Apple Ios And Ipados vulnerabilities
1,463 known vulnerabilities affecting apple/ios_and_ipados.
Total CVEs
1,463
CISA KEV
57
actively exploited
Public exploits
1
Exploited in wild
44
Severity breakdown
CRITICAL73HIGH563MEDIUM708LOW119
Vulnerabilities
Page 59 of 74
CVE-2021-30659MEDIUMCVSS 6.5≥ unspecified, < 14.52021-09-08
CVE-2021-30659 [MEDIUM] CVE-2021-30659: A validation issue was addressed with improved logic. This issue is fixed in iOS 14.5 and iPadOS 14.
A validation issue was addressed with improved logic. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, macOS Big Sur 11.3. A malicious application may be able to leak sensitive user information.
nvd
CVE-2021-30685MEDIUMCVSS 5.5≥ unspecified, < 14.62021-09-08
CVE-2021-30685 [MEDIUM] CVE-2021-30685: This issue was addressed with improved checks. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS
This issue was addressed with improved checks. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Parsing a maliciously crafted audio file may lead to disclosure of user information.
nvd
CVE-2021-30687MEDIUMCVSS 5.5≥ unspecified, < 14.62021-09-08
CVE-2021-30687 [MEDIUM] CWE-125 CVE-2021-30687: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 14.6,
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 14.6, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted image may lead to disclosure of user information.
nvd
CVE-2021-1831MEDIUMCVSS 5.5≥ unspecified, < 14.52021-09-08
CVE-2021-1831 [MEDIUM] CWE-276 CVE-2021-1831: The issue was addressed with improved permissions logic. This issue is fixed in iOS 14.5 and iPadOS
The issue was addressed with improved permissions logic. This issue is fixed in iOS 14.5 and iPadOS 14.5. An application may allow shortcuts to access restricted files.
nvd
CVE-2021-1826MEDIUMCVSS 6.1≥ unspecified, < 14.52021-09-08
CVE-2021-1826 [MEDIUM] CWE-79 CVE-2021-1826: A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.3, i
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. Processing maliciously crafted web content may lead to universal cross site scripting.
nvd
CVE-2021-1846MEDIUMCVSS 5.5≥ unspecified, < 14.52021-09-08
CVE-2021-1846 [MEDIUM] CWE-125 CVE-2021-1846: Processing a maliciously crafted audio file may disclose restricted memory. This issue is fixed in S
Processing a maliciously crafted audio file may disclose restricted memory. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. An out-of-bounds read was addressed with improved input validation.
nvd
CVE-2021-30689MEDIUMCVSS 6.1≥ unspecified, < 14.62021-09-08
CVE-2021-30689 [MEDIUM] CWE-79 CVE-2021-30689: A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.6, iOS 14
A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Safari 14.1.1, macOS Big Sur 11.4, watchOS 7.5. Processing maliciously crafted web content may lead to universal cross site scripting.
nvd
CVE-2021-30727MEDIUMCVSS 5.5≥ unspecified, < 14.62021-09-08
CVE-2021-30727 [MEDIUM] CVE-2021-30727: A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4, tvOS 14.6, watchOS 7.5, iOS 14.6 and iPadOS 14.6. A malicious application may be able to modify protected parts of the file system.
nvd
CVE-2021-1857MEDIUMCVSS 6.5≥ unspecified, < 14.52021-09-08
CVE-2021-1857 [MEDIUM] CWE-665 CVE-2021-1857: A memory initialization issue was addressed with improved memory handling. This issue is fixed in iT
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iTunes 12.11.3 for Windows, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iCloud for Windows 12.3, macOS Big Sur 11.3, watchOS 7.4, tvOS 14.5, iOS 14.5 and iPadOS 14.5. Processing maliciously crafted web content may disclose sensitiv
nvd
CVE-2021-30656MEDIUMCVSS 5.5≥ unspecified, < 14.52021-09-08
CVE-2021-30656 [MEDIUM] CVE-2021-30656: An access issue was addressed with improved memory management. This issue is fixed in iOS 14.5 and i
An access issue was addressed with improved memory management. This issue is fixed in iOS 14.5 and iPadOS 14.5. A malicious application may be able to determine kernel memory layout.
