cbcvebase.
CVE-2024-54499
published 2025-01-27

CVE-2024-54499: A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, tvOS 18.2, visionOS…

PriorityP350high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.61%
45.3th percentile
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, tvOS 18.2, visionOS 2.2, watchOS 11.2. Processing a maliciously crafted image may lead to arbitrary code execution.

Affected

12 ranges
VendorProductVersion rangeFixed in
appleios18.2_and_ipados18.2
appleios_and_ipados< 18.218.2
appleipados< 18.218.2
appleiphone_os< 18.218.2
applemacos< 15.215.2
applemacos_sequoia
appletvos< 18.218.2
appletvos18.2
applevisionos< 2.22.2
applevisionos2.2
applewatchos< 11.211.2
applewatchos11.2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.