impact: An app may be able to bypass Privacy preferences
Description: A permissions issue was addressed with additional restrictions.
apple