CVE-2024-40832

The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6. An app may be able to view a contact's phone number in system logs.
References
Link Resource
http://seclists.org/fulldisclosure/2024/Jul/18 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214119 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

29 Oct 2024, 21:35

Type Values Removed Values Added
CWE CWE-922

23 Aug 2024, 14:52

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.3
CWE NVD-CWE-noinfo
First Time Apple
Apple macos
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
References () http://seclists.org/fulldisclosure/2024/Jul/18 - () http://seclists.org/fulldisclosure/2024/Jul/18 - Mailing List, Third Party Advisory
References () https://support.apple.com/en-us/HT214119 - () https://support.apple.com/en-us/HT214119 - Release Notes, Vendor Advisory

30 Jul 2024, 13:32

Type Values Removed Values Added
Summary
  • (es) El problema se solucionó con controles mejorados. Este problema se solucionó en macOS Sonoma 14.6. Es posible que una aplicación pueda ver el número de teléfono de un contacto en los registros del sistema.

30 Jul 2024, 02:15

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Jul/18 -

29 Jul 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-29 23:15

Updated : 2024-10-29 21:35


NVD link : CVE-2024-40832

Mitre link : CVE-2024-40832

CVE.ORG link : CVE-2024-40832


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-noinfo CWE-922

Insecure Storage of Sensitive Information