REDHAT-BUG-2448783: High severity Apple tvOS vulnerability
The issue was addressed with improved memory handling. This issue is fixed in tvOS 26.1, watchOS 26.1, macOS Tahoe 26.1, iOS 26.1 and iPadOS 26.1, Safari 26.1, iOS 18.7.2 and iPadOS 18.7.2, visionOS 26.1. Processing maliciously crafted web content may lead to memory corruption.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
tvOSto a version that resolves this vulnerability.Fixed in 26.1 - Upgrade
Upgrade
watchOSto a version that resolves this vulnerability.Fixed in 26.1 - Upgrade
Upgrade
macOS Tahoeto a version that resolves this vulnerability.Fixed in 26.1 - Upgrade
Upgrade
iOSto a version that resolves this vulnerability.Fixed in 26.1 - Upgrade
Upgrade
iPadOSto a version that resolves this vulnerability.Fixed in 26.1 - Upgrade
Upgrade
Safarito a version that resolves this vulnerability.Fixed in 26.1 - Upgrade
Upgrade
iOSto a version that resolves this vulnerability.Fixed in 18.7.2 - Upgrade
Upgrade
iPadOSto a version that resolves this vulnerability.Fixed in 18.7.2 - Upgrade
Upgrade
visionOSto a version that resolves this vulnerability.Fixed in 26.1
Event History
Frequently Asked Questions
Which systems need to be updated to address this issue?
The issue is fixed in tvOS 26.1, watchOS 26.1, macOS Tahoe 26.1, iOS 26.1, iPadOS 26.1, Safari 26.1, iOS 18.7.2, iPadOS 18.7.2, and visionOS 26.1. Systems running affected software should be updated to the listed fixed release applicable to that platform.
What does exploitation require?
An attacker would need a target to process maliciously crafted web content. The reported impact is memory corruption.