CVE-2025-46306

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
28/01/2026
Last modified:
30/01/2026

Description

The issue was addressed with improved bounds checks. This issue is fixed in macOS Tahoe 26, Keynote 15.1, iOS 26 and iPadOS 26. Processing a maliciously crafted Keynote file may disclose memory contents.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apple:keynote:*:*:*:*:*:*:*:* 15.1 (excluding)
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* 26.0 (excluding)
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 26.0 (excluding)
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* 26.0 (excluding)