The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.2, tvOS 18.2, Safari 18.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2. Processing maliciously crafted web content may lead to memory corruption.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/121837 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/121839 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/121843 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/121844 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/121845 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/121846 | Release Notes Vendor Advisory |
| http://seclists.org/fulldisclosure/2025/Apr/5 |
Configurations
Configuration 1 (hide)
|
History
03 Nov 2025, 21:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
30 Jan 2025, 18:13
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Apple safari
Apple iphone Os Apple watchos Apple visionos Apple macos Apple tvos Apple ipados Apple |
|
| CWE | CWE-787 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
| CPE | cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
|
| Summary |
|
|
| References | () https://support.apple.com/en-us/121837 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/121839 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/121843 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/121844 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/121845 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/121846 - Release Notes, Vendor Advisory |
27 Jan 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-01-27 22:15
Updated : 2025-11-03 21:17
NVD link : CVE-2024-54543
Mitre link : CVE-2024-54543
CVE.ORG link : CVE-2024-54543
JSON object : View
Products Affected
apple
- tvos
- ipados
- safari
- macos
- watchos
- iphone_os
- visionos
CWE
CWE-787
Out-of-bounds Write
