Show filters
3,536 Total Results
Displaying 121-130 of 3,536
Sort by:
Attacker Value
Unknown

CVE-2024-44144

Disclosure Date: October 28, 2024 (last updated October 30, 2024)
A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1, tvOS 18, watchOS 11, visionOS 2, iOS 18 and iPadOS 18. Processing a maliciously crafted file may lead to unexpected app termination.
Attacker Value
Unknown

CVE-2024-44126

Disclosure Date: October 28, 2024 (last updated October 30, 2024)
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, iOS 17.7 and iPadOS 17.7, macOS Sonoma 14.7, visionOS 2, iOS 18 and iPadOS 18. Processing a maliciously crafted file may lead to heap corruption.
Attacker Value
Unknown

CVE-2024-44123

Disclosure Date: October 28, 2024 (last updated October 30, 2024)
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, iOS 18 and iPadOS 18. A malicious app with root privileges may be able to access keyboard input and location information without user consent.
Attacker Value
Unknown

CVE-2024-40867

Disclosure Date: October 28, 2024 (last updated October 30, 2024)
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPadOS 18.1. A remote attacker may be able to break out of Web Content sandbox.
Attacker Value
Unknown

CVE-2024-40853

Disclosure Date: October 28, 2024 (last updated October 31, 2024)
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18 and iPadOS 18. An attacker may be able to use Siri to enable Auto-Answer Calls.
Attacker Value
Unknown

CVE-2024-40851

Disclosure Date: October 28, 2024 (last updated October 30, 2024)
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18.1 and iPadOS 18.1. An attacker with physical access may be able to access contact photos from the lock screen.
Attacker Value
Unknown

CVE-2024-44206

Disclosure Date: October 24, 2024 (last updated November 20, 2024)
An issue in the handling of URL protocols was addressed with improved logic. This issue is fixed in tvOS 17.6, visionOS 1.3, Safari 17.6, watchOS 10.6, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. A user may be able to bypass some web content restrictions.
Attacker Value
Unknown

CVE-2024-44205

Disclosure Date: October 24, 2024 (last updated October 30, 2024)
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. A sandboxed app may be able to access sensitive user data in system logs.
Attacker Value
Unknown

CVE-2024-44185

Disclosure Date: October 24, 2024 (last updated October 30, 2024)
The issue was addressed with improved checks. This issue is fixed in tvOS 17.6, visionOS 1.3, Safari 17.6, watchOS 10.6, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. Processing maliciously crafted web content may lead to an unexpected process crash.
Attacker Value
Unknown

CVE-2024-44207

Disclosure Date: October 04, 2024 (last updated October 05, 2024)
This issue was addressed with improved checks. This issue is fixed in iOS 18.0.1 and iPadOS 18.0.1. Audio messages in Messages may be able to capture a few seconds of audio before the microphone indicator is activated.