PT-2025-3039 · Apple · Apple Macos+4

Var10Ck

+1

·

Published

2024-12-11

·

Updated

2025-01-27

·

CVE-2024-54518

CVSS v3.1

5.3

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions macOS versions prior to 15.2 watchOS versions prior to 11.2 tvOS versions prior to 18.2 iOS versions prior to 18.2 iPadOS versions prior to 18.2
Description The issue is related to a memory reading problem beyond the allowed range in the IOMobileFrameBuffer component of MacOs, tvOS, watchOS, iPadOS, and iOS operating systems. This may allow an attacker to compromise data integrity. An app may be able to corrupt coprocessor memory.
Recommendations For macOS versions prior to 15.2, update to macOS Sequoia 15.2 to resolve the issue. For watchOS versions prior to 11.2, update to watchOS 11.2 to resolve the issue. For tvOS versions prior to 18.2, update to tvOS 18.2 to resolve the issue. For iOS versions prior to 18.2, update to iOS 18.2 to resolve the issue. For iPadOS versions prior to 18.2, update to iPadOS 18.2 to resolve the issue.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2025-01490
CVE-2024-54518

Affected Products

Apple Macos
Ios
Ipados
Tvos
Watchos