An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in visionOS 2.4, iOS 18.4 and iPadOS 18.4, tvOS 18.4, macOS Sequoia 15.4. Processing a maliciously crafted font may result in the disclosure of process memory.
2025-03-31T23:15:17.277
2025-04-07T18:15:39.580
Analyzed
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | ipados | < 18.4 | Yes |
Operating System | apple | iphone_os | < 18.4 | Yes |
Operating System | apple | macos | < 15.4 | Yes |
Operating System | apple | visionos | < 2.4 | Yes |