Filtered by vendor Apple Subscriptions
Filtered by product Iphone Os Subscriptions
Total 4046 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-40853 1 Apple 2 Ipados, Iphone Os 2024-10-30 5.9 Medium
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18 and iPadOS 18. An attacker may be able to use Siri to enable Auto-Answer Calls.
CVE-2024-44297 1 Apple 6 Ipad Os, Iphone Os, Macos and 3 more 2024-10-30 6.5 Medium
The issue was addressed with improved bounds checks. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, visionOS 2.1. Processing a maliciously crafted message may lead to a denial-of-service.
CVE-2024-40851 1 Apple 2 Ipados, Iphone Os 2024-10-30 2.4 Low
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18.1 and iPadOS 18.1. An attacker with physical access may be able to access contact photos from the lock screen.
CVE-2024-44144 1 Apple 5 Ipados, Iphone Os, Macos and 2 more 2024-10-29 5.5 Medium
A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1, tvOS 18, watchOS 11, visionOS 2, iOS 18 and iPadOS 18. Processing a maliciously crafted file may lead to unexpected app termination.
CVE-2024-7533 2 Apple, Google 2 Iphone Os, Chrome 2024-08-12 8.8 High
Use after free in Sharing in Google Chrome on iOS prior to 127.0.6533.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-6988 2 Apple, Google 2 Iphone Os, Chrome 2024-08-07 8.8 High
Use after free in Downloads in Google Chrome on iOS prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)