The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.1 and iPadOS 18.1. An attacker may be able to cause unexpected system termination or arbitrary code execution in DCP firmware.
CVE ID: CVE-2024-44242
CVSS Base Severity: LOW
CVSS Base Score: 0.0
Vendor: Apple
Product: iOS and iPadOS
EPSS Score: 0.09% (probability of being exploited)
EPSS Percentile: 40.72% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)