CVE-2024-23294

This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14.4. Processing malicious input may lead to code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

29 Mar 2025, 00:15

Type Values Removed Values Added
CWE CWE-20

09 Dec 2024, 16:16

Type Values Removed Values Added
First Time Apple macos
Apple
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
References () http://seclists.org/fulldisclosure/2024/Mar/21 - () http://seclists.org/fulldisclosure/2024/Mar/21 - Mailing List
References () https://support.apple.com/en-us/HT214084 - () https://support.apple.com/en-us/HT214084 - Vendor Advisory
CWE NVD-CWE-noinfo

21 Nov 2024, 08:57

Type Values Removed Values Added
References () http://seclists.org/fulldisclosure/2024/Mar/21 - () http://seclists.org/fulldisclosure/2024/Mar/21 -
References () https://support.apple.com/en-us/HT214084 - () https://support.apple.com/en-us/HT214084 -

26 Aug 2024, 15:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

13 Mar 2024, 21:15

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Mar/21 -

08 Mar 2024, 14:02

Type Values Removed Values Added
Summary
  • (es) Este problema se solucionó eliminando el código vulnerable. Este problema se solucionó en macOS Sonoma 14.4. El procesamiento de entradas maliciosas puede provocar la ejecución de código.

08 Mar 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-08 02:15

Updated : 2025-03-29 00:15


NVD link : CVE-2024-23294

Mitre link : CVE-2024-23294

CVE.ORG link : CVE-2024-23294


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation