← Back

CVE-2024-40840

nvd nist
Published: Sep 17, 2024Modified: Nov 4, 2025

JSON object

Loading...
4.6
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 0.9 / Impact: 3.6
Source: NVD

Description

This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18. An attacker with physical access may be able to use Siri to access sensitive user data.

Affected (2)

Products: Apple: Ipados, Iphone Os
2 products
Ipados
Iphone Os
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Before 18.0
Before 18.0

References (2)

Source: product-security@apple.com
Release NotesVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.