CVE-2025-46316Patch(apple / ipados)

LOWCVSS 4.3 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch apple ipados systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

An out-of-bounds read was addressed with improved input validation. This issue is fixed in Pages 15.1, iOS 26.1 and iPadOS 26.1, macOS Tahoe 26.1. Processing a maliciously crafted Pages document may result in unexpected termination or disclosure of process memory.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-125

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ipados
  • iphone_os
  • macos
  • pages

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
ipadosiphone_osmacospages

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-01-28: 2Patch / Workaround · 2026-01-28: 2Technical Details · 2026-01-28: 201-28
Signal classification1 categories
Patch
2100.0%
Referenced assets3 URLs
Full discourse2 posts
  • Cole Mahoney@colemahoney
    Patch

    Apple just patched two document-processing bugs in Pages 15.1 & Keynote 15.1 (macOS Sequoia 15.6+): - CVE-2025-46316: out-of-bounds read (improved input validation) - CVE-2025-46306: improved bounds checks Reported by Cisco Talos. Could crash apps or leak memory via malicious files. https://support.apple.com/en-us/126255 https://support.apple.com/en-us/126254

    Post summary

    Apple has released patches for two Pages/Keynote vulnerabilities (CVE‑2025‑46316 and CVE‑2025‑46306) that involve out‑of‑bounds read and bound‑check issues; no PoC or active exploitation is mentioned.

    10000141
    26 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2025-46316 An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 26.1 and iPadOS 26.1, Pages 15.1, macOS Tahoe 26.1. Processing a malici… https://www.cve.org/CVERecord?id=CVE-2025-46316

    Post summary

    The CVE-2025-46316 out‑of‑bounds read is addressed by improved input validation and is fixed in the listed OS and application releases; no exploitation or PoC is mentioned.

    00000197
    56.5K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
OSappleipados---
OSappleiphone_os---
OSapplemacos---
Appapplepages---

Explore more