A buffer overflow issue was addressed with improved memory handling. This issue is fixed in tvOS 18.4, Safari 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. Processing maliciously crafted web content may lead to an unexpected process crash.
References
Configurations
Configuration 1 (hide)
|
History
03 Nov 2025, 21:19
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
03 Nov 2025, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
07 Apr 2025, 13:41
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Apple iphone Os
Apple Apple tvos Apple macos Apple ipados Apple safari |
|
| References | () https://support.apple.com/en-us/122371 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/122372 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/122373 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/122377 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/122379 - Vendor Advisory | |
| Summary |
|
|
| CPE | cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
01 Apr 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-120 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.0 |
31 Mar 2025, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-03-31 23:15
Updated : 2025-11-03 21:19
NVD link : CVE-2025-24209
Mitre link : CVE-2025-24209
CVE.ORG link : CVE-2025-24209
JSON object : View
Products Affected
apple
- safari
- iphone_os
- tvos
- macos
- ipados
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
