Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Ipados
(Apple)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 1402 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-07-28 | CVE-2022-2294 | Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | Ipados, Iphone_os, Mac_os_x, Macos, Tvos, Watchos, Extra_packages_for_enterprise_linux, Fedora, Chrome, Webkitgtk, Webrtc, Wpe_webkit | 8.8 | ||
2023-06-23 | CVE-2023-32373 | A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. | Ipados, Iphone_os, Macos, Safari, Tvos, Watchos, Enterprise_linux, Webkitgtk\+ | 8.8 | ||
2024-01-23 | CVE-2024-23222 | A type confusion issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited. | Ipados, Iphone_os, Macos, Tvos | 8.8 | ||
2025-01-27 | CVE-2024-54517 | The issue was addressed with improved bounds checks. This issue is fixed in macOS Sequoia 15.2, watchOS 11.2, tvOS 18.2, iOS 18.2 and iPadOS 18.2. An app may be able to corrupt coprocessor memory. | Ipados, Iphone_os, Macos, Tvos, Watchos | 7.8 | ||
2025-01-27 | CVE-2025-24113 | The issue was addressed with improved UI. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, visionOS 2.3. Visiting a malicious website may lead to user interface spoofing. | Ipados, Iphone_os, Macos, Safari, Visionos | 4.3 | ||
2025-01-27 | CVE-2025-24117 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in iPadOS 17.7.4, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3. An app may be able to fingerprint the user. | Ipados, Iphone_os, Macos, Visionos, Watchos | 5.5 | ||
2025-01-27 | CVE-2025-24129 | A type confusion issue was addressed with improved checks. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A remote attacker may cause an unexpected app termination. | Ipados, Iphone_os, Macos, Tvos, Visionos, Watchos | 7.5 | ||
2025-01-27 | CVE-2025-24128 | The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Visiting a malicious website may lead to address bar spoofing. | Ipados, Iphone_os, Macos, Safari | 4.3 | ||
2025-01-27 | CVE-2024-54541 | This issue was addressed through improved state management. This issue is fixed in macOS Ventura 13.7.2, visionOS 2.2, tvOS 18.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2, macOS Sonoma 14.7.2, macOS Sequoia 15.2. An app may be able to access user-sensitive data. | Ipados, Iphone_os, Macos, Tvos, Visionos, Watchos | 5.5 | ||
2023-05-08 | CVE-2023-27932 | This issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, tvOS 16.4, watchOS 9.4. Processing maliciously crafted web content may bypass Same Origin Policy. | Ipados, Iphone_os, Macos, Safari, Tvos, Watchos, Debian_linux | 5.5 |