Show filters
1,573 Total Results
Displaying 91-100 of 1,573
Sort by:
Attacker Value
Unknown

CVE-2024-44155

Disclosure Date: October 28, 2024 (last updated October 30, 2024)
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 18, iOS 17.7.1 and iPadOS 17.7.1, macOS Sequoia 15, watchOS 11, iOS 18 and iPadOS 18. Maliciously crafted web content may violate iframe sandboxing policy.
Attacker Value
Unknown

CVE-2024-44144

Disclosure Date: October 28, 2024 (last updated October 30, 2024)
A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1, tvOS 18, watchOS 11, visionOS 2, iOS 18 and iPadOS 18. Processing a maliciously crafted file may lead to unexpected app termination.
Attacker Value
Unknown

CVE-2024-44185

Disclosure Date: October 24, 2024 (last updated October 30, 2024)
The issue was addressed with improved checks. This issue is fixed in tvOS 17.6, visionOS 1.3, Safari 17.6, watchOS 10.6, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. Processing maliciously crafted web content may lead to an unexpected process crash.
Attacker Value
Unknown

CVE-2024-44198

Disclosure Date: September 17, 2024 (last updated September 25, 2024)
An integer overflow was addressed through improved input validation. This issue is fixed in visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. Processing maliciously crafted web content may lead to an unexpected process crash.
Attacker Value
Unknown

CVE-2024-44191

Disclosure Date: September 17, 2024 (last updated September 26, 2024)
This issue was addressed through improved state management. This issue is fixed in iOS 17.7 and iPadOS 17.7, Xcode 16, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. An app may gain unauthorized access to Bluetooth.
Attacker Value
Unknown

CVE-2024-44187

Disclosure Date: September 17, 2024 (last updated September 26, 2024)
A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin.
Attacker Value
Unknown

CVE-2024-44183

Disclosure Date: September 17, 2024 (last updated September 25, 2024)
A logic error was addressed with improved error handling. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, macOS Sonoma 14.7, tvOS 18. An app may be able to cause a denial-of-service.
Attacker Value
Unknown

CVE-2024-44176

Disclosure Date: September 17, 2024 (last updated September 26, 2024)
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, macOS Sonoma 14.7, tvOS 18. Processing an image may lead to a denial-of-service.
Attacker Value
Unknown

CVE-2024-44171

Disclosure Date: September 17, 2024 (last updated September 25, 2024)
This issue was addressed through improved state management. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, watchOS 11. An attacker with physical access to a locked device may be able to Control Nearby Devices via accessibility features.
Attacker Value
Unknown

CVE-2024-44170

Disclosure Date: September 17, 2024 (last updated October 01, 2024)
A privacy issue was addressed by moving sensitive data to a more secure location. This issue is fixed in iOS 18 and iPadOS 18, watchOS 11, macOS Sequoia 15. An app may be able to access user-sensitive data.