CVE-2024-40839

This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to an iOS device may be able to view notification contents from the Lock Screen.
References
Link Resource
https://support.apple.com/en-us/120905 Vendor Advisory Release Notes
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

14 Mar 2025, 13:44

Type Values Removed Values Added
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
First Time Apple ipados
Apple iphone Os
Apple
References () https://support.apple.com/en-us/120905 - () https://support.apple.com/en-us/120905 - Vendor Advisory, Release Notes

16 Jan 2025, 17:15

Type Values Removed Values Added
CWE CWE-862
Summary
  • (es) Este problema se solucionó mediante una mejor gestión de estados. Este problema se solucionó en iOS 17.5 y iPadOS 17.5. Un atacante con acceso físico a un dispositivo iOS podría ver el contenido de las notificaciones desde la pantalla de bloqueo.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 2.4

15 Jan 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-15 20:15

Updated : 2025-03-14 13:44


NVD link : CVE-2024-40839

Mitre link : CVE-2024-40839

CVE.ORG link : CVE-2024-40839


JSON object : View

Products Affected

apple

  • ipados
  • iphone_os
CWE
CWE-862

Missing Authorization