← Back

CVE-2024-27856

nvd nist
Published: Jan 15, 2025Modified: Apr 2, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. Processing a file may lead to unexpected app termination or arbitrary code execution.

Affected (9)

7 products
Ipados
Iphone Os
Macos
Safari
Tvos
Visionos
Watchos
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Before 16.7.8
From 17.0 to 17.5
Apple
Before 16.7.8
From 17.0 to 17.5
Before 14.5
Before 17.5
Before 17.5
Before 1.2
Before 10.5

References (7)

Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory
Source: product-security@apple.com
Release NotesVendor Advisory

Timeline

No history available yet.