CVE-2024-23280
- EPSS 0.53%
- Published 08.03.2024 02:15:49
- Last modified 07.12.2024 03:11:21
An injection issue was addressed with improved validation. This issue is fixed in Safari 17.4, macOS Sonoma 14.4, iOS 17.4 and iPadOS 17.4, watchOS 10.4, tvOS 17.4. A maliciously crafted webpage may be able to fingerprint the user.
CVE-2024-23284
- EPSS 0.56%
- Published 08.03.2024 02:15:49
- Last modified 28.03.2025 21:15:15
A logic issue was addressed with improved state management. This issue is fixed in tvOS 17.4, macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, watchOS 10.4, iOS 16.7.6 and iPadOS 16.7.6, Safari 17.4. Processing maliciously crafted web conte...
CVE-2024-23286
- EPSS 1.24%
- Published 08.03.2024 02:15:49
- Last modified 09.12.2024 14:46:04
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.4, macOS Ventura 13.6.5, macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, watchOS 10.4, iOS 16.7.6 and iPadOS 16.7.6, tvOS 17.4....
CVE-2024-23239
- EPSS 0.06%
- Published 08.03.2024 02:15:48
- Last modified 13.03.2025 21:15:38
A race condition was addressed with improved state handling. This issue is fixed in tvOS 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, watchOS 10.4. An app may be able to leak sensitive user information.
CVE-2024-23246
- EPSS 0.07%
- Published 08.03.2024 02:15:48
- Last modified 20.12.2024 17:09:02
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, watchOS 10.4, iOS 16.7.6 and iPadOS 16.7.6, tvOS 17.4. An app may be able to break out of its sandbox.
CVE-2024-23250
- EPSS 0.02%
- Published 08.03.2024 02:15:48
- Last modified 27.03.2025 16:15:22
An access issue was addressed with improved access restrictions. This issue is fixed in tvOS 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, watchOS 10.4. An app may be able to access Bluetooth-connected microphones without user permission.
CVE-2024-23254
- EPSS 0.5%
- Published 08.03.2024 02:15:48
- Last modified 06.12.2024 02:54:01
The issue was addressed with improved UI handling. This issue is fixed in tvOS 17.4, macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, watchOS 10.4, Safari 17.4. A malicious website may exfiltrate audio data cross-origin.
CVE-2024-23263
- EPSS 0.4%
- Published 08.03.2024 02:15:48
- Last modified 09.12.2024 14:55:47
A logic issue was addressed with improved validation. This issue is fixed in tvOS 17.4, macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, watchOS 10.4, iOS 16.7.6 and iPadOS 16.7.6, Safari 17.4. Processing maliciously crafted web content may...
CVE-2024-0258
- EPSS 0.02%
- Published 08.03.2024 02:15:47
- Last modified 17.03.2025 16:15:20
The issue was addressed with improved memory handling. This issue is fixed in tvOS 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, watchOS 10.4. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.
CVE-2024-23201
- EPSS 0.02%
- Published 08.03.2024 02:15:47
- Last modified 12.12.2024 14:33:00
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Monterey 12.7.4, watchOS 10.3, tvOS 17.3, macOS Ventura 13.6.5, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3. An app may be able to cause a denial-of-service.