Vulnerabilities > Apple > Iphone OS > 10.3.1

DATE CVE VULNERABILITY TITLE RISK
2019-03-04 CVE-2019-6235 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved validation.
network
low complexity
apple CWE-787
7.5
2019-03-04 CVE-2019-6206 Information Exposure vulnerability in Apple Iphone OS
An issue existed with autofill resuming after it was canceled.
network
low complexity
apple CWE-200
5.0
2019-02-18 CVE-2019-8906 Out-of-bounds Read vulnerability in multiple products
do_core_note in readelf.c in libmagic.a in file 5.35 has an out-of-bounds read because memcpy is misused.
3.6
2019-01-11 CVE-2018-4404 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS
In iOS before 11.4 and macOS High Sierra before 10.13.5, a memory corruption issue exists and was addressed with improved memory handling.
local
low complexity
apple CWE-119
7.8
2019-01-11 CVE-2018-4330 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS
In iOS before 11.4, a memory corruption issue exists and was addressed with improved memory handling.
network
apple CWE-119
critical
9.3
2019-01-11 CVE-2018-4298 Unspecified vulnerability in Apple products
In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a permissions issue existed in Remote Management.
network
low complexity
apple
critical
9.8
2019-01-11 CVE-2018-4278 In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, sound fetched through audio elements may be exfiltrated cross-origin.
network
low complexity
apple canonical
4.3
2019-01-11 CVE-2018-4277 Improper Input Validation vulnerability in Apple products
In iOS before 11.4.1, watchOS before 4.3.2, tvOS before 11.4.1, Safari before 11.1.1, macOS High Sierra before 10.13.6, a spoofing issue existed in the handling of URLs.
network
low complexity
apple CWE-20
5.0
2019-01-11 CVE-2018-4262 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, multiple memory corruption issues were addressed with improved memory handling.
network
low complexity
apple canonical CWE-119
8.8
2019-01-11 CVE-2018-4213 Improper Input Validation vulnerability in multiple products
In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, tvOS before 11.3, watchOS before 4.3, iTunes before 12.7.4 for Windows, unexpected interaction causes an ASSERT failure.
network
low complexity
apple canonical webkitgtk CWE-20
8.8