Apple iOS vulnerabilities
4,134 known vulnerabilities affecting apple/iphone_os.
Total CVEs
4,134
CISA KEV
92
actively exploited
Public exploits
276
Exploited in wild
141
Severity breakdown
CRITICAL340HIGH1687MEDIUM1818LOW289
Vulnerabilities
Page 142 of 207
CVE-2015-7004P4HIGHCVSS 7.1≤ 9.0.22015-10-23
CVE-2015-7004 [HIGH] CWE-20 CVE-2015-7004: The kernel in Apple iOS before 9.1 allows attackers to cause a denial of service via a crafted app.
The kernel in Apple iOS before 9.1 allows attackers to cause a denial of service via a crafted app.
nvd
CVE-2011-3060P4MEDIUMCVSS 6.8fixed in 6.02012-03-30
CVE-2011-3060 [MEDIUM] CWE-125 CVE-2011-3060: Google Chrome before 18.0.1025.142 does not properly handle text fragments, which allows remote atta
Google Chrome before 18.0.1025.142 does not properly handle text fragments, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
nvd
CVE-2017-2450P4HIGHCVSS 7.1≤ 10.2.12017-04-02
CVE-2017-2450 [HIGH] CWE-125 CVE-2017-2450: An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "CoreText" component. It allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) via
nvd
CVE-2017-2439P4HIGHCVSS 7.1≤ 10.2.12017-04-02
CVE-2017-2439 [HIGH] CWE-125 CVE-2017-2439: An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "FontParser" component. It allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) v
nvd
CVE-2011-3059P4MEDIUMCVSS 6.8fixed in 6.02012-03-30
CVE-2011-3059 [MEDIUM] CWE-125 CVE-2011-3059: Google Chrome before 18.0.1025.142 does not properly handle SVG text elements, which allows remote a
Google Chrome before 18.0.1025.142 does not properly handle SVG text elements, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
nvd
CVE-2025-24097P4MEDIUMCVSS 5.0fixed in 18.42025-03-31
CVE-2025-24097 [MEDIUM] CWE-125 CVE-2025-24097: A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.4 and
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.7, macOS Sequoia 15.4, macOS Sonoma 14.7.5, tvOS 18.4, watchOS 11.4. An app may be able to read arbitrary file metadata.
nvd
CVE-2011-2854P4MEDIUMCVSS 6.8fixed in 5.12011-09-19
CVE-2011-2854 [MEDIUM] CWE-416 CVE-2011-2854: Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to "ruby / table style handing."
nvd
CVE-2012-2807P4MEDIUMCVSS 6.8≤ 6.1.4v1.0.0+46 more2012-06-27
CVE-2012-2807 [MEDIUM] CWE-189 CVE-2012-2807: Multiple integer overflows in libxml2, as used in Google Chrome before 20.0.1132.43 and other produc
Multiple integer overflows in libxml2, as used in Google Chrome before 20.0.1132.43 and other products, on 64-bit Linux platforms allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
nvd
CVE-2011-2792P4MEDIUMCVSS 6.8fixed in 5.02011-08-03
CVE-2011-2792 [MEDIUM] CWE-416 CVE-2011-2792: Use-after-free vulnerability in Google Chrome before 13.0.782.107 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 13.0.782.107 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to float removal.
nvd
CVE-2011-2857P4MEDIUMCVSS 6.8fixed in 5.12011-09-19
CVE-2011-2857 [MEDIUM] CWE-416 CVE-2011-2857: Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the focus controller.
nvd
CVE-2011-3969P4MEDIUMCVSS 6.8fixed in 6.02012-02-09
CVE-2011-3969 [MEDIUM] CWE-416 CVE-2011-3969: Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a
Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to layout of SVG documents.
nvd
CVE-2015-7500P4MEDIUMCVSS 5.0≤ 9.2.12015-12-15
CVE-2015-7500 [MEDIUM] CWE-119 CVE-2015-7500: The xmlParseMisc function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to
The xmlParseMisc function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (out-of-bounds heap read) via unspecified vectors related to incorrect entities boundaries and start tags.
nvd
CVE-2015-3803P4HIGHCVSS 7.2≤ 8.42015-08-17
CVE-2015-3803 [HIGH] CWE-20 CVE-2015-3803: Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection
Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism via a crafted multi-architecture executable file.
nvd
CVE-2015-3806P4HIGHCVSS 7.2≤ 8.42015-08-17
CVE-2015-3806 [HIGH] CWE-284 CVE-2015-3806: Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection
Apple iOS before 8.4.1 and OS X before 10.10.5 allow local users to bypass a code-signing protection mechanism by appending code to a crafted executable file.
nvd
CVE-2015-3726P4MEDIUMCVSS 4.6≤ 8.32015-07-03
CVE-2015-3726 [MEDIUM] CWE-20 CVE-2015-3726: The Telephony subsystem in Apple iOS before 8.4 allows physically proximate attackers to execute arb
The Telephony subsystem in Apple iOS before 8.4 allows physically proximate attackers to execute arbitrary code via a crafted (1) SIM or (2) UIM card.
nvd
CVE-2016-7627P4MEDIUMCVSS 6.5≤ 10.1.12017-02-20
CVE-2016-7627 [MEDIUM] CWE-476 CVE-2016-7627: An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "CoreGraphics" component. It allows attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted font.
nvd
CVE-2018-4250P4MEDIUMCVSS 6.5fixed in 11.42018-06-08
CVE-2018-4250 [MEDIUM] CWE-20 CVE-2018-4250: An issue was discovered in certain Apple products. iOS before 11.4 is affected. The issue involves t
An issue was discovered in certain Apple products. iOS before 11.4 is affected. The issue involves the "Messages" component. It allows remote attackers to cause a denial of service via a crafted message.
nvd
CVE-2017-6975P4MEDIUMCVSS 6.8≤ 10.32017-04-05
CVE-2017-6975 [MEDIUM] CVE-2017-6975: Wi-Fi in Apple iOS before 10.3.1 does not prevent CVE-2017-6956 stack buffer overflow exploitation v
Wi-Fi in Apple iOS before 10.3.1 does not prevent CVE-2017-6956 stack buffer overflow exploitation via a crafted access point. NOTE: because an operating system could potentially isolate itself from CVE-2017-6956 exploitation without patching Broadcom firmware functions, there is a separate CVE ID for the operating-system behavior.
nvd
CVE-2016-4651P4MEDIUMCVSS 6.1≤ 9.3.22016-07-22
CVE-2016-4651 [MEDIUM] CWE-79 CVE-2016-4651: Cross-site scripting (XSS) vulnerability in the WebKit JavaScript bindings in Apple iOS before 9.3.3
Cross-site scripting (XSS) vulnerability in the WebKit JavaScript bindings in Apple iOS before 9.3.3 and Safari before 9.1.2 allows remote attackers to inject arbitrary web script or HTML via a crafted HTTP/0.9 response, related to a "cross-protocol cross-site scripting (XPXSS)" vulnerability.
nvd
CVE-2020-6616P4MEDIUMCVSS 6.5fixed in 13.52020-05-08
CVE-2020-6616 [MEDIUM] CVE-2020-6616: Some Broadcom chips mishandle Bluetooth random-number generation because a low-entropy Pseudo Random
Some Broadcom chips mishandle Bluetooth random-number generation because a low-entropy Pseudo Random Number Generator (PRNG) is used in situations where a Hardware Random Number Generator (HRNG) should have been used to prevent spoofing. This affects, for example, Samsung Galaxy S8, S8+, and Note8 devices with the BCM4361 chipset. The Samsung ID is SVE-2020-1
nvd