Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7h23-57pg-3hwc

Опубликовано: 28 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A use after free issue was addressed with improved memory management. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A malicious application may be able to elevate privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 17.2.

A use after free issue was addressed with improved memory management. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A malicious application may be able to elevate privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 17.2.

EPSS

Процентиль: 97%
0.1751
Средний

7.8 High

CVSS3

Дефекты

CWE-276
CWE-416

Связанные уязвимости

CVSS3: 10
nvd
больше 1 года назад

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.6, macOS Sequoia 15.3, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.3, visionOS 2.3, watchOS 11.3. A malicious application may be able to elevate privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 17.2.

CVSS3: 8.6
fstec
больше 1 года назад

Уязвимость компонента CoreMedia операционных систем visionOS, iOS, iPadOS, macOS, watchOS, tvOS, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 97%
0.1751
Средний

7.8 High

CVSS3

Дефекты

CWE-276
CWE-416