CVE-2024-44259
7.5HIGH
Key Information
- Vendor
- Apple
- Status
- Visionos
- iOS And iPad OS
- Mac OS
- Safari
- Vendor
- CVE Published:
- 28 October 2024
Summary
This issue was addressed through improved state management. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, visionOS 2.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, Safari 18.1. An attacker may be able to misuse a trust relationship to download malicious content.
Affected Version(s)
visionOS < 2.1
iOS and iPadOS < 17.7
iOS and iPadOS < 18.1
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Collectors
NVD DatabaseMitre Database