Apple iPadOS vulnerabilities
1,835 known vulnerabilities affecting apple/ipados.
Total CVEs
1,835
CISA KEV
79
actively exploited
Public exploits
8
Exploited in wild
62
Severity breakdown
CRITICAL105HIGH806MEDIUM800LOW124
Vulnerabilities
Page 41 of 92
CVE-2023-40410MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-40410 [MEDIUM] CWE-125 CVE-2023-40410: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ven
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to disclose kernel memory.
nvd
CVE-2023-41968MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-41968 [MEDIUM] CWE-59 CVE-2023-41968: This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura
This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to read arbitrary files.
nvd
CVE-2023-41986MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-41986 [MEDIUM] CVE-2023-41986: The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, macOS Son
The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to modify protected parts of the file system.
nvd
CVE-2023-40428MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-40428 [MEDIUM] CVE-2023-40428: The issue was addressed with improved handling of caches. This issue is fixed in iOS 17 and iPadOS 1
The issue was addressed with improved handling of caches. This issue is fixed in iOS 17 and iPadOS 17. An app may be able to access sensitive user data.
nvd
CVE-2023-38596MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-38596 [MEDIUM] CVE-2023-38596: The issue was addressed with improved handling of protocols. This issue is fixed in tvOS 17, iOS 17
The issue was addressed with improved handling of protocols. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may fail to enforce App Transport Security.
nvd
CVE-2023-40420MEDIUMCVSS 6.5fixed in 16.72023-09-27
CVE-2023-40420 [MEDIUM] CVE-2023-40420: The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tv
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to a denial-of-service.
nvd
CVE-2023-40424MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-40424 [MEDIUM] CVE-2023-40424: The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 1
The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to access user-sensitive data.
nvd
CVE-2023-41232MEDIUMCVSS 5.5fixed in 16.72023-09-27
CVE-2023-41232 [MEDIUM] CWE-125 CVE-2023-41232: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Mont
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.7, iOS 17 and iPadOS 17, macOS Ventura 13.6, iOS 16.7 and iPadOS 16.7. An app may be able to disclose kernel memory.
nvd
CVE-2023-40391MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-40391 [MEDIUM] CVE-2023-40391: The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iP
The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonoma 14, Xcode 15. An app may be able to disclose kernel memory.
nvd
CVE-2023-40441MEDIUMCVSS 6.5fixed in 17.02023-09-27
CVE-2023-40441 [MEDIUM] CWE-400 CVE-2023-40441: A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to a denial-of-service.
nvd
CVE-2023-41981MEDIUMCVSS 4.4fixed in 16.72023-09-27
CVE-2023-41981 [MEDIUM] CVE-2023-41981: The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tv
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and iPadOS 16.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.
nvd
CVE-2023-40417MEDIUMCVSS 5.4fixed in 17.02023-09-27
CVE-2023-40417 [MEDIUM] CVE-2023-40417: A window management issue was addressed with improved state management. This issue is fixed in Safar
A window management issue was addressed with improved state management. This issue is fixed in Safari 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. Visiting a website that frames malicious content may lead to UI spoofing.
nvd
CVE-2023-32361MEDIUMCVSS 5.5fixed in 17.02023-09-27
CVE-2023-32361 [MEDIUM] CVE-2023-32361: The issue was addressed with improved handling of caches. This issue is fixed in tvOS 17, iOS 17 and
The issue was addressed with improved handling of caches. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to access user-sensitive data.
nvd
CVE-2023-40384LOWCVSS 3.3fixed in 17.02023-09-27
CVE-2023-40384 [LOW] CVE-2023-40384: A permissions issue was addressed with improved redaction of sensitive information. This issue is fi
A permissions issue was addressed with improved redaction of sensitive information. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to read sensitive location information.
nvd
CVE-2023-40520LOWCVSS 3.3fixed in 17.02023-09-27
CVE-2023-40520 [LOW] CVE-2023-40520: The issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17,
The issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10. An app may be able to access edited photos saved to a temporary directory.
nvd
CVE-2023-40456LOWCVSS 3.3fixed in 17.02023-09-27
CVE-2023-40456 [LOW] CVE-2023-40456: The issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17,
The issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10. An app may be able to access edited photos saved to a temporary directory.
nvd
CVE-2023-41065LOWCVSS 3.3fixed in 17.02023-09-27
CVE-2023-41065 [LOW] CVE-2023-41065: A privacy issue was addressed with improved private data redaction for log entries. This issue is fi
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. An app may be able to read sensitive location information.
nvd
CVE-2023-40395LOWCVSS 3.3fixed in 16.72023-09-27
CVE-2023-40395 [LOW] CVE-2023-40395: The issue was addressed with improved handling of caches. This issue is fixed in tvOS 17, iOS 16.7 a
The issue was addressed with improved handling of caches. This issue is fixed in tvOS 17, iOS 16.7 and iPadOS 16.7, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access contacts.
nvd
CVE-2023-35990LOWCVSS 3.3fixed in 16.72023-09-27
CVE-2023-35990 [LOW] CWE-863 CVE-2023-35990: The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 1
The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, iOS 16.7 and iPadOS 16.7, macOS Sonoma 14. An app may be able to identify what other apps a user has installed.
nvd
CVE-2023-40434LOWCVSS 3.3fixed in 17.02023-09-27
CVE-2023-40434 [LOW] CVE-2023-40434: A configuration issue was addressed with additional restrictions. This issue is fixed in iOS 17 and
A configuration issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access a user's Photos Library.
nvd