CVE-2024-27805
- EPSS 0.02%
- Published 10.06.2024 21:15:49
- Last modified 25.03.2025 16:15:20
An issue was addressed with improved validation of environment variables. This issue is fixed in macOS Ventura 13.6.7, macOS Monterey 12.7.5, iOS 16.7.8 and iPadOS 16.7.8, tvOS 17.5, iOS 17.5 and iPadOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An app m...
CVE-2024-27834
- EPSS 0.01%
- Published 14.05.2024 15:13:06
- Last modified 12.12.2024 14:33:00
The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, Safari 17.5, watchOS 10.5, macOS Sonoma 14.5. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.
CVE-2024-27821
- EPSS 4.1%
- Published 14.05.2024 15:13:05
- Last modified 12.12.2024 14:33:00
A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, watchOS 10.5, macOS Sonoma 14.5. A shortcut may output sensitive user data without consent.
CVE-2024-27804
- EPSS 4.08%
- Published 14.05.2024 15:13:04
- Last modified 12.12.2024 14:33:00
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An app may be able to execute arbitrary code with kernel privileges.
CVE-2024-27810
- EPSS 0.07%
- Published 14.05.2024 15:13:04
- Last modified 12.12.2024 14:33:00
A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An app may be able to read sensitive location information.
CVE-2024-27816
- EPSS 0.03%
- Published 14.05.2024 15:13:04
- Last modified 12.12.2024 14:33:00
A logic issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An attacker may be able to access user data.
CVE-2024-23271
- EPSS 0.07%
- Published 24.04.2024 17:15:47
- Last modified 12.12.2024 14:33:00
A logic issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, Safari 17.3, tvOS 17.3, macOS Sonoma 14.3, watchOS 10.3. A malicious website may cause unexpected cross-origin behavior.
CVE-2023-42936
- EPSS 0.05%
- Published 28.03.2024 16:15:08
- Last modified 13.03.2025 20:15:15
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. An app may be able to access user-sen...
CVE-2023-42947
- EPSS 0.05%
- Published 28.03.2024 16:15:08
- Last modified 13.03.2025 16:15:14
A path handling issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. An app may be able to break out of its sandbox.
CVE-2023-42950
- EPSS 0.23%
- Published 28.03.2024 16:15:08
- Last modified 21.11.2024 08:23:35
A use after free issue was addressed with improved memory management. This issue is fixed in Safari 17.2, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. Processing maliciously crafted web content may lead to arbitrary code exec...