Out-of-Bounds Read in Apple Operating Systems
CVE-2024-44282

5.5MEDIUM

Key Information:

Vendor
Apple
Vendor
CVE Published:
28 October 2024

Summary

An issue has been identified in various Apple operating systems where improper input validation can lead to an out-of-bounds read. This vulnerability may allow unauthorized disclosure of sensitive user information through the manipulation of files. It has been addressed in updates across multiple platforms, including macOS, iOS, iPadOS, watchOS, and visionOS, strengthening the overall security of these systems.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

.