Apple Products AppleJPEG Vulnerability Leading to Memory Corruption and Application Crashes

Vulnerability

A vulnerability in the AppleJPEG component of various Apple operating systems, including watchOS 11.5, macOS Sonoma 14.7.6, tvOS 18.5, iPadOS 17.7.7, iOS 18.5, macOS Ventura 13.7.6, and visionOS 2.5, allows for processing of maliciously crafted media files. This can result in unexpected application termination or corruption of process memory. The issue stems from inadequate input sanitization, which has been addressed in the respective updates.

Impact

Exploitation of this vulnerability can lead to memory corruption, allowing for potential arbitrary code execution, and causing applications to crash unexpectedly.

Remediation

Users can update to the latest versions of watchOS, macOS, iPadOS, iOS, tvOS, or visionOS to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.