nvd
CVE-2021-30700MEDIUMCVSS 5.5≥ unspecified, < 14.62021-09-08
CVE-2021-30700 [MEDIUM] CVE-2021-30700: This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.4, tvOS 14.6,
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.4, tvOS 14.6, watchOS 7.5, iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted image may lead to disclosure of user information.
nvd
CVE-2021-30699MEDIUMCVSS 4.6≥ unspecified, < 14.62021-09-08
CVE-2021-30699 [MEDIUM] CVE-2021-30699: A window management issue was addressed with improved state management. This issue is fixed in iOS 1
A window management issue was addressed with improved state management. This issue is fixed in iOS 14.6 and iPadOS 14.6. A user may be able to view restricted content from the lockscreen.
nvd
CVE-2021-1825MEDIUMCVSS 6.1≥ unspecified, < 14.52021-09-08
CVE-2021-1825 [MEDIUM] CWE-79 CVE-2021-1825: An input validation issue was addressed with improved input validation. This issue is fixed in iTune
An input validation issue was addressed with improved input validation. This issue is fixed in iTunes 12.11.3 for Windows, iCloud for Windows 12.3, macOS Big Sur 11.3, Safari 14.1, watchOS 7.4, tvOS 14.5, iOS 14.5 and iPadOS 14.5. Processing maliciously crafted web content may lead to a cross site scripting attack.
nvd
CVE-2021-1835MEDIUMCVSS 4.6≥ unspecified, < 14.52021-09-08
CVE-2021-1835 [MEDIUM] CWE-862 CVE-2021-1835: This issue was addressed with improved checks. This issue is fixed in iOS 14.5 and iPadOS 14.5. A pe
This issue was addressed with improved checks. This issue is fixed in iOS 14.5 and iPadOS 14.5. A person with physical access to an iOS device may be able to access notes from the lock screen.
nvd
CVE-2021-1832MEDIUMCVSS 5.5≥ unspecified, < 14.52021-09-08
CVE-2021-1832 [MEDIUM] CWE-276 CVE-2021-1832: Copied files may not have the expected file permissions. This issue is fixed in Security Update 2021
Copied files may not have the expected file permissions. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. The issue was addressed with improved permissions logic.
nvd
CVE-2021-1872MEDIUMCVSS 4.3≥ unspecified, < 14.52021-09-08
CVE-2021-1872 [MEDIUM] CVE-2021-1872: A logic issue was addressed with improved state management. This issue is fixed in iOS 14.5 and iPad
A logic issue was addressed with improved state management. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, macOS Big Sur 11.3. Muting a CallKit call while ringing may not result in mute being enabled.
nvd
CVE-2021-1877MEDIUMCVSS 5.5≥ unspecified, < 14.52021-09-08
CVE-2021-1877 [MEDIUM] CWE-125 CVE-2021-1877: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.5
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.5 and iPadOS 14.5. A local user may be able to read kernel memory.
nvd
CVE-2021-30667MEDIUMCVSS 5.4≥ unspecified, < 14.62021-09-08
CVE-2021-30667 [MEDIUM] CWE-287 CVE-2021-30667: A logic issue was addressed with improved validation. This issue is fixed in iOS 14.6 and iPadOS 14.
A logic issue was addressed with improved validation. This issue is fixed in iOS 14.6 and iPadOS 14.6. An attacker in WiFi range may be able to force a client to use a less secure authentication mechanism.
nvd
CVE-2021-1860MEDIUMCVSS 6.5≥ unspecified, < 14.52021-09-08
CVE-2021-1860 [MEDIUM] CWE-665 CVE-2021-1860: A memory initialization issue was addressed with improved memory handling. This issue is fixed in Se
A memory initialization issue was addressed with improved memory handling. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. A malicious application may be able to disclose kernel memory.
nvd
CVE-2021-1822MEDIUMCVSS 5.5≥ unspecified, < 14.52021-09-08
CVE-2021-1822 [MEDIUM] CVE-2021-1822: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.5 and iPadOS 1
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A local user may be able to modify protected parts of the file system.
nvd