Description
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, macOS Sonoma 14.7.3, tvOS 18.3, visionOS 2.3. An attacker on the local network may corrupt process memory.
Published: 2025-01-27
Score: 8 High
EPSS: < 1% Very Low
KEV: No
Impact: process memory corruption potentially leading to arbitrary code execution
Action: Patch
AI Analysis

Impact

The vulnerability is a type confusion error that could allow a local network attacker to corrupt a process’s memory, potentially leading to arbitrary code execution or privilege escalation. The issue was made more robust with additional runtime checks, but memory corruption remains possible until the fix is applied.

Affected Systems

Apple iOS and iPadOS are affected, with the issue fixed in iOS 18.3 and iPadOS 18.3. iPadOS 17.7.4 is also patched. macOS Sequoia requires update to 15.3, macOS Sonoma to 14.7.3, tvOS to 18.3, and visionOS to 2.3. These versions must be installed for the vulnerability to be mitigated; devices running earlier releases remain vulnerable.

Risk and Exploitability

The CVSS base score of 8 signals a high severity, and the EPSS score of less than 1% indicates a low probability of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog, but the potential for memory corruption means that an attacker with local network access could compromise system integrity. The attack vector is inferred as local network access since the description specifies an attacker on the local network and no remote execution path is described.

Generated by OpenCVE AI on April 28, 2026 at 22:50 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the operating system updates specified for each Apple platform: iOS 18.3, iPadOS 18.3 or 17.7.4, macOS Sequoia 15.3, macOS Sonoma 14.7.3, tvOS 18.3, and visionOS 2.3.
  • Configure device firewall or security settings to restrict local network access to vulnerable services, limiting exposure to untrusted networks.
  • Segment the local network to isolate Apple devices from untrusted or potentially compromised segments, reducing the risk of a local attacker reaching the affected systems.

Generated by OpenCVE AI on April 28, 2026 at 22:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2025-3645 A type confusion issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A remote attacker may cause an unexpected application termination or arbitrary code execution.
History

Tue, 28 Apr 2026 23:15:00 +0000

Type Values Removed Values Added
Title Type Confusion Issue Enabling Local Network Process Memory Corruption on Apple OS

Thu, 02 Apr 2026 20:30:00 +0000

Type Values Removed Values Added
Description A type confusion issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A remote attacker may cause an unexpected application termination or arbitrary code execution. A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, macOS Sonoma 14.7.3, tvOS 18.3, visionOS 2.3. An attacker on the local network may corrupt process memory.
References

Mon, 03 Nov 2025 21:30:00 +0000


Mon, 24 Mar 2025 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ipados
Apple iphone Os
Apple macos
Apple tvos
Apple visionos
Apple watchos
CPEs cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
Vendors & Products Apple
Apple ipados
Apple iphone Os
Apple macos
Apple tvos
Apple visionos
Apple watchos

Tue, 28 Jan 2025 20:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-843
Metrics cvssV3_1

{'score': 8, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 27 Jan 2025 22:00:00 +0000

Type Values Removed Values Added
Description A type confusion issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A remote attacker may cause an unexpected application termination or arbitrary code execution.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-04-02T18:19:16.713Z

Reserved: 2025-01-17T00:00:44.974Z

Link: CVE-2025-24137

cve-icon Vulnrichment

Updated: 2025-11-03T21:03:32.504Z

cve-icon NVD

Status : Modified

Published: 2025-01-27T22:15:18.433

Modified: 2026-04-02T19:19:05.673

Link: CVE-2025-24137

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-28T23:00:13Z

Weaknesses