CVE-2025-31226 |
Description: A logic issue was addressed with improved checks. This issue is fixed in watchOS 11.5, tvOS 18.5, iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5. Processing a maliciously crafted image may lead to a denial-of-service.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31218 |
Description: This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.5. An app may be able to observe the hostnames of new network connections.
CVSS: MEDIUM (6.2) EPSS Score: 0.02%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31217 |
Description: The issue was addressed with improved input validation. This issue is fixed in watchOS 11.5, tvOS 18.5, iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
CVSS: MEDIUM (6.5) EPSS Score: 0.15%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31215 |
Description: The issue was addressed with improved checks. This issue is fixed in watchOS 11.5, tvOS 18.5, iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. Processing maliciously crafted web content may lead to an unexpected process crash.
CVSS: MEDIUM (6.5) EPSS Score: 0.15%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31212 |
Description: This issue was addressed through improved state management. This issue is fixed in watchOS 11.5, tvOS 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5. An app may be able to access sensitive user data.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31210 |
Description: The issue was addressed with improved UI. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5. Processing web content may lead to a denial-of-service.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31206 |
Description: A type confusion issue was addressed with improved state handling. This issue is fixed in watchOS 11.5, tvOS 18.5, iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. Processing maliciously crafted web content may lead to an unexpected Safari crash.
CVSS: MEDIUM (4.3) EPSS Score: 0.06%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31205 |
Description: The issue was addressed with improved checks. This issue is fixed in watchOS 11.5, tvOS 18.5, iOS 18.5 and iPadOS 18.5, macOS Sequoia 15.5, visionOS 2.5, Safari 18.5. A malicious website may exfiltrate data cross-origin.
CVSS: MEDIUM (6.5) EPSS Score: 0.02%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-31196 |
Description: An out-of-bounds read was addressed with improved input validation. This issue is fixed in iPadOS 17.7.7, macOS Ventura 13.7.6, macOS Sonoma 14.7.6. Processing a maliciously crafted file may lead to a denial-of-service or potentially disclose memory contents.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|
CVE-2025-30440 |
Description: The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.6, macOS Sequoia 15.5, macOS Sonoma 14.7.6. An app may be able to bypass ASLR.
CVSS: MEDIUM (5.5) EPSS Score: 0.01%
May 12th, 2025 (about 1 month ago)
|