A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18.1, visionOS 2.1, tvOS 18.1, iOS 18.1 and iPadOS 18.1, watchOS 11.1. Cookies belonging to one origin may be sent to another origin.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/121563 | Vendor Advisory |
https://support.apple.com/en-us/121565 | Vendor Advisory |
https://support.apple.com/en-us/121566 | Vendor Advisory |
https://support.apple.com/en-us/121569 | Vendor Advisory |
https://support.apple.com/en-us/121571 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
13 Dec 2024, 18:51
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.apple.com/en-us/121563 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121565 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121566 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121569 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121571 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
CWE | CWE-346 | |
CPE | cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* |
|
First Time |
Apple watchos
Apple visionos Apple iphone Os Apple safari Apple Apple tvos Apple ipados |
|
Summary |
|
12 Dec 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-12 02:15
Updated : 2024-12-20 19:15
NVD link : CVE-2024-44212
Mitre link : CVE-2024-44212
CVE.ORG link : CVE-2024-44212
JSON object : View
Products Affected
apple
- iphone_os
- visionos
- tvos
- ipados
- safari
- watchos
CWE
CWE-346
Origin Validation Error