REDHAT-BUG-2448780: High severity Apple Safari vulnerability
The issue was addressed with improved memory handling. This issue is fixed in Safari 18.6, watchOS 11.6, visionOS 2.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6. Processing maliciously crafted web content may lead to memory corruption.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Safari/WebKit (Apple platforms)to a version that resolves this vulnerability.Fixed in 18.6 - Upgrade
Upgrade
watchOSto a version that resolves this vulnerability.Fixed in 11.6 - Upgrade
Upgrade
visionOSto a version that resolves this vulnerability.Fixed in 2.6 - Upgrade
Upgrade
macOS Sequoiato a version that resolves this vulnerability.Fixed in 15.6 - Upgrade
Upgrade
tvOSto a version that resolves this vulnerability.Fixed in 18.6
Event History
Frequently Asked Questions
Which systems should be prioritized for updating?
Systems running Safari, watchOS, visionOS, iOS, iPadOS, macOS Sequoia, or tvOS should be prioritized if they are below the fixed releases: Safari 18.6, watchOS 11.6, visionOS 2.6, iOS and iPadOS 18.6, macOS Sequoia 15.6, or tvOS 18.6.
What does exploitation require?
An attacker needs a target to process maliciously crafted web content. Successful exploitation may cause memory corruption.