AirDrop. A permissions issue was addressed with additional restrictions.
Accessibility. A logging issue was addressed with improved data redaction.
A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.6, macOS Sequoia 15.3, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.3, visionOS 2.3. An attacker on the local network may be able to cause a denial-of-service.
Accessibility. A logging issue was addressed with improved data redaction.
The issue was addressed with improved access restrictions to the file system. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3, visionOS 2.3. A maliciously crafted webpage may be able to fingerprint the user.
A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Copying a URL from Web Inspector may lead to command injection.
A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4. Loading a malicious iframe may lead to a cross-site scripting attack.
A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 18.4, iOS 18.4 and iPadOS 18.4. Loading a malicious iframe may lead to a cross-site scripting attack.
Malicious websites utilizing a server-side redirect to an internal error page could result in a spoofed website URL
Websites redirecting to a non-HTTP scheme URL could allow a website address to be spoofed for a malicious page
Scanning certain QR codes that included text with a website URL could allow the URL to be opened without presenting the user with a confirmation alert first
Accessibility. An authorization issue was addressed with improved state management.
Reset Services. The issue was addressed with improved authentication.
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. An app with root privileges may be able to execute arbitrary code with kernel privileges.
Accelerate Framework. A memory consumption issue was addressed with improved memory handling.
A race condition was addressed with improved locking. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. An app with root privileges may be able to execute arbitrary code with kernel privileges.
A race condition was addressed with improved locking. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. An app with root privileges may be able to execute arbitrary code with kernel privileges.
Accelerate Framework. A memory consumption issue was addressed with improved memory handling.
Accelerate Framework. A memory consumption issue was addressed with improved memory handling.
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, iOS 16, iOS 15.7 and iPadOS 15.7, macOS Monterey 12.6. A user may be able to view restricted content from the lock screen.
Mail Attachments. An issue existed in the selection of video file by Mail. The issue was fixed by selecting the latest version of a video.
Safari. The issue was addressed by clearing website permission prompts after navigation.
Bluetooth. A logic issue was addressed with improved state management.
Messages Composition. The issue was addressed with improved deletion.
Web App. A logic issue was addressed with improved restrictions.
Screenshots. An issued existed in the naming of screenshots. The issue was corrected with improved naming.
FaceTime. An issue existed in the handling of the local user's self-view. The issue was corrected with improved logic.
Safari Login AutoFill. The issue was addressed with improved UI handling.
WebKit. An inconsistent user interface issue was addressed through improved state management.
WebKit. A validation issue existed in element handling. This issue was addressed through improved validation.