PT-2024-22042 · Apple · Visionos+8
Daniel Zajork
+1
·
Published
2024-05-13
·
Updated
2024-07-03
·
CVE-2024-27800
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
macOS Ventura versions 13.6.7 and earlier
macOS Monterey versions 12.7.5 and earlier
iOS versions 16.7.8 and earlier, 17.5 and earlier
iPadOS versions 16.7.8 and earlier, 17.5 and earlier
tvOS version 17.5 and earlier
visionOS version 1.2 and earlier
watchOS version 10.5 and earlier
macOS Sonoma version 14.5 and earlier
Description
The issue is related to the processing of maliciously crafted messages, which may lead to a denial-of-service. This problem was addressed by removing the vulnerable code. The Messages application on Apple platforms is impacted.
Recommendations
For macOS Ventura version 13.6.7 and earlier, update to macOS Ventura 13.6.7 or later.
For macOS Monterey version 12.7.5 and earlier, update to macOS Monterey 12.7.5 or later.
For iOS versions 16.7.8 and earlier, update to iOS 16.7.8 or later.
For iOS versions 17.5 and earlier, update to iOS 17.5 or later.
For iPadOS versions 16.7.8 and earlier, update to iPadOS 16.7.8 or later.
For iPadOS versions 17.5 and earlier, update to iPadOS 17.5 or later.
For tvOS version 17.5 and earlier, update to tvOS 17.5 or later.
For visionOS version 1.2 and earlier, update to visionOS 1.2 or later.
For watchOS version 10.5 and earlier, update to watchOS 10.5 or later.
For macOS Sonoma version 14.5 and earlier, update to macOS Sonoma 14.5 or later.
Fix
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos
Ios
Ipados
Macos Monterey
Macos Sonoma
Macos Ventura
Tvos
Visionos
Watchos