Описание
A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2. An attacker with user privileges may be able to read kernel memory.
Ссылки
- Release NotesVendor Advisory
- Release NotesVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 18.2 (исключая)Версия до 18.2 (исключая)Версия до 15.2 (исключая)
Одно из
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
EPSS
Процентиль: 53%
0.00299
Низкий
5.5 Medium
CVSS3
9.1 Critical
CVSS3
Дефекты
CWE-843
CWE-125
Связанные уязвимости
CVSS3: 5.5
github
около 1 года назад
A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2. An attacker with user privileges may be able to read kernel memory.
EPSS
Процентиль: 53%
0.00299
Низкий
5.5 Medium
CVSS3
9.1 Critical
CVSS3
Дефекты
CWE-843
CWE-125