CVE-2024-54494
CVE-2024-54494
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 5.9EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
11 dic 2024Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A race condition was addressed with additional validation. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventura 13.7.2, tvOS 18.2, visionOS 2.2, watchOS 11.2. An attacker may be able to create a read-only memory mapping that can be written to.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Productos afectados
Apple · iOS and iPadOSApple · iPadOSApple · macOSApple · tvOSApple · visionOSApple · watchOS¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://seclists.org/fulldisclosure/2024/Dec/10http://seclists.org/fulldisclosure/2024/Dec/12http://seclists.org/fulldisclosure/2024/Dec/6http://seclists.org/fulldisclosure/2024/Dec/7http://seclists.org/fulldisclosure/2024/Dec/8https://support.apple.com/en-us/121837https://support.apple.com/en-us/121838https://support.apple.com/en-us/121839https://support.apple.com/en-us/121840https://support.apple.com/en-us/121842https://support.apple.com/en-us/121843https://support.apple.com/en-us/121844