CVE-2024-23270

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.4, macOS Ventura 13.6.5, macOS Sonoma 14.4, iOS 17.4 and iPadOS 17.4, tvOS 17.4. An app may be able to execute arbitrary code with kernel privileges.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*

History

27 Mar 2025, 20:15

Type Values Removed Values Added
CWE CWE-787

21 Nov 2024, 08:57

Type Values Removed Values Added
References () http://seclists.org/fulldisclosure/2024/Mar/21 - Mailing List () http://seclists.org/fulldisclosure/2024/Mar/21 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Mar/22 - Mailing List () http://seclists.org/fulldisclosure/2024/Mar/22 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Mar/23 - Mailing List () http://seclists.org/fulldisclosure/2024/Mar/23 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Mar/25 - Mailing List () http://seclists.org/fulldisclosure/2024/Mar/25 - Mailing List
References () https://support.apple.com/en-us/HT214081 - Vendor Advisory () https://support.apple.com/en-us/HT214081 - Vendor Advisory
References () https://support.apple.com/en-us/HT214083 - Vendor Advisory () https://support.apple.com/en-us/HT214083 - Vendor Advisory
References () https://support.apple.com/en-us/HT214084 - Vendor Advisory () https://support.apple.com/en-us/HT214084 - Vendor Advisory
References () https://support.apple.com/en-us/HT214085 - Vendor Advisory () https://support.apple.com/en-us/HT214085 - Vendor Advisory
References () https://support.apple.com/en-us/HT214086 - Vendor Advisory () https://support.apple.com/en-us/HT214086 - Vendor Advisory

14 Mar 2024, 19:06

Type Values Removed Values Added
CPE cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
First Time Apple iphone Os
Apple macos
Apple
Apple tvos
Apple ipad Os
References () http://seclists.org/fulldisclosure/2024/Mar/21 - () http://seclists.org/fulldisclosure/2024/Mar/21 - Mailing List
References () https://support.apple.com/en-us/HT214085 - () https://support.apple.com/en-us/HT214085 - Vendor Advisory
References () http://seclists.org/fulldisclosure/2024/Mar/23 - () http://seclists.org/fulldisclosure/2024/Mar/23 - Mailing List
References () https://support.apple.com/en-us/HT214081 - () https://support.apple.com/en-us/HT214081 - Vendor Advisory
References () https://support.apple.com/en-us/HT214083 - () https://support.apple.com/en-us/HT214083 - Vendor Advisory
References () https://support.apple.com/en-us/HT214084 - () https://support.apple.com/en-us/HT214084 - Vendor Advisory
References () https://support.apple.com/en-us/HT214086 - () https://support.apple.com/en-us/HT214086 - Vendor Advisory
References () http://seclists.org/fulldisclosure/2024/Mar/22 - () http://seclists.org/fulldisclosure/2024/Mar/22 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Mar/25 - () http://seclists.org/fulldisclosure/2024/Mar/25 - Mailing List

13 Mar 2024, 23:15

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Mar/22 -
  • () http://seclists.org/fulldisclosure/2024/Mar/25 -
  • () http://seclists.org/fulldisclosure/2024/Mar/23 -

13 Mar 2024, 21:15

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Mar/21 -

08 Mar 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-08 02:15

Updated : 2025-03-27 20:15


NVD link : CVE-2024-23270

Mitre link : CVE-2024-23270

CVE.ORG link : CVE-2024-23270


JSON object : View

Products Affected

apple

  • ipad_os
  • iphone_os
  • macos
  • tvos
CWE
NVD-CWE-noinfo CWE-787

Out-of-bounds Write