CVE-2024-54507

A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2. An attacker with user privileges may be able to read kernel memory.
References
Link Resource
https://support.apple.com/en-us/121837 Release Notes Vendor Advisory
https://support.apple.com/en-us/121839 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

14 Mar 2025, 17:15

Type Values Removed Values Added
First Time Apple iphone Os
Apple
Apple macos
Apple ipados
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-125
CWE-843
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
References () https://support.apple.com/en-us/121837 - () https://support.apple.com/en-us/121837 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121839 - () https://support.apple.com/en-us/121839 - Release Notes, Vendor Advisory

18 Feb 2025, 20:15

Type Values Removed Values Added
CWE CWE-125
CVSS v2 : unknown
v3 : 5.5
v2 : unknown
v3 : unknown

28 Jan 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
Summary
  • (es) Se solucionó un problema de confusión de tipos mejorando la gestión de la memoria. Este problema se solucionó en macOS Sequoia 15.2, iOS 18.2 y iPadOS 18.2. Un atacante con privilegios de usuario podría leer la memoria del núcleo.
CWE CWE-125

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-03-14 17:15


NVD link : CVE-2024-54507

Mitre link : CVE-2024-54507

CVE.ORG link : CVE-2024-54507


JSON object : View

Products Affected

apple

  • ipados
  • iphone_os
  • macos
CWE
CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

CWE-125

Out-of-bounds Read