CVE-2024-40777
8Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 3.3epss 7.8%
exploitation probability
7.8%top 6% of all CVEs
observed exploitation
nono source reports it
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing a maliciously crafted file may lead to unexpected app termination.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
References
http://seclists.org/fulldisclosure/2024/Jul/16http://seclists.org/fulldisclosure/2024/Jul/18http://seclists.org/fulldisclosure/2024/Jul/21http://seclists.org/fulldisclosure/2024/Jul/22http://seclists.org/fulldisclosure/2024/Jul/23https://support.apple.com/en-us/120909https://support.apple.com/en-us/120911https://support.apple.com/en-us/120914https://support.apple.com/en-us/120915https://support.apple.com/en-us/120916https://support.apple.com/en-us/HT214117https://support.apple.com/en-us/HT214119