cbcvebase.

Apple watchOS vulnerabilities

2,036 known vulnerabilities affecting apple/watchos.

Total CVEs
2,036
CISA KEV
51
actively exploited
Public exploits
137
Exploited in wild
85
Severity breakdown
CRITICAL160HIGH1024MEDIUM782LOW68UNKNOWN2

Vulnerabilities

Page 36 of 102
CVE-2022-22615P3HIGHCVSS 7.8fixed in 8.5≥ unspecified, < 8.52022-03-18
CVE-2022-22615 [HIGH] CWE-416 CVE-2022-22615: A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15 A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, Security Update 2022-003 Catalina, watchOS 8.5, macOS Monterey 12.3. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2019-8592P3HIGHCVSS 7.8fixed in 5.2.12020-10-27
CVE-2019-8592 [HIGH] CWE-20 CVE-2019-8592: A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, tvOS 12.3, watchOS 5.2.1, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, iOS 13. Playing a mal
nvdapple
CVE-2022-26768P3HIGHCVSS 7.8fixed in 8.6≥ unspecified, < 8.6+3 more2022-05-26
CVE-2022-26768 [HIGH] CWE-787 CVE-2022-26768: A memory corruption issue was addressed with improved state management. This issue is fixed in macOS A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.4, watchOS 8.6, tvOS 15.5, macOS Big Sur 11.6.6. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-27927P3HIGHCVSS 7.8fixed in 7.1≥ unspecified, < 7.12020-12-08
CVE-2020-27927 [HIGH] CWE-787 CVE-2020-27927: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in mac An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted font file may lead to arbitrary code execution.
nvd
CVE-2021-30789P3HIGHCVSS 7.8fixed in 7.62021-09-08
CVE-2021-30789 [HIGH] CWE-125 CVE-2021-30789: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.7, An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-004 Catalina. Processing a maliciously crafted font file may lead to arbitrary code execution.
nvd
CVE-2016-4447P3HIGHCVSS 7.5≤ 2.2.12016-06-09
CVE-2016-4447 [HIGH] CWE-119 CVE-2016-4447: The xmlParseElementDecl function in parser.c in libxml2 before 2.9.4 allows context-dependent attack The xmlParseElementDecl function in parser.c in libxml2 before 2.9.4 allows context-dependent attackers to cause a denial of service (heap-based buffer underread and application crash) via a crafted file, involving xmlParseName.
nvdapple
CVE-2020-9966P3HIGHCVSS 7.8fixed in 7.0≥ unspecified, < 7.02020-12-08
CVE-2020-9966 [HIGH] CWE-125 CVE-2020-9966: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, tvOS 14.0, iOS 14.0 and iPadOS 14.0. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-9980P3HIGHCVSS 7.8fixed in 6.2.8≥ unspecified, < watchOS 6.2.82020-10-22
CVE-2020-9980 [HIGH] CWE-787 CVE-2020-9980: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously crafted font file may lead to arbitrary code execution.
nvdapple
CVE-2021-1744P3HIGHCVSS 7.8fixed in 7.32021-04-02
CVE-2021-1744 [HIGH] CWE-787 CVE-2021-1744: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2021-30752P3HIGHCVSS 7.8fixed in 7.4≥ unspecified, < 7.42021-09-08
CVE-2021-30752 [HIGH] CWE-125 CVE-2021-30752: Processing a maliciously crafted image may lead to arbitrary code execution. This issue is fixed in Processing a maliciously crafted image may lead to arbitrary code execution. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. An out-of-bounds read was addressed with improved input validation.
nvd
CVE-2022-22633P3HIGHCVSS 7.8fixed in 8.5≥ unspecified, < 8.52022-03-18
CVE-2022-22633 [HIGH] CWE-787 CVE-2022-22633: A memory corruption issue was addressed with improved state management. This issue is fixed in watch A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 8.5, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, macOS Monterey 12.3. Opening a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution.
nvdapple
CVE-2021-30958P3HIGHCVSS 7.8fixed in 8.3≥ unspecified, < 8.32021-08-24
CVE-2021-30958 [HIGH] CWE-125 CVE-2021-30958: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.6.2, tvOS 15.2, macOS Monterey 12.1, Security Update 2021-008 Catalina, iOS 15.2 and iPadOS 15.2, watchOS 8.3. Playing a malicious audio file may lead to arbitrary code execution.
nvdapple
CVE-2021-30653P3HIGHCVSS 7.8fixed in 7.4≥ unspecified, < 7.42021-09-08
CVE-2021-30653 [HIGH] CVE-2021-30653: This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 a This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2021-1858P3HIGHCVSS 7.8fixed in 7.4≥ unspecified, < 7.42021-09-08
CVE-2021-1858 [HIGH] CWE-787 CVE-2021-1858: Processing a maliciously crafted image may lead to arbitrary code execution. This issue is fixed in Processing a maliciously crafted image may lead to arbitrary code execution. This issue is fixed in Security Update 2021-002 Catalina, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. An out-of-bounds write issue was addressed with improved bounds checking.
nvd
CVE-2022-22640P3HIGHCVSS 7.8fixed in 8.5≥ unspecified, < 8.52022-03-18
CVE-2022-22640 [HIGH] CWE-787 CVE-2022-22640: A memory corruption issue was addressed with improved validation. This issue is fixed in tvOS 15.4, A memory corruption issue was addressed with improved validation. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3, watchOS 8.5. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2022-26702P3HIGHCVSS 7.8fixed in 8.6≥ unspecified, < 8.6+1 more2022-05-26
CVE-2022-26702 [HIGH] CWE-416 CVE-2022-26702: A use after free issue was addressed with improved memory management. This issue is fixed in watchOS A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 8.6, tvOS 15.5, iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.
nvdapple
CVE-2020-27923P3HIGHCVSS 7.8fixed in 7.1≥ unspecified, < 7.12021-04-02
CVE-2020-27923 [HIGH] CWE-787 CVE-2020-27923: An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Bi An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, watchOS 7.1, tvOS 14.2. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
CVE-2021-30834P3HIGHCVSS 7.8fixed in 8.0≥ unspecified, < 82021-10-28
CVE-2021-30834 [HIGH] CVE-2021-30834: A logic issue was addressed with improved state management. This issue is fixed in iOS 14.8 and iPad A logic issue was addressed with improved state management. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iOS 15 and iPadOS 15, watchOS 8, Security Update 2021-007 Catalina. Processing a malicious audio file may result in unexpected application termination or arbitrary code execution.
nvd
CVE-2022-22611P3HIGHCVSS 7.8fixed in 8.5≥ unspecified, < 8.52022-03-18
CVE-2022-22611 [HIGH] CWE-125 CVE-2022-22611: An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 15.4 An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, iTunes 12.12.3 for Windows, watchOS 8.5, macOS Monterey 12.3. Processing a maliciously crafted image may lead to arbitrary code execution.
nvdapple
CVE-2021-1785P3HIGHCVSS 7.8fixed in 7.32021-04-02
CVE-2021-1785 [HIGH] CWE-125 CVE-2021-1785: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, watchOS 7.3, tvOS 14.4, iOS 14.4 and iPadOS 14.4. Processing a maliciously crafted image may lead to arbitrary code execution.
nvd
Apple watchOS vulnerabilities | cvebase