Apple Ios 17 And Ipados vulnerabilities
76 known vulnerabilities affecting apple/ios_17_and_ipados.
Total CVEs
76
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL2HIGH31MEDIUM29LOW14
Vulnerabilities
Page 2 of 4
CVE-2023-42871P3HIGHCVSS 7.8v172023-09-18
CVE-2023-42871 [HIGH] CVE-2023-42871: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42871
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-41174P3HIGHCVSS 7.8v172023-09-18
CVE-2023-41174 [HIGH] CVE-2023-41174: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41174
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-41995P3HIGHCVSS 7.8v172023-09-18
CVE-2023-41995 [HIGH] CVE-2023-41995: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41995
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-40431P3HIGHCVSS 7.8v172023-09-18
CVE-2023-40431 [HIGH] CVE-2023-40431: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40431
Component: GPU Drivers
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-42870P3HIGHCVSS 7.8v172023-09-18
CVE-2023-42870 [HIGH] CVE-2023-42870: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42870
Component: Kernel
Impact: An app may be able to execute arbitrary code with kernel privileges
Description: A use-after-free issue was addressed with improved memory management.
apple
CVE-2023-41068P3HIGHCVSS 7.8v172023-09-18
CVE-2023-41068 [HIGH] CVE-2023-41068: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41068
Component: MobileStorageMounter
Impact: A user may be able to elevate privileges
Description: An access issue was addressed with improved access restrictions.
apple
CVE-2023-32396P3HIGHCVSS 7.8v172023-09-18
CVE-2023-32396 [HIGH] CVE-2023-32396: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-32396
Component: Dev Tools
Impact: An app may be able to gain elevated privileges
Description: This issue was addressed with improved checks.
apple
CVE-2023-40419P3HIGHCVSS 7.8v172023-09-18
CVE-2023-40419 [HIGH] CVE-2023-40419: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40419
Component: Simulator
Impact: An app may be able to gain elevated privileges
Description: The issue was addressed with improved checks.
apple
CVE-2023-32359P3HIGHCVSS 7.5v172023-09-18
CVE-2023-32359 [HIGH] CVE-2023-32359: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-32359
Component: WebKit
Impact: A user's password may be read aloud by VoiceOver
Description: This issue was addressed with improved redaction of sensitive information.
apple
CVE-2023-42977P3HIGHCVSS 7.8v172023-09-18
CVE-2023-42977 [HIGH] CVE-2023-42977: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42977
Component: Power Services
Impact: An app may be able to break out of its sandbox
Description: A path handling issue was addressed with improved validation.
apple
CVE-2023-42961P4MEDIUMCVSS 6.3v172023-09-18
CVE-2023-42961 [MEDIUM] CVE-2023-42961: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-42961
Component: Intents
Impact: A sandboxed process may be able to circumvent sandbox restrictions
Description: A path handling issue was addressed with improved validation.
apple
CVE-2023-40420P4MEDIUMCVSS 6.5v172023-09-18
CVE-2023-40420 [MEDIUM] CVE-2023-40420: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40420
Component: CoreAnimation
Impact: Processing web content may lead to a denial-of-service
Description: The issue was addressed with improved memory handling.
apple
CVE-2023-40403P4MEDIUMCVSS 6.5v172023-09-18
CVE-2023-40403 [MEDIUM] CVE-2023-40403: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40403
Component: Kernel
Impact: A remote user may be able to cause kernel code execution
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-40452P4HIGHCVSS 7.1v172023-09-18
CVE-2023-40452 [HIGH] CVE-2023-40452: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40452
Component: Sandbox
Impact: An app may be able to overwrite arbitrary files
Description: The issue was addressed with improved bounds checks.
apple
CVE-2023-40385P4MEDIUMCVSS 6.5v172023-09-18
CVE-2023-40385 [MEDIUM] CVE-2023-40385: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40385
Component: WebKit
Impact: A remote attacker may be able to view leaked DNS queries with Private Relay turned on
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2023-40454P4HIGHCVSS 7.1v172023-09-18
CVE-2023-40454 [HIGH] CVE-2023-40454: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40454
Component: Kernel
Impact: A remote user may be able to cause kernel code execution
Description: A type confusion issue was addressed with improved checks.
apple
CVE-2023-40441P4MEDIUMCVSS 6.5v172023-09-18
CVE-2023-40441 [MEDIUM] CVE-2023-40441: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40441
Component: GPU Drivers
Impact: Processing web content may lead to a denial-of-service
Description: A resource exhaustion issue was addressed with improved input validation.
apple
CVE-2023-41968P4MEDIUMCVSS 5.5v172023-09-18
CVE-2023-41968 [MEDIUM] CVE-2023-41968: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-41968
Component: StorageKit
Impact: An app may be able to read arbitrary files
Description: This issue was addressed with improved validation of symlinks.
apple
CVE-2023-38610P4HIGHCVSS 7.1v172023-09-18
CVE-2023-38610 [HIGH] CVE-2023-38610: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-38610
Component: Wi-Fi
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: A memory corruption issue was addressed by removing the vulnerable code.
apple
CVE-2023-40417P4MEDIUMCVSS 5.4v172023-09-18
CVE-2023-40417 [MEDIUM] CVE-2023-40417: iOS 17 and iPadOS 17
Apple Security Update: About the security content of iOS 17 and iPadOS 17
Product: iOS 17 and iPadOS
Version: 17
CVE: CVE-2023-40417
Component: Safari
Impact: Visiting a website that frames malicious content may lead to UI spoofing
Description: A window management issue was addressed with improved state management.
apple