Aller au contenu
Appaloosa Scout

iPadOS

62 CVE corrigées par cette release.

Date de sortie
2025-11-03
Fin de support
CVE corrigées
62
KEV CISA
2
Critique
0
Élevé
0
En attente NVD
61

CVE corrigées

CVE Sévérité
CVE-2025-43510
KEV

[Apple Kernel] A malicious application may cause unexpected changes in memory shared between processes

N/A
CVE-2025-43520
KEV

[Apple Kernel] A malicious application may be able to cause unexpected system termination or write kernel memory

N/A
CVE-2025-46316

An out-of-bounds read was addressed with improved input validation. This issue is fixed in Pages 15.1, iOS 26.1 and iPa…

MEDIUM 4.3
CVE-2025-43383

[Apple Model I/O] Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process…

N/A
CVE-2025-43384

[Apple Model I/O] Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process…

N/A
CVE-2025-43385

[Apple Model I/O] Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process…

N/A
CVE-2025-43386

[Apple Model I/O] Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process…

N/A
CVE-2025-43389

[Apple Notes] An app may be able to access sensitive user data

N/A
CVE-2025-43392

[Apple WebKit Canvas] A website may exfiltrate image data cross-origin

N/A
CVE-2025-43398

[Apple Kernel] An app may be able to cause unexpected system termination

N/A
CVE-2025-43418

[Apple Spotlight] An attacker with physical access to a locked device may be able to view sensitive user information

N/A
CVE-2025-43423

[Apple Audio] An attacker with physical access to an unlocked device paired with a Mac may be able to view sensitive us…

N/A
CVE-2025-43429

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43431

[Apple WebKit] Processing maliciously crafted web content may lead to memory corruption

N/A
CVE-2025-43433

[Apple WebKit] Processing maliciously crafted web content may lead to memory corruption

N/A
CVE-2025-43434

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected Safari crash

N/A
CVE-2025-43435

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43438

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected Safari crash

N/A
CVE-2025-43439

[Apple On-device Intelligence] An app may be able to fingerprint the user

N/A
CVE-2025-43441

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43442

[Apple Accessibility] An app may be able to identify what other apps a user has installed

N/A
CVE-2025-43443

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43444

[Apple Installer] An app may be able to fingerprint the user

N/A
CVE-2025-43445

[Apple CoreText] Processing a maliciously crafted media file may lead to unexpected app termination or corrupt process …

N/A
CVE-2025-43448

[Apple CloudKit] An app may be able to break out of its sandbox

N/A
CVE-2025-43450

[Apple Camera] An app may be able to learn information about the current camera view before being granted camera access

N/A
CVE-2025-43454

[Apple Siri] A device may persistently fail to lock

N/A
CVE-2025-43458

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43493

[Apple Safari] Visiting a malicious website may lead to address bar spoofing

N/A
CVE-2025-43494

[Apple Mail] An attacker may be able to cause a persistent denial-of-service

N/A
CVE-2025-43495

[Apple WebKit] An app may be able to monitor keystrokes without user permission

N/A
CVE-2025-43496

[Apple Mail] Remote content may be loaded even when the 'Load Remote Images' setting is turned off

N/A
CVE-2025-43503

[Apple Safari] Visiting a malicious website may lead to user interface spoofing

N/A
CVE-2025-43507

[Apple Find My] An app may be able to fingerprint the user

N/A
CVE-2025-43294

[Apple MallocStackLogging] An app may be able to access sensitive user data

N/A
CVE-2025-43350

[Apple Control Center] An attacker may be able to view restricted content from the lock screen

N/A
CVE-2025-43379

[Apple AppleMobileFileIntegrity] An app may be able to access protected user data

N/A
CVE-2025-43391

[Apple Photos] An app may be able to access sensitive user data

N/A
CVE-2025-43407

[Apple Assets] An app may be able to break out of its sandbox

N/A
CVE-2025-43413

[Apple libxpc] A sandboxed app may be able to observe system-wide network connections

N/A
CVE-2025-43421

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43422

[Apple Stolen Device Protection] An attacker with physical access to a device may be able to disable Stolen Device Prot…

N/A
CVE-2025-43424

[Apple Multi-Touch] A malicious HID device may cause an unexpected process crash

N/A
CVE-2025-43425

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43426

[Apple Contacts] An app may be able to access sensitive user data

N/A
CVE-2025-43427

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43430

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43432

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43436

[Apple CoreServices] An app may be able to enumerate a user's installed apps

N/A
CVE-2025-43437

[Apple Managed Configuration] An app may be able to fingerprint the user

N/A
CVE-2025-43440

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected process crash

N/A
CVE-2025-43447

[Apple Apple Neural Engine] An app may be able to cause unexpected system termination or corrupt kernel memory

N/A
CVE-2025-43449

[Apple Apple TV Remote] A malicious app may be able to track users between installs

N/A
CVE-2025-43452

[Apple Text Input] Keyboard suggestions may display sensitive information on the lock screen

N/A
CVE-2025-43455

[Apple Apple Account] A malicious app may be able to take a screenshot of sensitive information in embedded views

N/A
CVE-2025-43457

[Apple WebKit] Processing maliciously crafted web content may lead to an unexpected Safari crash

N/A
CVE-2025-43460

[Apple Status Bar] An attacker with physical access to a locked device may be able to view sensitive user information

N/A
CVE-2025-43462

[Apple Apple Neural Engine] An app may be able to cause unexpected system termination or corrupt kernel memory

N/A
CVE-2025-43480

[Apple WebKit] A malicious website may exfiltrate data cross-origin

N/A
CVE-2025-43498

[Apple FileProvider] An app may be able to access sensitive user data

N/A
CVE-2025-43500

[Apple Sandbox Profiles] An app may be able to access sensitive user data

N/A
CVE-2025-43502

[Apple Safari] An app may be able to bypass certain Privacy preferences

N/A