Vulnerabilities > Apple > Iphone OS > 4.2.8

DATE CVE VULNERABILITY TITLE RISK
2021-09-08 CVE-2021-1851 Improper Privilege Management vulnerability in Apple products
A logic issue was addressed with improved state management.
network
apple CWE-269
critical
9.3
2021-09-08 CVE-2021-1852 Out-of-bounds Read vulnerability in Apple Iphone OS
An out-of-bounds read was addressed with improved input validation.
local
low complexity
apple CWE-125
5.5
2021-09-08 CVE-2021-1854 Incorrect Authorization vulnerability in Apple Ipados and Iphone OS
A call termination issue with was addressed with improved logic.
network
apple CWE-863
4.3
2021-09-08 CVE-2021-1857 Improper Initialization vulnerability in Apple products
A memory initialization issue was addressed with improved memory handling.
network
apple CWE-665
4.3
2021-09-08 CVE-2021-1858 Out-of-bounds Write vulnerability in Apple products
Processing a maliciously crafted image may lead to arbitrary code execution.
network
apple CWE-787
6.8
2021-09-08 CVE-2021-1860 Improper Initialization vulnerability in Apple products
A memory initialization issue was addressed with improved memory handling.
network
apple CWE-665
7.1
2021-09-08 CVE-2021-1862 Improper Authentication vulnerability in Apple Iphone OS
Description: A person with physical access may be able to access contacts.
local
low complexity
apple CWE-287
2.1
2021-09-08 CVE-2021-1863 Improper Authentication vulnerability in Apple Ipados and Iphone OS
An issue existed with authenticating the action triggered by an NFC tag.
local
low complexity
apple CWE-287
2.1
2021-09-08 CVE-2021-1864 Use After Free vulnerability in Apple products
A use after free issue was addressed with improved memory management.
network
low complexity
apple CWE-416
7.5
2021-09-08 CVE-2021-1865 Cleartext Storage of Sensitive Information vulnerability in Apple Ipados and Iphone OS
An issue obscuring passwords in screenshots was addressed with improved logic.
network
apple CWE-312
4.3