REDHAT-BUG-2357919: Use After Free
A use-after-free issue was addressed with improved memory management. This issue is fixed in visionOS 2.4, tvOS 18.4, iPadOS 17.7.6, iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, Safari 18.4. Processing maliciously crafted web content may lead to an unexpected Safari crash.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 2.4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 18.4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 17.7.6 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.4
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2357919?
The severity of REDHAT-BUG-2357919 is categorized as a critical use-after-free vulnerability.
How do I fix REDHAT-BUG-2357919?
To fix REDHAT-BUG-2357919, update to the latest patched version of the affected software including visionOS 2.4, tvOS 18.4, iPadOS and iOS 18.4, macOS Sequoia 15.4, or Safari 18.4.
What are the affected versions in REDHAT-BUG-2357919?
Affected versions in REDHAT-BUG-2357919 include visionOS versions prior to 2.4, tvOS versions prior to 18.4, iPadOS versions from 17.7.6 up to 18.4, iOS versions prior to 18.4, macOS Sequoia versions prior to 15.4, and Safari versions prior to 18.4.
What vulnerabilities are associated with REDHAT-BUG-2357919?
REDHAT-BUG-2357919 is associated with a use-after-free vulnerability that may lead to an unexpected crash of the Safari browser.
What should I do if I cannot update my software for REDHAT-BUG-2357919?
If you are unable to update your software for REDHAT-BUG-2357919, consider minimizing your exposure by avoiding the use of Safari and other affected applications until a solution is implemented.