Apple Ios And Ipados vulnerabilities

1,463 known vulnerabilities affecting apple/ios_and_ipados.

Total CVEs
1,463
CISA KEV
57
actively exploited
Public exploits
1
Exploited in wild
44
Severity breakdown
CRITICAL73HIGH563MEDIUM708LOW119

Vulnerabilities

Page 66 of 74
CVE-2021-30956LOWCVSS 2.4≥ unspecified, < 15.22021-08-24
CVE-2021-30956 [LOW] CVE-2021-30956: A lock screen issue allowed access to contacts on a locked device. This issue was addressed with imp A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state management. This issue is fixed in iOS 15.2 and iPadOS 15.2. An attacker with physical access to a device may be able to see private contact information.
nvd
CVE-2021-30918LOWCVSS 2.4≥ unspecified, < 15.0≥ unspecified, < 14.82021-08-24
CVE-2021-30918 [LOW] CVE-2021-30918: A Lock Screen issue was addressed with improved state management. This issue is fixed in iOS 14.8.1 A Lock Screen issue was addressed with improved state management. This issue is fixed in iOS 14.8.1 and iPadOS 14.8.1, iOS 15.0.1 and iPadOS 15.0.1. A user may be able to view restricted content from the Lock Screen.
nvd
CVE-2021-30875LOWCVSS 3.3≥ unspecified, < 15.12021-08-24
CVE-2021-30875 [LOW] CVE-2021-30875: A lock screen issue allowed access to contacts on a locked device. This issue was addressed with imp A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPadOS 15.1. A local attacker may be able to view contacts from the lock screen.
nvd
CVE-2021-1870CRITICALCVSS 9.8KEV≥ unspecified, < 14.42021-04-02
CVE-2021-1870 [CRITICAL] CVE-2021-1870: A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, S A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..
nvd
CVE-2021-1795CRITICALCVSS 9.8≥ unspecified, < 14.42021-04-02
CVE-2021-1795 [CRITICAL] CWE-787 CVE-2021-1795: An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 14.4 An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution.
nvd
CVE-2021-1871CRITICALCVSS 9.8KEV≥ unspecified, < 14.42021-04-02
CVE-2021-1871 [CRITICAL] CVE-2021-1871: A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, S A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..
nvd
CVE-2021-1796CRITICALCVSS 9.8≥ unspecified, < 14.42021-04-02
CVE-2021-1796 [CRITICAL] CWE-787 CVE-2021-1796: An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 14.4 An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution.
nvd
CVE-2021-1818CRITICALCVSS 9.8≥ unspecified, < 14.42021-04-02
CVE-2021-1818 [CRITICAL] CVE-2021-1818: A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11. A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.
nvd
CVE-2021-1794CRITICALCVSS 9.8≥ unspecified, < 14.42021-04-02
CVE-2021-1794 [CRITICAL] CWE-125 CVE-2021-1794: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.4 An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.4 and iPadOS 14.4. A remote attacker may be able to cause arbitrary code execution.
nvd
CVE-2021-1747HIGHCVSS 7.8≥ unspecified, < 14.42021-04-02
CVE-2021-1747 [HIGH] CWE-787 CVE-2021-1747: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing maliciously crafted web content may lead to code execution.
nvd
CVE-2021-1788HIGHCVSS 8.8≥ unspecified, < 14.42021-04-02
CVE-2021-1788 [HIGH] CWE-416 CVE-2021-1788: A use after free issue was addressed with improved memory management. This issue is fixed in macOS B A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, tvOS 14.4, watchOS 7.3, iOS 14.4 and iPadOS 14.4, Safari 14.0.3. Processing maliciously crafted web content may lead to arbitrary code execution.
nvd
CVE-2021-1748HIGHCVSS 8.8≥ unspecified, < 14.42021-04-02
CVE-2021-1748 [HIGH] CWE-20 CVE-2021-1748: A validation issue was addressed with improved input sanitization. This issue is fixed in tvOS 14.4, A validation issue was addressed with improved input sanitization. This issue is fixed in tvOS 14.4, watchOS 7.3, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted URL may lead to arbitrary javascript code execution.
nvd
CVE-2021-1783HIGHCVSS 7.8≥ unspecified, < 14.42021-04-02
CVE-2021-1783 [HIGH] CVE-2021-1783: An access issue was addressed with improved memory management. This issue is fixed in macOS Big Sur An access issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2020-29619HIGHCVSS 7.8≥ unspecified, < 14.32021-04-02
CVE-2020-29619 [HIGH] CWE-125 CVE-2020-29619: An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 14.3 An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 14.3, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, iOS 14.3 and iPadOS 14.3, iCloud for Windows 12.0, watchOS 7.2. Processing a maliciously crafted image may lead to heap corruption.
nvd
CVE-2020-9956HIGHCVSS 7.8≥ unspecified, < 14.02021-04-02
CVE-2020-9956 [HIGH] CWE-125 CVE-2020-9956: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, watchOS 7.0, iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted font file may lead to arbitrary code execution.
nvd
CVE-2020-27908HIGHCVSS 7.8≥ unspecified, < 14.22021-04-02
CVE-2020-27908 [HIGH] CWE-125 CVE-2020-27908: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, watchOS 7.1, tvOS 14.2. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvd
CVE-2021-1757HIGHCVSS 7.8≥ unspecified, < 14.42021-04-02
CVE-2021-1757 [HIGH] CWE-125 CVE-2021-1757: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. A local attacker may be able to elevate their privileges.
nvd
CVE-2021-1741HIGHCVSS 7.8≥ unspecified, < 14.42021-04-02
CVE-2021-1741 [HIGH] CWE-125 CVE-2021-1741: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2021-1750HIGHCVSS 7.8≥ unspecified, < 14.42021-04-02
CVE-2021-1750 [HIGH] CWE-269 CVE-2021-1750: Multiple issues were addressed with improved logic. This issue is fixed in macOS Big Sur 11.2, Secur Multiple issues were addressed with improved logic. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. An application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2021-1767HIGHCVSS 7.8≥ unspecified, < 14.42021-04-02
CVE-2021-1767 [HIGH] CWE-787 CVE-2021-1767: This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.2, Security U This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to heap corruption.
nvd