PT-2024-31018 · Apple+7 · Visionos+14

Gary Kwong

·

Published

2024-07-29

·

Updated

2025-11-25

·

CVE-2024-44185

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Safari versions prior to 17.6 tvOS versions prior to 17.6 visionOS versions prior to 1.3 watchOS versions prior to 10.6 iOS versions prior to 17.6 iPadOS versions prior to 17.6 macOS Sonoma versions prior to 14.6
Description The issue arises from processing maliciously crafted web content, which may lead to an unexpected process crash.
Recommendations For Safari version prior to 17.6, update to version 17.6 or later. For tvOS version prior to 17.6, update to version 17.6 or later. For visionOS version prior to 1.3, update to version 1.3 or later. For watchOS version prior to 10.6, update to version 10.6 or later. For iOS version prior to 17.6, update to version 17.6 or later. For iPadOS version prior to 17.6, update to version 17.6 or later. For macOS Sonoma version prior to 14.6, update to version 14.6 or later.

Fix

Access of Memory Location After End of Buffer

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:9553
ALSA-2024:9636
BDU:2025-04170
CESA-2024_9636
CVE-2024-44185
DLA-3961-1
DSA-5792-1
INFSA-2024_9553
INFSA-2024_9636
MGASA-2025-0313
OPENSUSE-SU-2024_4084-1
OPENSUSE-SU-2024_4117-1
OPENSUSE-SU-2025_0043-1
OPENSUSE-SU-2025_0096-1
RHSA-2024:8180
RHSA-2024:9553
RHSA-2024:9636
RHSA-2024:9637
RHSA-2024:9638
RHSA-2024:9646
RHSA-2024:9653
RHSA-2024:9679
RHSA-2024:9680
RHSA-2024_8180
RHSA-2024_9553
RHSA-2024_9636
RHSA-2025:10364
RLSA-2024:9636
SUSE-SU-2024:4084-1
SUSE-SU-2024:4117-1
SUSE-SU-2024:4167-1
SUSE-SU-2025:0043-1
SUSE-SU-2025:0096-1
SUSE-SU-2025:0104-1
SUSE-SU-2025:02088-1
SUSE-SU-2025_02088-1

Affected Products

Almalinux
Astra Linux
Centos
Debian
Apple Macos
Red Hat
Rocky Linux
Safari
Suse
Ios
Ipados
Macos Sonoma
Tvos
Visionos
Watchos