An authentication issue was addressed with improved state management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. Photos in the Hidden Photos Album may be viewed without authentication.
References
| Link | Resource |
|---|---|
| https://support.apple.com/en-us/120908 | |
| https://support.apple.com/en-us/120909 | |
| https://support.apple.com/en-us/120911 | |
| http://seclists.org/fulldisclosure/2024/Jul/16 | Mailing List Third Party Advisory |
| http://seclists.org/fulldisclosure/2024/Jul/17 | Mailing List Third Party Advisory |
| http://seclists.org/fulldisclosure/2024/Jul/18 | Mailing List Third Party Advisory |
| https://support.apple.com/en-us/HT214116 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/HT214117 | Release Notes Vendor Advisory |
| https://support.apple.com/en-us/HT214119 | Release Notes Vendor Advisory |
| https://support.apple.com/kb/HT214116 | |
| https://support.apple.com/kb/HT214117 | |
| https://support.apple.com/kb/HT214119 |
Configurations
History
02 Apr 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) An authentication issue was addressed with improved state management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. Photos in the Hidden Photos Album may be viewed without authentication. | |
| References |
|
04 Nov 2025, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
17 Mar 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-287 |
21 Nov 2024, 09:31
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://seclists.org/fulldisclosure/2024/Jul/16 - Mailing List, Third Party Advisory | |
| References | () http://seclists.org/fulldisclosure/2024/Jul/17 - Mailing List, Third Party Advisory | |
| References | () http://seclists.org/fulldisclosure/2024/Jul/18 - Mailing List, Third Party Advisory | |
| References | () https://support.apple.com/en-us/HT214116 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214117 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214119 - Release Notes, Vendor Advisory |
20 Aug 2024, 16:20
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-noinfo | |
| First Time |
Apple
Apple ipados Apple iphone Os Apple macos |
|
| References | () http://seclists.org/fulldisclosure/2024/Jul/16 - Mailing List, Third Party Advisory | |
| References | () http://seclists.org/fulldisclosure/2024/Jul/17 - Mailing List, Third Party Advisory | |
| References | () http://seclists.org/fulldisclosure/2024/Jul/18 - Mailing List, Third Party Advisory | |
| References | () https://support.apple.com/en-us/HT214116 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214117 - Release Notes, Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214119 - Release Notes, Vendor Advisory | |
| CPE | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 3.3 |
30 Jul 2024, 13:32
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
30 Jul 2024, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
30 Jul 2024, 01:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
29 Jul 2024, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-07-29 23:15
Updated : 2026-04-02 19:17
NVD link : CVE-2024-40778
Mitre link : CVE-2024-40778
CVE.ORG link : CVE-2024-40778
JSON object : View
Products Affected
apple
- ipados
- macos
- iphone_os
CWE
