TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2024-23225

HIGHCISA KEV
7.8

Beschreibung

A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5, tvOS 17.4, visionOS 1.1, watchOS 10.4. An attacker with arbitrary kernel read and write capability may be able to bypass kernel memory protections. Apple is aware of a report that this issue may have been exploited.

CVE Details

CVSS v3.1 Bewertung7.8
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht3/5/2024
Zuletzt geandert4/3/2026
Quellekev
Honeypot-Sichtungen0

CISA KEV

HerstellerApple
ProduktMultiple Products
SchwachstellennameApple Multiple Products Memory Corruption Vulnerability
KEV Aufnahmedatum2024-03-06
Behebungsfrist2024-03-27
Ransomware-NutzungUnknown

Betroffene Produkte

apple:ipadosapple:iphone_osapple:macosapple:tvosapple:visionosapple:watchos

Schwachen (CWE)

CWE-787

Referenzen

https://support.apple.com/en-us/120880(product-security@apple.com)
https://support.apple.com/en-us/120881(product-security@apple.com)
https://support.apple.com/en-us/120882(product-security@apple.com)
https://support.apple.com/en-us/120883(product-security@apple.com)
https://support.apple.com/en-us/120884(product-security@apple.com)
https://support.apple.com/en-us/120886(product-security@apple.com)
https://support.apple.com/en-us/120893(product-security@apple.com)
https://support.apple.com/en-us/120895(product-security@apple.com)
http://seclists.org/fulldisclosure/2024/Mar/18(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/19(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/21(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/22(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/23(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/24(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/25(af854a3a-2127-422b-91ae-364da2661108)
http://seclists.org/fulldisclosure/2024/Mar/26(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT214081(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/en-us/HT214082(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214082(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214083(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214084(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214085(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214086(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214087(af854a3a-2127-422b-91ae-364da2661108)
https://support.apple.com/kb/HT214088(af854a3a-2127-422b-91ae-364da2661108)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.