CVE-2024-54505
CVE-2024-54505
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.5EPSS 1.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
11 dic 2024Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A type confusion issue was addressed with improved memory handling. This issue is fixed in Safari 18.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sequoia 15.2, tvOS 18.2, visionOS 2.2, watchOS 11.2. Processing maliciously crafted web content may lead to memory corruption.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Productos afectados
Apple · iOS and iPadOSApple · iPadOSApple · macOSApple · SafariApple · tvOSApple · visionOSApple · watchOS¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://seclists.org/fulldisclosure/2024/Dec/10http://seclists.org/fulldisclosure/2024/Dec/13http://seclists.org/fulldisclosure/2024/Dec/6http://seclists.org/fulldisclosure/2024/Dec/7https://lists.debian.org/debian-lts-announce/2025/01/msg00002.htmlhttps://support.apple.com/en-us/121837https://support.apple.com/en-us/121838https://support.apple.com/en-us/121839https://support.apple.com/en-us/121843https://support.apple.com/en-us/121844https://support.apple.com/en-us/121845https://support.apple.com/en-us/121846