Apple

iPhone OS

3915 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 18.09.2016 22:59:09
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Mail in Apple iOS before 10 mishandles certificates, which makes it easier for man-in-the-middle attackers to discover mail credentials via unspecified vectors.

  • EPSS 0.46%
  • Veröffentlicht 18.09.2016 22:59:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Keyboards component in Apple iOS before 10 does not properly use a cache for auto-correct suggestions, which allows remote attackers to obtain sensitive information in opportunistic circumstances by leveraging an unintended correction.

  • EPSS 0.07%
  • Veröffentlicht 18.09.2016 22:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Apple iOS before 10, when Handoff for Messages is used, does not ensure that a Messages signin has occurred before displaying messages, which might allow attackers to obtain sensitive information via unspecified vectors.

  • EPSS 0.67%
  • Veröffentlicht 18.09.2016 22:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Assets component in Apple iOS before 10 allows man-in-the-middle attackers to block software updates via vectors related to lack of an HTTPS session for retrieving updates.

  • EPSS 0.23%
  • Veröffentlicht 18.09.2016 22:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The GeoServices component in Apple iOS before 10 and watchOS before 3 does not properly restrict access to PlaceData information, which allows attackers to discover physical locations via a crafted application.

  • EPSS 0.26%
  • Veröffentlicht 18.09.2016 22:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Sandbox Profiles component in Apple iOS before 10 does not properly restrict access to directory metadata for SMS draft directories, which allows attackers to discover text-message recipients via a crafted app.

Warnung Exploit
  • EPSS 77.13%
  • Veröffentlicht 25.08.2016 21:59:02
  • Zuletzt bearbeitet 22.10.2025 00:15:53

WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.

Warnung Exploit
  • EPSS 66.74%
  • Veröffentlicht 25.08.2016 21:59:01
  • Zuletzt bearbeitet 22.10.2025 00:15:53

The kernel in Apple iOS before 9.3.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

Warnung Exploit
  • EPSS 81.71%
  • Veröffentlicht 25.08.2016 21:59:00
  • Zuletzt bearbeitet 22.10.2025 00:15:53

The kernel in Apple iOS before 9.3.5 allows attackers to obtain sensitive information from memory via a crafted app.

  • EPSS 0.49%
  • Veröffentlicht 18.08.2016 19:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

IOMobileFrameBuffer in Apple iOS before 9.3.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.