CVE Vulnerabilities

CVE-2025-24179

NULL Pointer Dereference

Published: Apr 29, 2025 | Modified: Apr 30, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 18.3 and iPadOS 18.3, visionOS 2.3, macOS Ventura 13.7.5, iPadOS 17.7.6, macOS Sonoma 14.7.5, macOS Sequoia 15.3, tvOS 18.3. An attacker on the local network may be able to cause a denial-of-service.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
IpadosApple*17.7.6 (excluding)
IpadosApple18.0 (including)18.3 (excluding)
Iphone_osApple*18.3 (excluding)
MacosApple*13.7.5 (excluding)
MacosApple14.0 (including)14.7.5 (excluding)
MacosApple15.0 (including)15.3 (excluding)
TvosApple*18.3 (excluding)
VisionosApple*2.3 (excluding)

Potential Mitigations

References