CVE-2024-23275
CVE-2024-23275
Vexday Risk Score
13Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 4.7EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
08 mar 2024Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
A race condition was addressed with additional validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to access protected user data.
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
Produtos afetados
Apple · macOSQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://seclists.org/fulldisclosure/2024/Mar/21http://seclists.org/fulldisclosure/2024/Mar/22http://seclists.org/fulldisclosure/2024/Mar/23https://support.apple.com/en-us/120884https://support.apple.com/en-us/120886https://support.apple.com/en-us/120895https://support.apple.com/en-us/HT214083https://support.apple.com/en-us/HT214084https://support.apple.com/en-us/HT214085https://support.apple.com/kb/HT214083https://support.apple.com/kb/HT214084https://support.apple.com/kb/HT214085