Description
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, tvOS 18.3, visionOS 2.3, watchOS 11.3. An app may be able to cause unexpected system termination.
Published: 2025-05-19
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service via unexpected system termination
Action: Immediate Patch
AI Analysis

Impact

A memory handling flaw in Apple operating systems can be exploited by an application to provoke an unexpected system termination. The vulnerability creates a state where the operating system crashes, leading to a denial of service. The weakness involves improper cleanup or validation of system memory during application execution.

Affected Systems

The flaw affects Apple iOS 18.3, iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, tvOS 18.3, visionOS 2.3, and watchOS 11.3. All versions of iOS, iPadOS, macOS, tvOS, visionOS, and watchOS released before these patches are potentially vulnerable.

Risk and Exploitability

The CVSS score of 5.5 indicates moderate severity, while the EPSS score of less than 1% suggests a low probability of exploitation in the wild. The flaw is not listed in the CISA KEV catalog, further indicating limited exploitation activity so far. The likely attack vector is an application installed on the device, which may be malicious or poorly written, and can trigger the crash without requiring elevated privileges. Once exploited, the affected system becomes unavailable until restarted, impacting user productivity and potentially disrupting critical services.

Generated by OpenCVE AI on April 28, 2026 at 11:16 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update all Apple devices to the latest available releases: iOS 18.3, iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, tvOS 18.3, visionOS 2.3, and watchOS 11.3.
  • If a critical update cannot be applied immediately, identify and remove or block the application that triggers the crash until a patch is available.
  • Apply standard application sandboxing and permission restrictions to third‑party apps to limit the scope of potential crashes in future releases.

Generated by OpenCVE AI on April 28, 2026 at 11:16 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2025-15730 The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. An app may be able to cause unexpected system termination.
History

Tue, 28 Apr 2026 11:45:00 +0000

Type Values Removed Values Added
Title Memory Handling Issue Causing Unexpected System Termination in Apple Operating Systems

Thu, 02 Apr 2026 20:30:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. An app may be able to cause unexpected system termination. The issue was addressed with improved memory handling. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, tvOS 18.3, visionOS 2.3, watchOS 11.3. An app may be able to cause unexpected system termination.

Wed, 28 May 2025 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ipados
Apple iphone Os
Apple macos
Apple tvos
Apple visionos
Apple watchos
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
Vendors & Products Apple
Apple ipados
Apple iphone Os
Apple macos
Apple tvos
Apple visionos
Apple watchos

Mon, 19 May 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 19 May 2025 17:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


Mon, 19 May 2025 16:15:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. An app may be able to cause unexpected system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-04-02T18:26:17.849Z

Reserved: 2025-01-17T00:00:44.994Z

Link: CVE-2025-24184

cve-icon Vulnrichment

Updated: 2025-05-19T16:52:17.099Z

cve-icon NVD

Status : Modified

Published: 2025-05-19T16:15:28.220

Modified: 2026-04-02T19:19:15.033

Link: CVE-2025-24184

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-28T11:30:29Z

Weaknesses