PT-2024-22042 · Apple · Visionos+8

Daniel Zajork

+1

·

Published

2024-05-13

·

Updated

2024-07-03

·

CVE-2024-27800

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions macOS Ventura versions 13.6.7 and earlier macOS Monterey versions 12.7.5 and earlier iOS versions 16.7.8 and earlier, 17.5 and earlier iPadOS versions 16.7.8 and earlier, 17.5 and earlier tvOS version 17.5 and earlier visionOS version 1.2 and earlier watchOS version 10.5 and earlier macOS Sonoma version 14.5 and earlier
Description The issue is related to the processing of maliciously crafted messages, which may lead to a denial-of-service. This problem was addressed by removing the vulnerable code. The Messages application on Apple platforms is impacted.
Recommendations For macOS Ventura version 13.6.7 and earlier, update to macOS Ventura 13.6.7 or later. For macOS Monterey version 12.7.5 and earlier, update to macOS Monterey 12.7.5 or later. For iOS versions 16.7.8 and earlier, update to iOS 16.7.8 or later. For iOS versions 17.5 and earlier, update to iOS 17.5 or later. For iPadOS versions 16.7.8 and earlier, update to iPadOS 16.7.8 or later. For iPadOS versions 17.5 and earlier, update to iPadOS 17.5 or later. For tvOS version 17.5 and earlier, update to tvOS 17.5 or later. For visionOS version 1.2 and earlier, update to visionOS 1.2 or later. For watchOS version 10.5 and earlier, update to watchOS 10.5 or later. For macOS Sonoma version 14.5 and earlier, update to macOS Sonoma 14.5 or later.

Fix

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2024-27800

Affected Products

Apple Macos
Ios
Ipados
Macos Monterey
Macos Sonoma
Macos Ventura
Tvos
Visionos
Watchos