5.9

CVE-2024-27823

A race condition was addressed with improved locking. This issue is fixed in macOS Sonoma 14.5, iOS 16.7.8 and iPadOS 16.7.8, macOS Ventura 13.6.7, watchOS 10.5, visionOS 1.3, tvOS 17.5, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5. An attacker in a privileged network position may be able to spoof network packets.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AppleiPadOS Version < 16.7.8
AppleiPadOS Version >= 17.0 < 17.5
AppleiPhone OS Version < 16.7.8
AppleiPhone OS Version >= 17.0 < 17.5
ApplemacOS Version < 12.7.5
ApplemacOS Version >= 13.0 < 13.6.7
ApplemacOS Version >= 14.0 < 14.5
AppletvOS Version < 17.5
ApplevisionOS Version < 1.3
ApplewatchOS Version < 10.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.19% 0.41
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.9 2.2 3.6
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
134c704f-9b21-4f2e-91b3-4a467353bcc0 5.9 2.2 3.6
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

https://support.apple.com/kb/HT214107
Vendor Advisory
Release Notes
http://seclists.org/fulldisclosure/2024/Jul/23
Third Party Advisory
Mailing List
https://support.apple.com/kb/HT214100
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT214101
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT214106
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214105
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT214105
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214106
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214100
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214107
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214101
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214102
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214104
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT214102
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT214104
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT214123
Vendor Advisory
Release Notes