TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2024-0258

HIGH
8.6

Beschreibung

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, watchOS 10.4. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.

CVE Details

CVSS v3.1 Bewertung8.6
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionREQUIRED
Veroffentlicht3/8/2024
Zuletzt geandert4/2/2026
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

apple:ipad_osapple:iphone_osapple:macosapple:tvosapple:watchos

Schwachen (CWE)

CWE-284

Referenzen

https://support.apple.com/en-us/120881(product-security@apple.com)
https://support.apple.com/en-us/120882(product-security@apple.com)
https://support.apple.com/en-us/120893(product-security@apple.com)
https://support.apple.com/en-us/120895(product-security@apple.com)
http://seclists.org/fulldisclosure/2024/Mar/21(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/24(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/25(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT214081(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT214084(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT214086(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT214088(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214081(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214084(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214086(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214088(af854a3a-2127-422b-91ae-364da2661108)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.