|
1431
|
7.1
3.6
|
HIGH
Local
|
A lock screen issue allowed access to the share function on a locked device. This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 12.1.1. A local att…
|
NVD-CWE-noinfo
|
CVE-2018-4428
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
12.1.1
|
2024-11-21 13:07
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1432
|
5.5
4.3
|
MEDIUM
Local
|
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, and Security Update 2017-004 El C…
|
NVD-CWE-noinfo
|
CVE-2018-4391
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
12.1
|
2024-11-21 13:07
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1433
|
5.5
4.3
|
MEDIUM
Local
|
An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, and Security Update 2017-004 El C…
|
NVD-CWE-noinfo
|
CVE-2018-4390
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
12.1
|
2024-11-21 13:07
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1434
|
5.5
4.3
|
MEDIUM
Local
|
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in tvOS 12.1, iOS 12.1. Processing a maliciously crafted message may lead to a denial of service.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2018-4381
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
12.1
|
2024-11-21 13:07
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1435
|
5.5
2.1
|
MEDIUM
Local
|
This issue was addressed with a new entitlement. This issue is fixed in iOS 12.1. A local user may be able to read a persistent device identifier.
|
NVD-CWE-noinfo
|
CVE-2018-4339
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
12.1
|
2024-11-21 13:07
2020-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1436
|
7.1
5.8
|
HIGH
Local
|
A path handling issue was addressed with improved validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able …
|
NVD-CWE-noinfo
|
CVE-2020-9994
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.5
|
2024-11-21 14:41
2020-10-23
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1437
|
7.8
6.8
|
HIGH
Local
|
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. Processing a maliciously crafted USD file …
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-9985
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-23
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1438
|
7.8
6.8
|
HIGH
Local
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8, iTunes 12.10.8 for Windows, iC…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-9984
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-23
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1439
|
7.8
6.8
|
HIGH
Local
|
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. Processing a maliciously…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9980
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-23
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1440
|
7.8
6.8
|
HIGH
Local
|
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. Processing a maliciously crafted USD file ma…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-9940
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
13.6
|
2024-11-21 14:41
2020-10-23
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|