<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Apple iPad (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/ipad.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/ipad-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Apple iPad (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:03 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2025-65882 – An issue was discovered in openmptcprouter thru 0.64 in file common/package/util...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65882</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65882</guid>
    <pubDate>Tue, 09 Dec 2025 19:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-65882</strong></p>
  <p>An issue was discovered in openmptcprouter thru 0.64 in file common/package/utils/sys-upgrade-helper/src/tools/sysupgrade.c in function create_xor_ipad_opad allowing attackers to potentially write arbitrary files or execute arbitrary commands.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65882">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61836 – Illustrator on iPad versions 3.0.9 and earlier are affected by an Integer Underf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61836</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61836</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61836</strong></p>
  <p>Illustrator on iPad versions 3.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-191</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61836">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61829 – Illustrator on iPad versions 3.0.9 and earlier are affected by a Heap-based Buff...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61829</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61829</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61829</strong></p>
  <p>Illustrator on iPad versions 3.0.9 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61829">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61828 – Illustrator on iPad versions 3.0.9 and earlier are affected by an out-of-bounds ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61828</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61828</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61828</strong></p>
  <p>Illustrator on iPad versions 3.0.9 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61828">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61827 – Illustrator on iPad versions 3.0.9 and earlier are affected by a Heap-based Buff...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61827</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61827</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61827</strong></p>
  <p>Illustrator on iPad versions 3.0.9 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61827">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61826 – Illustrator on iPad versions 3.0.9 and earlier are affected by an Integer Underf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61826</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61826</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61826</strong></p>
  <p>Illustrator on iPad versions 3.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-191</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61826">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21134 – Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21134</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21134</guid>
    <pubDate>Tue, 14 Jan 2025 19:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21134</strong></p>
  <p>Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-191</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21134">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21133 – Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21133</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21133</guid>
    <pubDate>Tue, 14 Jan 2025 19:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21133</strong></p>
  <p>Illustrator on iPad versions 3.0.7 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-191</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21133">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-43264 – Arobas Music Guitar Pro for iPad and iPhone before v1.10.2 allows attackers to p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-43264</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-43264</guid>
    <pubDate>Wed, 16 Nov 2022 15:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-43264</strong></p>
  <p>Arobas Music Guitar Pro for iPad and iPhone before v1.10.2 allows attackers to perform directory traversal and download arbitrary files via a crafted web request.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-43264">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-34409 – It was discovered that the installation packages of the Zoom Client for Meetings...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-34409</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-34409</guid>
    <pubDate>Mon, 27 Sep 2021 14:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-34409</strong></p>
  <p>It was discovered that the installation packages of the Zoom Client for Meetings for MacOS (Standard and for IT Admin) installation before version 5.2.0, Zoom Client Plugin for Sharing iPhone/iPad before version 5.2.0, and Zoom Rooms for Conference before version 5.1.0, copy pre- and post- installation shell scripts to a user-writable directory. In the affected products listed below, a malicious…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-34409">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-8248 – A buffer overflow may occur in the processing of a downlink NAS message in Qualc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-8248</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-8248</guid>
    <pubDate>Wed, 16 Aug 2017 15:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-8248</strong></p>
  <p>A buffer overflow may occur in the processing of a downlink NAS message in Qualcomm Telephony as used in Apple iPhone 5 and later, iPad 4th generation and later, iPod touch 6th generation.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-8248">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2010-1797 – Multiple stack-based buffer overflows in the cff_decoder_parse_charstrings funct...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-1797</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-1797</guid>
    <pubDate>Mon, 16 Aug 2010 18:39:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2010-1797</strong></p>
  <p>Multiple stack-based buffer overflows in the cff_decoder_parse_charstrings function in the CFF Type2 CharStrings interpreter in cff/cffgload.c in FreeType before 2.4.2, as used in Apple iOS before 4.0.2 on the iPhone and iPod touch and before 3.2.2 on the iPad, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted CFF opcodes in embedded fon…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-1797">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
