Apple watchOS vulnerabilities

1,895 known vulnerabilities affecting apple/watchos.

Total CVEs
1,895
CISA KEV
51
actively exploited
Public exploits
123
Exploited in wild
40
Severity breakdown
CRITICAL140HIGH970MEDIUM715LOW68UNKNOWN2

Vulnerabilities

Page 65 of 95
CVE-2019-8669HIGHCVSS 8.8fixed in 5.3≥ unspecified, < watchOS 5.32019-12-18
CVE-2019-8669 [HIGH] CWE-787 CVE-2019-8669: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8689HIGHCVSS 8.8PoCfixed in 5.3≥ unspecified, < watchOS 5.32019-12-18
CVE-2019-8689 [HIGH] CWE-787 CVE-2019-8689: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8646HIGHCVSS 7.5ExploitedPoCfixed in 5.3≥ unspecified, < watchOS 5.32019-12-18
CVE-2019-8646 [HIGH] CWE-125 CVE-2019-8646: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.4, An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3. A remote attacker may be able to leak memory.
nvdapple
CVE-2019-8542HIGHCVSS 7.8fixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8542 [HIGH] CWE-120 CVE-2019-8542: A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 12.2, macO A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. A malicious application may be able to elevate privileges.
nvdapple
CVE-2019-8549HIGHCVSS 7.8fixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8549 [HIGH] CWE-20 CVE-2019-8549: Multiple input validation issues existed in MIG generated code. These issues were addressed with imp Multiple input validation issues existed in MIG generated code. These issues were addressed with improved validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to execute arbitrary code with system privileges.
nvdapple
CVE-2019-8516HIGHCVSS 7.5fixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8516 [HIGH] CWE-20 CVE-2019-8516: A validation issue was addressed with improved logic. This issue is fixed in iOS 12.2, macOS Mojave A validation issue was addressed with improved logic. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. Processing a maliciously crafted string may lead to a denial of service.
nvdapple
CVE-2019-8765HIGHCVSS 8.8PoCfixed in 6.1≥ unspecified, < watchOS 6.12019-12-18
CVE-2019-8765 [HIGH] CWE-787 CVE-2019-8765: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in watchOS 6.1. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8683HIGHCVSS 8.8fixed in 5.3≥ unspecified, < watchOS 5.32019-12-18
CVE-2019-8683 [HIGH] CWE-787 CVE-2019-8683: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8563HIGHCVSS 8.8fixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8563 [HIGH] CWE-787 CVE-2019-8563: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8803HIGHCVSS 8.4fixed in 6.1≥ unspecified, < watchOS 6.12019-12-18
CVE-2019-8803 [HIGH] CWE-613 CVE-2019-8803: An authentication issue was addressed with improved state management. This issue is fixed in iOS 13. An authentication issue was addressed with improved state management. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.2, watchOS 6.1. A local attacker may be able to login to the account of a previously logged in user without valid credentials..
nvdapple
CVE-2019-8816HIGHCVSS 8.8fixed in 6.1≥ unspecified, < watchOS 6.12019-12-18
CVE-2019-8816 [HIGH] CWE-787 CVE-2019-8816: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, watchOS 6.1, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8812HIGHCVSS 8.8fixed in 6.1≥ unspecified, < watchOS 6.12019-12-18
CVE-2019-8812 [HIGH] CWE-787 CVE-2019-8812: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, watchOS 6.1, Safari 13.0.3, iTunes for Windows 12.10.2. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8506HIGHCVSS 8.8KEVPoCfixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8506 [HIGH] CWE-843 CVE-2019-8506: A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8787HIGHCVSS 7.5fixed in 6.1≥ unspecified, < watchOS 6.12019-12-18
CVE-2019-8787 [HIGH] CWE-125 CVE-2019-8787: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.2 An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.2, watchOS 6.1. A remote attacker may be able to leak memory.
nvdapple
CVE-2019-8766HIGHCVSS 8.8fixed in 6.1≥ unspecified, < watchOS 6.12019-12-18
CVE-2019-8766 [HIGH] CWE-787 CVE-2019-8766: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in watchOS 6.1, iCloud for Windows 11.0. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8811HIGHCVSS 8.8fixed in 6.1≥ unspecified, < watchOS 6.12019-12-18
CVE-2019-8811 [HIGH] CWE-787 CVE-2019-8811: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.2 and iPadOS 13.2, tvOS 13.2, watchOS 6.1, Safari 13.0.3, iTunes for Windows 12.10.2, iCloud for Windows 11.0, iCloud for Windows 7.15. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8593HIGHCVSS 7.8fixed in 5.2.1≥ unspecified, < watchOS 5.2.12019-12-18
CVE-2019-8593 [HIGH] CWE-787 CVE-2019-8593: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.3, tvOS 12.3, watchOS 5.2.1. An application may be able to execute arbitrary code with system privileges.
nvdapple
CVE-2019-8585HIGHCVSS 8.8fixed in 5.2.1≥ unspecified, < watchOS 5.2.12019-12-18
CVE-2019-8585 [HIGH] CWE-125 CVE-2019-8585: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.3, An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. Processing a maliciously crafted movie file may lead to arbitrary code execution.
nvdapple
CVE-2019-8518HIGHCVSS 8.8PoCfixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8518 [HIGH] CWE-787 CVE-2019-8518: Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple
CVE-2019-8544HIGHCVSS 8.8fixed in 5.2≥ unspecified, < watchOS 5.22019-12-18
CVE-2019-8544 [HIGH] CWE-787 CVE-2019-8544: A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2, watchOS 5.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Windows 7.11. Processing maliciously crafted web content may lead to arbitrary code execution.
nvdapple