Apple Ios 17 And Ipados vulnerabilities

76 known vulnerabilities affecting apple/ios_17_and_ipados.

Total CVEs
76
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH31MEDIUM29LOW14

Vulnerabilities

Page 2 of 4
CVE-2023-40454HIGHCVSS 7.1v172023-09-18
CVE-2023-40454 [HIGH] CVE-2023-40454: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40454 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-40431HIGHCVSS 7.8v172023-09-18
CVE-2023-40431 [HIGH] CVE-2023-40431: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40431 Component: GPU Drivers Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42970HIGHCVSS 8.8v172023-09-18
CVE-2023-42970 [HIGH] CVE-2023-42970: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-42970 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-41063HIGHCVSS 7.8v172023-09-18
CVE-2023-41063 [HIGH] CVE-2023-41063: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-41063 Component: Pro Res Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42875HIGHCVSS 7.3v172023-09-18
CVE-2023-42875 [HIGH] CVE-2023-42875: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-42875 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40452HIGHCVSS 7.1v172023-09-18
CVE-2023-40452 [HIGH] CVE-2023-40452: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40452 Component: Sandbox Impact: An app may be able to overwrite arbitrary files Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-41984HIGHCVSS 7.8v172023-09-18
CVE-2023-41984 [HIGH] CVE-2023-41984: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-41984 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40393HIGHCVSS 7.5v172023-09-18
CVE-2023-40393 [HIGH] CVE-2023-40393: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40393 Component: Photos Impact: Photos in the Hidden Photos Album may be viewed without authentication Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-42871HIGHCVSS 7.8v172023-09-18
CVE-2023-42871 [HIGH] CVE-2023-42871: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-42871 Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-39434HIGHCVSS 8.8v172023-09-18
CVE-2023-39434 [HIGH] CVE-2023-39434: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-39434 Component: WebKit Impact: Processing web content may lead to arbitrary code execution Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-40401HIGHCVSS 7.5v172023-09-18
CVE-2023-40401 [HIGH] CVE-2023-40401: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40401 Component: Passkeys Impact: An attacker may be able to access passkeys without authentication Description: The issue was addressed with additional permissions checks.
apple
CVE-2023-41995HIGHCVSS 7.8v172023-09-18
CVE-2023-41995 [HIGH] CVE-2023-41995: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-41995 Component: Kernel Impact: An app may be able to execute arbitrary code with kernel privileges Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-40409HIGHCVSS 7.8v172023-09-18
CVE-2023-40409 [HIGH] CVE-2023-40409: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40409 Impact: An app may be able to execute arbitrary code with kernel privileges Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40428MEDIUMCVSS 5.5v172023-09-18
CVE-2023-40428 [MEDIUM] CVE-2023-40428: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40428 Component: Siri Impact: An app may be able to access sensitive user data Description: The issue was addressed with improved handling of caches.
apple
CVE-2023-40417MEDIUMCVSS 5.4v172023-09-18
CVE-2023-40417 [MEDIUM] CVE-2023-40417: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40417 Component: Safari Impact: Visiting a website that frames malicious content may lead to UI spoofing Description: A window management issue was addressed with improved state management.
apple
CVE-2023-42961MEDIUMCVSS 6.3v172023-09-18
CVE-2023-42961 [MEDIUM] CVE-2023-42961: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-42961 Component: Intents Impact: A sandboxed process may be able to circumvent sandbox restrictions Description: A path handling issue was addressed with improved validation.
apple
CVE-2023-42973MEDIUMCVSS 4.0v172023-09-18
CVE-2023-42973 [MEDIUM] CVE-2023-42973: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-42973 Component: Safari Private Browsing Impact: Private Browsing tabs may be accessed without authentication Description: The issue was addressed with improved UI.
apple
CVE-2023-40403MEDIUMCVSS 6.5v172023-09-18
CVE-2023-40403 [MEDIUM] CVE-2023-40403: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-40403 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-41073MEDIUMCVSS 5.5v172023-09-18
CVE-2023-41073 [MEDIUM] CVE-2023-41073: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-41073 Component: Kernel Impact: A remote user may be able to cause kernel code execution Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-41980MEDIUMCVSS 5.5v172023-09-18
CVE-2023-41980 [MEDIUM] CVE-2023-41980: iOS 17 and iPadOS 17 Apple Security Update: About the security content of iOS 17 and iPadOS 17 Product: iOS 17 and iPadOS Version: 17 CVE: CVE-2023-41980 Component: FileProvider Impact: An app may be able to bypass Privacy preferences Description: A permissions issue was addressed with additional restrictions.
apple