CVE-2024-44259

This issue was addressed through improved state management. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, visionOS 2.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, Safari 18.1. An attacker may be able to misuse a trust relationship to download malicious content.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*

History

11 Dec 2024, 18:29

Type Values Removed Values Added
CPE cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
First Time Apple safari
Apple
Apple visionos
Apple iphone Os
Apple macos
Apple ipados
CVSS v2 : unknown
v3 : 8.8
v2 : unknown
v3 : 7.5
CWE NVD-CWE-noinfo
References () https://support.apple.com/en-us/121563 - () https://support.apple.com/en-us/121563 - Vendor Advisory
References () https://support.apple.com/en-us/121564 - () https://support.apple.com/en-us/121564 - Vendor Advisory
References () https://support.apple.com/en-us/121566 - () https://support.apple.com/en-us/121566 - Vendor Advisory
References () https://support.apple.com/en-us/121567 - () https://support.apple.com/en-us/121567 - Vendor Advisory
References () https://support.apple.com/en-us/121571 - () https://support.apple.com/en-us/121571 - Vendor Advisory

29 Oct 2024, 23:15

Type Values Removed Values Added
Summary (en) This issue was addressed through improved state management. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, visionOS 2.1, iOS 18.1 and iPadOS 18.1. An attacker may be able to misuse a trust relationship to download malicious content. (en) This issue was addressed through improved state management. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, visionOS 2.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, Safari 18.1. An attacker may be able to misuse a trust relationship to download malicious content.
References
  • () https://support.apple.com/en-us/121564 -
  • () https://support.apple.com/en-us/121571 -

29 Oct 2024, 20:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

29 Oct 2024, 14:34

Type Values Removed Values Added
Summary
  • (es) Este problema se solucionó mediante una mejor gestión del estado. Este problema se solucionó en iOS 17.7.1 y iPadOS 17.7.1, visionOS 2.1, iOS 18.1 y iPadOS 18.1. Un atacante podría hacer un uso indebido de una relación de confianza para descargar contenido malicioso.

28 Oct 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-28 21:15

Updated : 2024-12-11 18:29


NVD link : CVE-2024-44259

Mitre link : CVE-2024-44259

CVE.ORG link : CVE-2024-44259


JSON object : View

Products Affected

apple

  • visionos
  • iphone_os
  • safari
  • macos
  • ipados