CWE
77
Advisory Published
Updated

REDHAT-BUG-2344622: Command Injection

First published: Mon Feb 10 2025(Updated: )

A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Copying a URL from Web Inspector may lead to command injection.

Affected SoftwareAffected VersionHow to fix
macOS<15.3
Apple Mobile Safari<18.3
Apple iOS, iPadOS, and watchOS<18.3
Apple iOS, iPadOS, and watchOS<18.3

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of REDHAT-BUG-2344622?

    The severity of REDHAT-BUG-2344622 is classified as a privacy issue due to potential command injection risks when copying URLs from Web Inspector.

  • How do I fix REDHAT-BUG-2344622?

    To fix REDHAT-BUG-2344622, ensure you are using macOS Sequoia 15.3, Safari 18.3, iOS 18.3, or iPadOS 18.3 or later.

  • What systems are affected by REDHAT-BUG-2344622?

    The systems affected by REDHAT-BUG-2344622 include macOS Sequoia, Safari, iOS, and iPadOS prior to the respective versions mentioned.

  • Is there a workaround for REDHAT-BUG-2344622 before updating?

    Currently, there are no specified workarounds for REDHAT-BUG-2344622 before updating to the patched versions.

  • What are the implications of REDHAT-BUG-2344622 for users?

    The implications of REDHAT-BUG-2344622 for users include the risk of command injection, which could compromise the security of their devices.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203