Apple tvOS vulnerabilities
2,371 known vulnerabilities affecting apple/tvos.
Total CVEs
2,371
CISA KEV
41
actively exploited
Public exploits
209
Exploited in wild
78
Severity breakdown
CRITICAL174HIGH1277MEDIUM858LOW59UNKNOWN3
Vulnerabilities
Page 119 of 119
CVE-2015-1097P4LOWCVSS 1.9≤ 7.12015-04-10
CVE-2015-1097 [LOW] CWE-200 CVE-2015-1097: IOMobileFramebuffer in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensi
IOMobileFramebuffer in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensitive information about kernel memory via a crafted app.
nvd
CVE-2015-1094P4LOWCVSS 1.9≤ 7.12015-04-10
CVE-2015-1094 [LOW] CWE-200 CVE-2015-1094: IOAcceleratorFamily in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensi
IOAcceleratorFamily in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensitive information about kernel memory via a crafted app.
nvd
CVE-2022-32879P4LOWCVSS 2.4fixed in 16.02022-11-01
CVE-2022-32879 [LOW] CVE-2022-32879: A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13,
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, iOS 16, iOS 15.7 and iPadOS 15.7, watchOS 9, tvOS 16. A user with physical access to a device may be able to access contacts from the lock screen.
nvdapple
CVE-2019-8799P4LOWCVSS 2.4fixed in 13.0≥ unspecified, < 132020-10-27
CVE-2019-8799 [LOW] CVE-2019-8799: This issue was resolved by replacing device names with a random identifier. This issue is fixed in i
This issue was resolved by replacing device names with a random identifier. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15, watchOS 6, tvOS 13. An attacker in physical proximity may be able to passively observe device names in AWDL communications.
nvdapple
CVE-2023-32394P4LOWCVSS 2.4fixed in 16.5≥ unspecified, < 16.52023-06-23
CVE-2023-32394 [LOW] CWE-668 CVE-2023-32394: The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watch
The issue was addressed with improved checks. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5, tvOS 16.5, macOS Ventura 13.4. A person with physical access to a device may be able to view contact information from the lock screen.
nvdapple
CVE-2021-30915P4LOWCVSS 2.4fixed in 15.12021-08-24
CVE-2021-30915 [LOW] CVE-2021-30915: A logic issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPad
A logic issue was addressed with improved state management. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, tvOS 15.1, watchOS 8.1, Security Update 2021-007 Catalina, macOS Big Sur 11.6.1. A person with physical access to an iOS device may be able to determine characteristics of a user's password in a secure text entry field.
nvdapple
CVE-2014-4357P4LOWCVSS 2.1≤ 6.2v6.0+5 more2014-09-18
CVE-2014-4357 [LOW] CWE-200 CVE-2014-4357: Accounts Framework in Apple iOS before 8 and Apple TV before 7 allows attackers to obtain sensitive
Accounts Framework in Apple iOS before 8 and Apple TV before 7 allows attackers to obtain sensitive information by reading log data that was not intended to be present in a log.
nvd
CVE-2014-1279P4LOWCVSS 2.1≤ 6.0.2v6.0+1 more2014-03-14
CVE-2014-1279 [LOW] CWE-264 CVE-2014-1279: Apple TV before 6.1 does not properly restrict logging, which allows local users to obtain sensitive
Apple TV before 6.1 does not properly restrict logging, which allows local users to obtain sensitive information by reading log data.
nvd
CVE-2016-4695UNKNOWNv10.12016-12-12
CVE-2016-4695 CVE-2016-4695: tvOS 10.1
Apple Security Update: About the security content of tvOS 10.1
Product: tvOS
Version: 10.1
CVE: CVE-2016-4695
Component: JavaScriptCore
Impact: A script executing in a JavaScript sandbox may be able to access state outside that sandbox
Description: A validation issue existed in processing JavaScript. This issue was addressed through improved validation.
apple
CVE-2016-7647UNKNOWNv10.12016-12-12
CVE-2016-7647 CVE-2016-7647: tvOS 10.1
Apple Security Update: About the security content of tvOS 10.1
Product: tvOS
Version: 10.1
CVE: CVE-2016-7647
Component: Kernel
Impact: An application may be able to cause a denial of service
Description: A denial of service issue was addressed through improved memory handling.
apple
CVE-2016-7705UNKNOWNv9.2.22016-07-18
CVE-2016-7705 CVE-2016-7705: tvOS 9.2.2
Apple Security Update: About the security content of tvOS 9.2.2
Product: tvOS
Version: 9.2.2
CVE: CVE-2016-7705
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A memory corruption issue was addressed through improved memory handling.
apple
← Previous119 / 119