Apple Ios 18 And Ipados vulnerabilities
48 known vulnerabilities affecting apple/ios_18_and_ipados.
Total CVEs
48
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH7MEDIUM31LOW8
Vulnerabilities
Page 1 of 3
CVE-2023-5841P3CRITICALCVSS 9.1v182024-09-16
CVE-2023-5841 [CRITICAL] CVE-2023-5841: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2023-5841
Component: CVE-2023-5841
apple
CVE-2024-44217P3CRITICALCVSS 9.1v182024-09-16
CVE-2024-44217 [CRITICAL] CVE-2024-44217: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44217
Component: Passwords
Impact: Password autofill may fill in passwords after failing authentication
Description: A permissions issue was addressed by removing vulnerable code and adding additional checks.
apple
CVE-2024-44122P3HIGHCVSS 8.8v182024-09-16
CVE-2024-44122 [HIGH] CVE-2024-44122: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44122
Component: LaunchServices
Impact: An application may be able to break out of its sandbox
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44165P3HIGHCVSS 7.5v182024-09-16
CVE-2024-44165 [HIGH] CVE-2024-44165: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44165
Component: Kernel
Impact: Network traffic may leak outside a VPN tunnel
Description: A logic issue was addressed with improved checks.
apple
CVE-2024-44126P3HIGHCVSS 7.8v182024-09-16
CVE-2024-44126 [HIGH] CVE-2024-44126: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44126
Component: ARKit
Impact: Processing a maliciously crafted file may lead to heap corruption
Description: The issue was addressed with improved checks.
apple
CVE-2024-40856P3HIGHCVSS 7.5v182024-09-16
CVE-2024-40856 [HIGH] CVE-2024-40856: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-40856
Component: Wi-Fi
Impact: An attacker may be able to force a device to disconnect from a secure network
Description: An integrity issue was addressed with Beacon Protection.
apple
CVE-2024-44227P3HIGHCVSS 7.5v182024-09-16
CVE-2024-44227 [HIGH] CVE-2024-44227: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44227
Component: Wi-Fi
Impact: An app may be able to cause unexpected system termination or corrupt kernel memory
Description: The issue was addressed with improved memory handling.
apple
CVE-2024-27879P3HIGHCVSS 7.5v182024-09-16
CVE-2024-27879 [HIGH] CVE-2024-27879: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-27879
Component: UIKit
Impact: An attacker may be able to cause unexpected app termination
Description: The issue was addressed with improved bounds checks.
apple
CVE-2024-27874P3HIGHCVSS 7.5v182024-09-16
CVE-2024-27874 [HIGH] CVE-2024-27874: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-27874
Component: Cellular
Impact: A remote attacker may be able to cause a denial-of-service
Description: This issue was addressed through improved state management.
apple
CVE-2024-44187P4MEDIUMCVSS 6.5v182024-09-16
CVE-2024-44187 [MEDIUM] CVE-2024-44187: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44187
Component: WebKit
Impact: A malicious website may exfiltrate data cross-origin
Description: A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins.
apple
CVE-2024-44155P4MEDIUMCVSS 6.5v182024-09-16
CVE-2024-44155 [MEDIUM] CVE-2024-44155: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44155
Component: Safari
Impact: Maliciously crafted web content may violate iframe sandboxing policy
Description: A custom URL scheme handling issue was addressed with improved input validation.
apple
CVE-2024-54467P4MEDIUMCVSS 6.5v182024-09-16
CVE-2024-54467 [MEDIUM] CVE-2024-54467: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-54467
Component: WebKit
Impact: A malicious website may exfiltrate data cross-origin
Description: A cookie management issue was addressed with improved state management.
apple
CVE-2024-44176P4MEDIUMCVSS 5.5v182024-09-16
CVE-2024-44176 [MEDIUM] CVE-2024-44176: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44176
Component: ImageIO
Impact: Processing an image may lead to a denial-of-service
Description: An out-of-bounds access issue was addressed with improved bounds checking.
apple
CVE-2024-40857P4MEDIUMCVSS 6.1v182024-09-16
CVE-2024-40857 [MEDIUM] CVE-2024-40857: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-40857
Component: WebKit
Impact: Processing maliciously crafted web content may lead to universal cross site scripting
Description: This issue was addressed through improved state management.
apple
CVE-2024-27876P4MEDIUMCVSS 5.5v182024-09-16
CVE-2024-27876 [MEDIUM] CVE-2024-27876: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-27876
Component: Compression
Impact: Unpacking a maliciously crafted archive may allow an attacker to write arbitrary files
Description: A race condition was addressed with improved locking.
apple
CVE-2024-40826P4MEDIUMCVSS 6.1v182024-09-16
CVE-2024-40826 [MEDIUM] CVE-2024-40826: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-40826
Component: Printing
Impact: An unencrypted document may be written to a temporary file when using print preview
Description: A privacy issue was addressed with improved handling of files.
apple
CVE-2024-44167P4MEDIUMCVSS 5.5v182024-09-16
CVE-2024-44167 [MEDIUM] CVE-2024-44167: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44167
Component: Notes
Impact: An app may be able to overwrite arbitrary files
Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2024-44124P4MEDIUMCVSS 6.5v182024-09-16
CVE-2024-44124 [MEDIUM] CVE-2024-44124: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44124
Component: Core Bluetooth
Impact: A malicious Bluetooth input device may bypass pairing
Description: This issue was addressed through improved state management.
apple
CVE-2024-44202P4MEDIUMCVSS 5.3v182024-09-16
CVE-2024-44202 [MEDIUM] CVE-2024-44202: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-44202
Component: Safari Private Browsing
Impact: Private Browsing tabs may be accessed without authentication
Description: An authentication issue was addressed with improved state management.
apple
CVE-2024-40852P4MEDIUMCVSS 5.3v182024-09-16
CVE-2024-40852 [MEDIUM] CVE-2024-40852: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-40852
Component: Accessibility
Impact: An attacker may be able to see recent photos without authentication in Assistive Access
Description: This issue was addressed by restricting options offered on a locked device.
apple
1 / 3Next →