Apple tvOS vulnerabilities
2,371 known vulnerabilities affecting apple/tvos.
Total CVEs
2,371
CISA KEV
41
actively exploited
Public exploits
209
Exploited in wild
78
Severity breakdown
CRITICAL174HIGH1277MEDIUM858LOW59UNKNOWN3
Vulnerabilities
Page 54 of 119
CVE-2019-8833P3HIGHCVSS 7.8fixed in 13.32020-10-27
CVE-2019-8833 [HIGH] CWE-787 CVE-2019-8833: A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS
A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.3 and iPadOS 13.3, watchOS 6.1.1, macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra, tvOS 13.3. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2019-8836P3HIGHCVSS 7.8fixed in 13.3.1≥ unspecified, < 13.32020-10-27
CVE-2019-8836 [HIGH] CWE-787 CVE-2019-8836: A memory corruption issue was addressed with improved memory handling. This issue is fixed in watchO
A memory corruption issue was addressed with improved memory handling. This issue is fixed in watchOS 6.1.2, iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1. An application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2021-30748P3HIGHCVSS 7.8fixed in 14.72021-09-08
CVE-2021-30748 [HIGH] CWE-787 CVE-2021-30748: A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 1
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 14.7, macOS Big Sur 11.5. An application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2020-3842P3HIGHCVSS 7.8fixed in 13.3.1≥ unspecified, < tvOS 13.3.12020-02-27
CVE-2020-3842 [HIGH] CWE-787 CVE-2020-3842: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2020-9814P3HIGHCVSS 7.8fixed in 13.4.5≥ unspecified, < tvOS 13.4.52020-06-09
CVE-2020-9814 [HIGH] CWE-787 CVE-2020-9814: A logic issue existed resulting in memory corruption. This was addressed with improved state managem
A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2020-9813P3HIGHCVSS 7.8fixed in 13.4.5≥ unspecified, < tvOS 13.4.52020-06-09
CVE-2020-9813 [HIGH] CWE-787 CVE-2020-9813: A logic issue existed resulting in memory corruption. This was addressed with improved state managem
A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2020-3853P3HIGHCVSS 7.8fixed in 13.3.1≥ unspecified, < tvOS 13.3.12020-02-27
CVE-2020-3853 [HIGH] CWE-843 CVE-2020-3853: A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. A malicious application may be able to execute arbitrary code with system privileges.
nvd
CVE-2020-9878P3HIGHCVSS 7.8fixed in 13.4.8≥ unspecified, < tvOS 13.4.82020-10-16
CVE-2020-9878 [HIGH] CWE-120 CVE-2020-9878: A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.
nvdapple
CVE-2020-9821P3HIGHCVSS 7.8fixed in 13.4.5≥ unspecified, < tvOS 13.4.52020-06-09
CVE-2020-9821 [HIGH] CWE-787 CVE-2020-9821: A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 1
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2019-8828P3HIGHCVSS 7.8fixed in 13.32020-10-27
CVE-2019-8828 [HIGH] CWE-787 CVE-2019-8828: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3 and iPadOS 13.3, watchOS 6.1.1, macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra, tvOS 13.3. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-9852P3HIGHCVSS 7.8fixed in 13.4.5≥ unspecified, < tvOS 13.4.52020-06-09
CVE-2020-9852 [HIGH] CWE-190 CVE-2020-9852: An integer overflow was addressed through improved input validation. This issue is fixed in iOS 13.5
An integer overflow was addressed through improved input validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able to execute arbitrary code with kernel privileges.
nvd
CVE-2021-30780P3HIGHCVSS 7.8fixed in 14.72021-09-08
CVE-2021-30780 [HIGH] CWE-787 CVE-2021-30780: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-005 Mojave, Security Update 2021-004 Catalina. A malicious application may be able to gain root privileges.
nvd
CVE-2019-8740P3HIGHCVSS 7.8fixed in 13≥ unspecified, < 132020-10-27
CVE-2019-8740 [HIGH] CWE-787 CVE-2019-8740: A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 13
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 13.1 and iPadOS 13.1, watchOS 6, tvOS 13. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-27905P3HIGHCVSS 7.8fixed in 14.2≥ unspecified, < 14.22020-12-08
CVE-2020-27905 [HIGH] CWE-787 CVE-2020-27905: A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 1
A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. A malicious application may be able to execute arbitrary code with system privileges.
nvd
CVE-2019-8592P3HIGHCVSS 7.8fixed in 12.3≥ 12.4, < 132020-10-27
CVE-2019-8592 [HIGH] CWE-20 CVE-2019-8592: A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS
A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, tvOS 12.3, watchOS 5.2.1, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, iOS 13. Playing a mal
nvdapple
CVE-2021-1885P3HIGHCVSS 7.8fixed in 14.5≥ unspecified, < 14.52021-09-08
CVE-2021-1885 [HIGH] CWE-125 CVE-2021-1885: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2020-9890P3HIGHCVSS 7.8fixed in 13.4.8≥ unspecified, < tvOS 13.4.82020-10-16
CVE-2020-9890 [HIGH] CWE-125 CVE-2020-9890: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 a
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvdapple
CVE-2021-30886P3HIGHCVSS 7.8fixed in 15.12021-08-24
CVE-2021-30886 [HIGH] CWE-416 CVE-2021-30886: A use after free issue was addressed with improved memory management. This issue is fixed in macOS M
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.0.1, iOS 15.1 and iPadOS 15.1, watchOS 8.1, tvOS 15.1. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-9891P3HIGHCVSS 7.8fixed in 13.4.8≥ unspecified, < tvOS 13.4.82020-10-16
CVE-2020-9891 [HIGH] CWE-125 CVE-2020-9891: An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 a
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously crafted audio file may lead to arbitrary code execution.
nvdapple
CVE-2016-1762P3HIGHCVSS 8.1fixed in 9.22016-03-24
CVE-2016-1762 [HIGH] CWE-119 CVE-2016-1762: The xmlNextChar function in libxml2 before 2.9.4 allows remote attackers to cause a denial of servic
The xmlNextChar function in libxml2 before 2.9.4 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted XML document.
nvdapple