CVE-2024-23278

CVSS 3.1 Score 8.6 of 10 (high)

Details

Published Mar 8, 2024
Updated: Dec 20, 2024
CWE ID 94

Summary

CVE-2024-23278 is a recently identified vulnerability that posed a risk for apps on macOS and iOS systems. This issue allowed apps to potentially breach their sandbox restrictions, according to the information disclosed. The vulnerability has been resolved in the latest updates for macOS Ventura 13.6.5, macOS Sonoma 14.4, iOS 17.4, iPadOS 17.4, watchOS 10.4, iOS 16.7.6, and iPadOS 16.7.6, as well as tvOS 17.4. Developers addressed the issue by implementing improved checks to prevent such escapes.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share