CVE-2024-40864
CVE-2024-40864
Vexday Risk Score
8Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 2.7EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
31 mar 2025Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
The issue was addressed with improved handling of protocols. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, macOS Sonoma 14.7.5, macOS Ventura 13.7.5, tvOS 18.2, watchOS 11.2. An attacker in a privileged network position may be able to track a user's activity.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Referências
http://seclists.org/fulldisclosure/2025/Apr/10http://seclists.org/fulldisclosure/2025/Apr/9https://support.apple.com/en-us/121837https://support.apple.com/en-us/121839https://support.apple.com/en-us/121843https://support.apple.com/en-us/121844https://support.apple.com/en-us/122374https://support.apple.com/en-us/122375