REDHAT-BUG-2357917: High severity Apple visionOS vulnerability

Published Apr 7, 2025
·
Updated

The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.4, tvOS 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, Safari 18.4. Processing maliciously crafted web content may lead to an unexpected Safari crash.

Affected Software

6 affected components
Apple visionOS<2.4
tvOS<18.4
Apple iOS, iPadOS, and macOS>=17.7.6<18.4
Apple iOS and iPadOS<18.4
macOS<15.4
Safari<18.4

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in visionOS 2.4
  2. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in tvOS 18.4
  3. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in iPadOS 17.7.6
  4. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in iOS 18.4
  5. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in iPadOS 18.4
  6. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in macOS Sequoia 15.4
  7. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in Safari 18.4

Event History

Apr 7, 2025
Data Sourced
via Red Hat·02:31 PM
DescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-2357917?

REDHAT-BUG-2357917 is categorized as a high severity vulnerability due to the potential for crashes from malicious web content.

2

How do I fix REDHAT-BUG-2357917?

To fix REDHAT-BUG-2357917, update your systems to the respective latest versions: visionOS 2.4, tvOS 18.4, iPadOS 17.7.6, iOS 18.4, macOS Sequoia 15.4, or Safari 18.4.

3

What products are affected by REDHAT-BUG-2357917?

REDHAT-BUG-2357917 affects Apple visionOS, tvOS, iPadOS, iOS, macOS Sequoia, and Safari in specific versions.

4

What happens if I don't address REDHAT-BUG-2357917?

If REDHAT-BUG-2357917 is not addressed, it may lead to unexpected crashes and instability when handling web content.

5

When was the issue related to REDHAT-BUG-2357917 fixed?

The issue related to REDHAT-BUG-2357917 was fixed in the updates released for the mentioned operating systems and Safari.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203