Vulnerabilities > Apple > Ipados > 17.0

DATE CVE VULNERABILITY TITLE RISK
2024-03-05 CVE-2024-23225 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved validation.
local
low complexity
apple CWE-787
7.8
2024-02-21 CVE-2023-42823 Insecure Storage of Sensitive Information vulnerability in Apple products
The issue was resolved by sanitizing logging This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, macOS Monterey 12.7.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.1.
local
low complexity
apple CWE-922
5.5
2024-02-21 CVE-2023-42942 Link Following vulnerability in Apple products
This issue was addressed with improved handling of symlinks.
local
low complexity
apple CWE-59
7.8
2024-02-19 CVE-2024-1580 Integer Overflow or Wraparound vulnerability in multiple products
An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size.
network
low complexity
videolan apple fedoraproject CWE-190
8.8
2024-01-23 CVE-2024-23208 Unspecified vulnerability in Apple products
The issue was addressed with improved memory handling.
local
low complexity
apple
7.8
2024-01-23 CVE-2024-23210 Unspecified vulnerability in Apple products
This issue was addressed with improved redaction of sensitive information.
local
low complexity
apple
3.3
2024-01-23 CVE-2024-23215 Unspecified vulnerability in Apple products
An issue was addressed with improved handling of temporary files.
local
low complexity
apple
5.5
2024-01-23 CVE-2024-23217 Unspecified vulnerability in Apple products
A privacy issue was addressed with improved handling of temporary files.
local
low complexity
apple
3.3
2024-01-23 CVE-2024-23218 Information Exposure Through Discrepancy vulnerability in Apple products
A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions.
network
high complexity
apple CWE-203
5.9
2024-01-23 CVE-2024-23219 Improper Authentication vulnerability in Apple Ipados
The issue was addressed with improved authentication.
local
low complexity
apple CWE-287
6.2