This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be able to access sensitive user data.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apple
Apple ipados Apple iphone Os Apple macos |
|
Weaknesses | CWE-59 | |
CPEs | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Apple
Apple ipados Apple iphone Os Apple macos |
|
Metrics |
cvssV3_1
|
Wed, 18 Sep 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 16 Sep 2024 23:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | This issue was addressed with improved validation of symlinks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be able to access sensitive user data. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2024-09-16T23:22:09.818Z
Updated: 2024-09-18T13:51:04.651Z
Reserved: 2024-08-20T21:42:05.919Z
Link: CVE-2024-44131
Vulnrichment
Updated: 2024-09-18T13:51:00.727Z
NVD
Status : Analyzed
Published: 2024-09-17T00:15:50.200
Modified: 2024-09-24T19:01:55.470
Link: CVE-2024-44131
Redhat
No data.