Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Ipados
(Apple)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 1520 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2020-10-27 | CVE-2019-8796 | A logic issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, iOS 12.4.3, watchOS 6.1, iOS 13.2 and iPadOS 13.2. AirDrop transfers may be unexpectedly accepted while in Everyone mode. | Ipados, Iphone_os, Mac_os_x, Watchos | 5.3 | ||
2020-10-27 | CVE-2019-8850 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, iOS 13.1 and iPadOS 13.1, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6. Processing a maliciously crafted audio file may disclose restricted memory. | Ipados, Iphone_os, Mac_os_x, Tvos | 5.5 | ||
2020-02-05 | CVE-2019-15126 | An issue was discovered on Broadcom Wi-Fi client devices. Specifically timed and handcrafted traffic can cause internal errors (related to state transitions) in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the air for a discrete set of traffic, a different vulnerability than CVE-2019-9500, CVE-2019-9501, CVE-2019-9502, and CVE-2019-9503. | Ipados, Iphone_os, Mac_os_x, Bcm43012_firmware, Bcm43013_firmware, Bcm4356_firmware, Bcm43752_firmware, Bcm4375_firmware, Bcm4389_firmware | N/A | ||
2019-12-18 | CVE-2019-8804 | An inconsistency in Wi-Fi network configuration settings was addressed. This issue is fixed in iOS 13.2 and iPadOS 13.2. An attacker in physical proximity may be able to force a user onto a malicious Wi-Fi network during device setup. | Ipados, Iphone_os | N/A | ||
2019-12-18 | CVE-2019-8803 | An authentication issue was addressed with improved state management. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.2, watchOS 6.1. A local attacker may be able to login to the account of a previously logged in user without valid credentials.. | Ipados, Iphone_os, Mac_os_x, Tvos, Watchos | N/A | ||
2019-12-18 | CVE-2019-8794 | A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.2, watchOS 6.1. An application may be able to read restricted memory. | Ipados, Iphone_os, Mac_os_x, Tvos, Watchos | N/A | ||
2019-12-18 | CVE-2019-8788 | An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1. Improper URL processing may lead to data exfiltration. | Ipados, Iphone_os, Mac_os_x | N/A | ||
2019-12-18 | CVE-2019-8779 | A logic issue applied the incorrect restrictions. This issue was addressed by updating the logic to apply the correct restrictions. This issue is fixed in iOS 13.1.1 and iPadOS 13.1.1. Third party app extensions may not receive the correct sandbox restrictions. | Ipados, Iphone_os | N/A | ||
2019-12-18 | CVE-2019-8789 | A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1. Parsing a maliciously crafted iBooks file may lead to disclosure of user information. | Ipados, Iphone_os, Mac_os_x | N/A | ||
2019-12-18 | CVE-2019-8787 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.2 and iPadOS 13.2, macOS Catalina 10.15.1, tvOS 13.2, watchOS 6.1. A remote attacker may be able to leak memory. | Ipados, Iphone_os, Mac_os_x, Tvos, Watchos | N/A |