Apple iOS vulnerabilities

3,940 known vulnerabilities affecting apple/iphone_os.

Total CVEs
3,940
CISA KEV
92
actively exploited
Public exploits
248
Exploited in wild
79
Severity breakdown
CRITICAL313HIGH1610MEDIUM1730LOW287

Vulnerabilities

Page 109 of 197
CVE-2018-4274HIGHCVSS 7.5fixed in 11.4.12019-04-03
CVE-2018-4274 [HIGH] CWE-20 CVE-2018-4274: A spoofing issue existed in the handling of URLs. This issue was addressed with improved input valid A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue affected versions prior to iOS 11.4.1, Safari 11.1.2.
nvd
CVE-2018-4358HIGHCVSS 8.8fixed in 12.02019-04-03
CVE-2018-4358 [HIGH] CWE-119 CVE-2018-4358: Multiple memory corruption issues were addressed with improved memory handling. This issue affected Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12, tvOS 12, watchOS 5, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4373HIGHCVSS 8.8fixed in 12.12019-04-03
CVE-2018-4373 [HIGH] CWE-119 CVE-2018-4373: Multiple memory corruption issues were addressed with improved memory handling. This issue affected Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1, watchOS 5.1, Safari 12.0.1, iTunes 12.9.1, iCloud for Windows 7.8.
nvd
CVE-2018-4375HIGHCVSS 8.8fixed in 12.12019-04-03
CVE-2018-4375 [HIGH] CWE-119 CVE-2018-4375: Multiple memory corruption issues were addressed with improved memory handling. This issue affected Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1, watchOS 5.1, Safari 12.0.1, iTunes 12.9.1, iCloud for Windows 7.8.
nvd
CVE-2018-4384HIGHCVSS 7.8PoCfixed in 12.12019-04-03
CVE-2018-4384 [HIGH] CWE-119 CVE-2018-4384: A memory corruption issue was addressed with improved input validation. This issue affected versions A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1, watchOS 5.1.
nvd
CVE-2018-4425HIGHCVSS 7.8fixed in 12.02019-04-03
CVE-2018-4425 [HIGH] CWE-119 CVE-2018-4425: A memory corruption issue was addressed with improved memory handling. This issue affected versions A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4314HIGHCVSS 8.8PoCfixed in 12.02019-04-03
CVE-2018-4314 [HIGH] CWE-416 CVE-2018-4314: A use after free issue was addressed with improved memory management. This issue affected versions p A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4401HIGHCVSS 7.8fixed in 12.02019-04-03
CVE-2018-4401 [HIGH] CWE-119 CVE-2018-4401: A memory corruption issue was addressed with improved memory handling. This issue affected versions A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4461HIGHCVSS 7.8fixed in 12.1.12019-04-03
CVE-2018-4461 [HIGH] CWE-119 CVE-2018-4461: A memory corruption issue was addressed with improved input validation. This issue affected versions A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2.
nvd
CVE-2018-4336HIGHCVSS 7.8fixed in 12.02019-04-03
CVE-2018-4336 [HIGH] CWE-119 CVE-2018-4336: A memory corruption issue was addressed with improved memory handling. This issue affected versions A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4464HIGHCVSS 8.8fixed in 12.1.12019-04-03
CVE-2018-4464 [HIGH] CWE-119 CVE-2018-4464: Multiple memory corruption issues were addressed with improved memory handling. This issue affected Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
nvd
CVE-2018-4442HIGHCVSS 8.8PoCfixed in 12.1.12019-04-03
CVE-2018-4442 [HIGH] CWE-119 CVE-2018-4442: A memory corruption issue was addressed with improved memory handling. This issue affected versions A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
nvd
CVE-2018-4412HIGHCVSS 7.8fixed in 12.02019-04-03
CVE-2018-4412 [HIGH] CWE-119 CVE-2018-4412: A memory corruption issue was addressed with improved input validation. This issue affected versions A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4354HIGHCVSS 8.6fixed in 12.02019-04-03
CVE-2018-4354 [HIGH] CWE-119 CVE-2018-4354: A memory corruption issue was addressed with improved memory handling. This issue affected versions A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
nvd
CVE-2018-4312HIGHCVSS 8.8PoCfixed in 12.02019-04-03
CVE-2018-4312 [HIGH] CWE-416 CVE-2018-4312: A use after free issue was addressed with improved memory management. This issue affected versions p A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4126HIGHCVSS 7.8fixed in 12.02019-04-03
CVE-2018-4126 [HIGH] CWE-119 CVE-2018-4126: A memory corruption issue was addressed with improved memory handling. This issue affected versions A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd
CVE-2018-4280HIGHCVSS 7.8PoCfixed in 11.4.12019-04-03
CVE-2018-4280 [HIGH] CWE-119 CVE-2018-4280: A memory corruption issue was addressed with improved memory handling. This issue affected versions A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 11.4.1, macOS High Sierra 10.13.6, tvOS 11.4.1, watchOS 4.3.2.
nvd
CVE-2018-20506HIGHCVSS 8.1fixed in 12.1.32019-04-03
CVE-2018-20506 [HIGH] CVE-2018-20506: SQLite before 3.25.3, when the FTS3 extension is enabled, encounters an integer overflow (and result SQLite before 3.25.3, when the FTS3 extension is enabled, encounters an integer overflow (and resultant buffer overflow) for FTS3 queries in a "merge" operation that occurs after crafted changes to FTS3 shadow tables, allowing remote attackers to execute arbitrary code by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use ca
nvd
CVE-2018-20505HIGHCVSS 7.5fixed in 12.1.32019-04-03
CVE-2018-20505 [HIGH] CWE-89 CVE-2018-20505: SQLite 3.25.2, when queries are run on a table with a malformed PRIMARY KEY, allows remote attackers SQLite 3.25.2, when queries are run on a table with a malformed PRIMARY KEY, allows remote attackers to cause a denial of service (application crash) by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases).
nvd
CVE-2018-4318HIGHCVSS 8.8PoCfixed in 12.02019-04-03
CVE-2018-4318 [HIGH] CWE-416 CVE-2018-4318: A use after free issue was addressed with improved memory management. This issue affected versions p A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
nvd