An out-of-bounds write was addressed with improved input validation. This issue is fixed in iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3, visionOS 2.3. An attacker may be able to cause unexpected system termination or corrupt kernel memory.
The vulnerability is caused by an out-of-bounds write (CWE-787) due to insufficient input validation. An additional factor is the CWE-757 vulnerability, indicating the selection of a weaker or unsecured algorithm. An attacker can deliver specially crafted input data over the network without requiring privileges or user interaction, leading to writes in kernel memory areas of the system.
An attacker may cause unexpected and forced system shutdown (denial of service) or lead to kernel memory corruption, which potentially opens the door to further privilege escalation or device destabilization.
Devices should be updated as soon as possible to the following versions: iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3, or visionOS 2.3. Detailed instructions are available in Apple's official security bulletins at the addresses indicated in the references.
iOS and iPadOS prior to version 18.3, macOS Sequoia prior to version 15.3, macOS Sonoma prior to version 14.7.3, macOS Ventura prior to version 13.7.3, and visionOS prior to version 2.3.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:HApple iPadOS
OSApple< 18.3Apple iOS
OSApple< 18.3Apple macOS
OSApple< 13.7.314.0 – 14.7.3 (excl.)15.0 – 15.3 (excl.)Apple Visionos
OSApple< 2.3
Related vulnerabilities
Pominięcie uwierzytelniania w Screen Sharing na macOS
Type confusion w V8 (Google Chrome) — zdalne uszkodzenie sterty
Apple iOS/iPadOS/macOS — out-of-bounds write przy przetwarzaniu obrazu
Apple — memory corruption (RCE) w przetwarzaniu strumieni audio
Apple: Obejście Pointer Authentication w iOS, macOS i innych platformach