Apple iOS
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*
This vulnerability is being actively exploited in the wild.
A buffer overflow vulnerability has been identified in the ImageIO component of Apple iOS, iPadOS, and macOS. This vulnerability arises from improper memory handling when processing maliciously crafted images, potentially leading to arbitrary code execution. The issue has been addressed in multiple recent updates, including iOS 16.6.1, iPadOS 16.6.1, macOS Monterey 12.6.9, macOS Ventura 13.5.2, and macOS Big Sur 11.7.10. Apple is aware of reports suggesting that this vulnerability may have been actively exploited.
Exploitation of this vulnerability could result in a heap buffer overflow, allowing for out-of-bounds memory writes. Such memory corruption could be exploited to execute arbitrary code.
Users can update to iOS 16.6.1, iPadOS 16.6.1, macOS Monterey 12.6.9, macOS Ventura 13.5.2, or macOS Big Sur 11.7.10 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.