A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18.1, visionOS 2.1, tvOS 18.1, iOS 18.1 and iPadOS 18.1, watchOS 11.1. Cookies belonging to one origin may be sent to another origin.
History

Fri, 20 Dec 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 13 Dec 2024 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple ipados
Apple iphone Os
Apple safari
Apple tvos
Apple visionos
Apple watchos
Weaknesses CWE-346
CPEs cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
Vendors & Products Apple
Apple ipados
Apple iphone Os
Apple safari
Apple tvos
Apple visionos
Apple watchos
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N'}


Wed, 11 Dec 2024 23:00:00 +0000

Type Values Removed Values Added
Description A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18.1, visionOS 2.1, tvOS 18.1, iOS 18.1 and iPadOS 18.1, watchOS 11.1. Cookies belonging to one origin may be sent to another origin.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2024-12-11T22:57:27.473Z

Updated: 2024-12-20T18:36:52.519Z

Reserved: 2024-08-20T21:42:05.944Z

Link: CVE-2024-44212

cve-icon Vulnrichment

Updated: 2024-12-20T18:36:43.572Z

cve-icon NVD

Status : Modified

Published: 2024-12-12T02:15:23.393

Modified: 2024-12-20T19:15:06.570

Link: CVE-2024-44212

cve-icon Redhat

No data.