An authorization issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7. An attacker may be able to elevate privileges.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/120899 | |
| https://support.apple.com/en-us/120900 | |
| https://support.apple.com/en-us/120903 | |
| http://seclists.org/fulldisclosure/2024/May/12 | Mailing List |
| https://support.apple.com/en-us/HT214106 | Vendor Advisory |
| https://support.apple.com/kb/HT214105 | Vendor Advisory |
| https://support.apple.com/kb/HT214106 | Vendor Advisory |
| https://support.apple.com/kb/HT214107 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
02 Apr 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Summary | (en) An authorization issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7. An attacker may be able to elevate privileges. |
09 Dec 2024, 19:21
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
| CWE | CWE-863 | |
| First Time |
Apple
Apple macos |
|
| References | () http://seclists.org/fulldisclosure/2024/May/12 - Mailing List | |
| References | () https://support.apple.com/en-us/HT214106 - Vendor Advisory | |
| References | () https://support.apple.com/kb/HT214105 - Vendor Advisory | |
| References | () https://support.apple.com/kb/HT214106 - Vendor Advisory | |
| References | () https://support.apple.com/kb/HT214107 - Vendor Advisory |
21 Nov 2024, 09:05
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://seclists.org/fulldisclosure/2024/May/12 - | |
| References | () https://support.apple.com/en-us/HT214106 - | |
| References | () https://support.apple.com/kb/HT214105 - | |
| References | () https://support.apple.com/kb/HT214106 - | |
| References | () https://support.apple.com/kb/HT214107 - |
01 Aug 2024, 13:48
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
11 Jun 2024, 08:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Jun 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| References |
|
14 May 2024, 15:13
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-05-14 15:13
Updated : 2026-04-02 19:17
NVD link : CVE-2024-27798
Mitre link : CVE-2024-27798
CVE.ORG link : CVE-2024-27798
JSON object : View
Products Affected
apple
- macos
CWE
CWE-863
Incorrect Authorization
