REDHAT-BUG-2344622: Command Injection
A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Copying a URL from Web Inspector may lead to command injection.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
macOS Sequoia (Safari/Web Inspector)to a version that resolves this vulnerability.Fixed in 15.3 - Upgrade
Upgrade
Safari (iOS/iPadOS/macOS)to a version that resolves this vulnerability.Fixed in 18.3
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2344622?
The severity of REDHAT-BUG-2344622 is classified as a privacy issue due to potential command injection risks when copying URLs from Web Inspector.
How do I fix REDHAT-BUG-2344622?
To fix REDHAT-BUG-2344622, ensure you are using macOS Sequoia 15.3, Safari 18.3, iOS 18.3, or iPadOS 18.3 or later.
What systems are affected by REDHAT-BUG-2344622?
The systems affected by REDHAT-BUG-2344622 include macOS Sequoia, Safari, iOS, and iPadOS prior to the respective versions mentioned.
Is there a workaround for REDHAT-BUG-2344622 before updating?
Currently, there are no specified workarounds for REDHAT-BUG-2344622 before updating to the patched versions.
What are the implications of REDHAT-BUG-2344622 for users?
The implications of REDHAT-BUG-2344622 for users include the risk of command injection, which could compromise the security of their devices.