cbcvebase.

Apple tvOS vulnerabilities

2,371 known vulnerabilities affecting apple/tvos.

Total CVEs
2,371
CISA KEV
41
actively exploited
Public exploits
209
Exploited in wild
78
Severity breakdown
CRITICAL174HIGH1277MEDIUM858LOW59UNKNOWN3

Vulnerabilities

Page 119 of 119
CVE-2015-1097P4LOWCVSS 1.9≤ 7.12015-04-10
CVE-2015-1097 [LOW] CWE-200 CVE-2015-1097: IOMobileFramebuffer in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensi IOMobileFramebuffer in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensitive information about kernel memory via a crafted app.
nvd
CVE-2015-1094P4LOWCVSS 1.9≤ 7.12015-04-10
CVE-2015-1094 [LOW] CWE-200 CVE-2015-1094: IOAcceleratorFamily in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensi IOAcceleratorFamily in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensitive information about kernel memory via a crafted app.
nvd
CVE-2022-32879P4LOWCVSS 2.4fixed in 16.02022-11-01
CVE-2022-32879 [LOW] CVE-2022-32879: A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, iOS 16, iOS 15.7 and iPadOS 15.7, watchOS 9, tvOS 16. A user with physical access to a device may be able to access contacts from the lock screen.
nvdapple
CVE-2019-8799P4LOWCVSS 2.4fixed in 13.0≥ unspecified, < 132020-10-27
CVE-2019-8799 [LOW] CVE-2019-8799: This issue was resolved by replacing device names with a random identifier. This issue is fixed in i This issue was resolved by replacing device names with a random identifier. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15, watchOS 6, tvOS 13. An attacker in physical proximity may be able to passively observe device names in AWDL communications.
nvdapple
CVE-2023-32394P4LOWCVSS 2.4fixed in 16.5≥ unspecified, < 16.52023-06-23
CVE-2023-32394 [LOW] CWE-668 CVE-2023-32394: The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watch The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. A person with physical access to a device may be able to view contact information from the lock screen.
nvdapple
CVE-2021-30915P4LOWCVSS 2.4fixed in 15.12021-08-24
CVE-2021-30915 [LOW] CVE-2021-30915: A logic issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPad A logic issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, tvOS 15.1, watchOS 8.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A person with physical access to an iOS device may be able to determine characteristics of a user's password in a secure text entry field.
nvdapple
CVE-2014-4357P4LOWCVSS 2.1≤ 6.2v6.0+5 more2014-09-18
CVE-2014-4357 [LOW] CWE-200 CVE-2014-4357: Accounts Framework in Apple iOS before 8 and Apple TV before 7 allows attackers to obtain sensitive Accounts Framework in Apple iOS before 8 and Apple TV before 7 allows attackers to obtain sensitive information by reading log data that was not intended to be present in a log.
nvd
CVE-2014-1279P4LOWCVSS 2.1≤ 6.0.2v6.0+1 more2014-03-14
CVE-2014-1279 [LOW] CWE-264 CVE-2014-1279: Apple TV before 6.1 does not properly restrict logging, which allows local users to obtain sensitive Apple TV before 6.1 does not properly restrict logging, which allows local users to obtain sensitive information by reading log data.
nvd
CVE-2016-4695UNKNOWNv10.12016-12-12
CVE-2016-4695 CVE-2016-4695: tvOS 10.1 Apple Security Update: About the security content of tvOS 10.1 Product: tvOS Version: 10.1 CVE: CVE-2016-4695 Component: JavaScriptCore Impact: A script executing in a JavaScript sandbox may be able to access state outside that sandbox Description: A validation issue existed in processing JavaScript. This issue was addressed through improved validation.
apple
CVE-2016-7647UNKNOWNv10.12016-12-12
CVE-2016-7647 CVE-2016-7647: tvOS 10.1 Apple Security Update: About the security content of tvOS 10.1 Product: tvOS Version: 10.1 CVE: CVE-2016-7647 Component: Kernel Impact: An application may be able to cause a denial of service Description: A denial of service issue was addressed through improved memory handling.
apple
CVE-2016-7705UNKNOWNv9.2.22016-07-18
CVE-2016-7705 CVE-2016-7705: tvOS 9.2.2 Apple Security Update: About the security content of tvOS 9.2.2 Product: tvOS Version: 9.2.2 CVE: CVE-2016-7705 Component: ImageIO Impact: Processing a maliciously crafted image may lead to arbitrary code execution Description: A memory corruption issue was addressed through improved memory handling.
apple
← Previous119 / 119
Apple tvOS vulnerabilities | cvebase