Vulnerabilities > Apple > Iphone OS

DATE CVE VULNERABILITY TITLE RISK
2019-08-14 CVE-2019-9506 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
The Bluetooth BR/EDR specification up to and including version 5.1 permits sufficiently low encryption key length and does not prevent an attacker from influencing the key length negotiation.
8.1
2019-07-01 CVE-2019-13118 Type Confusion vulnerability in multiple products
In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data.
5.3
2019-04-03 CVE-2018-4465 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS
A memory corruption issue was addressed with improved memory handling.
local
low complexity
apple CWE-119
7.8
2019-04-03 CVE-2018-4464 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
Multiple memory corruption issues were addressed with improved memory handling.
network
low complexity
apple CWE-119
8.8
2019-04-03 CVE-2018-4461 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
A memory corruption issue was addressed with improved input validation.
local
low complexity
apple CWE-119
7.8
2019-04-03 CVE-2018-4460 Improper Input Validation vulnerability in Apple products
A denial of service issue was addressed by removing the vulnerable code.
network
low complexity
apple CWE-20
6.5
2019-04-03 CVE-2018-4447 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
A memory corruption issue was addressed with improved state management.
local
low complexity
apple CWE-119
7.8
2019-04-03 CVE-2018-4446 Improper Input Validation vulnerability in Apple Iphone OS
This issue was addressed with improved entitlements.
local
low complexity
apple CWE-20
3.3
2019-04-03 CVE-2018-4445 Information Exposure vulnerability in Apple Iphone OS
"Clear History and Website Data" did not clear the history.
network
low complexity
apple CWE-200
4.3
2019-04-03 CVE-2018-4443 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
A memory corruption issue was addressed with improved memory handling.
network
low complexity
apple CWE-119
8.8