Aller au contenu
Appaloosa Scout

iPadOS

iPadOS 16.7.8

Advisory officiel

24 CVE corrigées par cette release.

Date de sortie
2024-05-13
Fin de support
2025-03-31 EOL
CVE corrigées
24
KEV CISA
1
Critique
0
Élevé
0
En attente NVD
24

CVE corrigées

CVE Sévérité
CVE-2024-23296
KEV

[Apple RTKit] An attacker with arbitrary kernel read and write capability may be able to bypass kernel memory protectio…

N/A
CVE-2024-23251

[Apple Mail] An attacker with physical access may be able to leak Mail account credentials

N/A
CVE-2024-23282

[Apple Mail] A maliciously crafted email may be able to initiate FaceTime calls without user authorization

N/A
CVE-2024-27789

[Apple Foundation] An app may be able to access user-sensitive data

N/A
CVE-2024-27796

[Apple AVEVideoEncoder] A user may be able to elevate privileges

N/A
CVE-2024-27799

[Apple AVEVideoEncoder] An unprivileged app may be able to log keystrokes in other apps including those using secure in…

N/A
CVE-2024-27800

[Apple AVEVideoEncoder] Processing a maliciously crafted message may lead to a denial-of-service

N/A
CVE-2024-27802

[Apple AVEVideoEncoder] Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code …

N/A
CVE-2024-27805

[Apple AVEVideoEncoder] An app may be able to access sensitive user data

N/A
CVE-2024-27806

[Apple AVEVideoEncoder] An app may be able to access sensitive user data

N/A
CVE-2024-27807

[Apple Symptom Framework] An app may be able to circumvent App Privacy Report logging

N/A
CVE-2024-27817

[Apple AVEVideoEncoder] An app may be able to execute arbitrary code with kernel privileges

N/A
CVE-2024-27818

[Apple Kernel] An attacker may be able to cause unexpected app termination or arbitrary code execution

N/A
CVE-2024-27820

[Apple WebKit Web Inspector] Processing web content may lead to arbitrary code execution

N/A
CVE-2024-27823

[Apple AVEVideoEncoder] An attacker in a privileged network position may be able to spoof network packets

N/A
CVE-2024-27831

[Apple AVEVideoEncoder] Processing a file may lead to unexpected app termination or arbitrary code execution

N/A
CVE-2024-27833

[Apple WebKit] Processing maliciously crafted web content may lead to arbitrary code execution

N/A
CVE-2024-27834

[Apple WebKit] An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication

N/A
CVE-2024-27838

[Apple WebKit] A maliciously crafted webpage may be able to fingerprint the user

N/A
CVE-2024-27840

[Apple AVEVideoEncoder] An attacker that has already achieved kernel code execution may be able to bypass kernel memory…

N/A
CVE-2024-27847

[Apple AVEVideoEncoder] An app may be able to bypass Privacy preferences

N/A
CVE-2024-27855

[Apple AVEVideoEncoder] A shortcut may be able to use sensitive data with certain actions without prompting the user

N/A
CVE-2024-27856

[Apple WebKit] Processing a file may lead to unexpected app termination or arbitrary code execution

N/A
CVE-2024-40771

[Apple AVEVideoEncoder] An app may be able to execute arbitrary code with kernel privileges

N/A