- Description
- A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 16.6.1 and iPadOS 16.6.1, macOS Monterey 12.6.9, macOS Ventura 13.5.2, iOS 15.7.9 and iPadOS 15.7.9, macOS Big Sur 11.7.10. Processing a maliciously crafted image may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.
- Source
- product-security@apple.com
- NVD status
- Analyzed
- Products
- ipados, iphone_os, macos
CVSS 3.1
- Type
- Primary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Severity
- HIGH
Data from CISA
- Vulnerability name
- Apple iOS, iPadOS, and macOS ImageIO Buffer Overflow Vulnerability
- Exploit added on
- Sep 11, 2023
- Exploit action due
- Oct 2, 2023
- Required action
- Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
- Hype score
- Not currently trending
Top 5 Trending CVEs: 1 - CVE-2022-40769 2 - CVE-2025-5777 3 - CVE-2025-8088 4 - CVE-2023-41064 5 - CVE-2026-21643 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W
@CVEShield
5 Apr 2026
256 Impressions
0 Retweets
2 Likes
0 Bookmarks
0 Replies
0 Quotes
Top 5 Trending CVEs: 1 - CVE-2025-33217 2 - CVE-2023-41064 3 - CVE-2026-24423 4 - CVE-2026-1281 5 - CVE-2024-12084 #cve #cvetrends #cveshield #cybersecurity https://t.co/4Fua3CAN6W
@CVEShield
31 Jan 2026
127 Impressions
0 Retweets
1 Like
1 Bookmark
0 Replies
0 Quotes
2023年9月,苹果公司发布相关的紧急安全更新,警告已有“频繁的外部攻击报告”,敦促苹果公司的用户尽快安装。这条警告涉及的就是上述提到的iPhone上危险程度最高级别的在野漏洞利用-iMessage 0-Click(零点击/
@Kevin2600
19 Oct 2025
2855 Impressions
0 Retweets
12 Likes
3 Bookmarks
1 Reply
0 Quotes
Android Zero-Click Exploit! The libwebp vulnerability (CVE-2023-41064) allows attackers to hijack devices via SMS—no user interaction needed! https://t.co/lhlwdTElmO @three_cube https://t.co/O405wkCxLJ
@_aircorridor
18 Mar 2025
31 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*",
"matchCriteriaId": "705D9EAA-AD66-4C0A-A80B-1506EF3F7BBC",
"versionEndExcluding": "15.7.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*",
"matchCriteriaId": "73B55022-11DB-46AC-892A-8518C59CCCBD",
"versionEndExcluding": "16.6.1",
"versionStartIncluding": "16.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*",
"matchCriteriaId": "2CFC9457-0304-466D-9FCB-B4B4210C890E",
"versionEndExcluding": "15.7.9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*",
"matchCriteriaId": "E8656DD3-C01A-404D-97B1-B2BB0361963F",
"versionEndExcluding": "16.6.1",
"versionStartIncluding": "16.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*",
"matchCriteriaId": "6D3C7EAA-5A53-49CB-A013-A407497A7A5B",
"versionEndExcluding": "11.7.10",
"versionStartIncluding": "11.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*",
"matchCriteriaId": "ED23D43D-834D-4BD1-9FCD-D1709E7F6DC9",
"versionEndExcluding": "12.6.9",
"versionStartIncluding": "12.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*",
"matchCriteriaId": "5D9227AB-A342-45FA-8969-0A84C6DDD11E",
"versionEndExcluding": "13.5.2",
"versionStartIncluding": "13.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]