PT-2024-22078 · Apple · Safari+3

Narendra Bhati

+1

·

Published

2024-05-13

·

Updated

2024-08-01

·

CVE-2024-27844

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions visionOS versions prior to 1.2 macOS Sonoma versions prior to 14.5 Safari versions prior to 17.5
Description The issue allows a website's permission dialog to persist after navigation away from the site. This was addressed with improved checks.
Recommendations For visionOS versions prior to 1.2, update to visionOS 1.2 to resolve the issue. For macOS Sonoma versions prior to 14.5, update to macOS Sonoma 14.5 to resolve the issue. For Safari versions prior to 17.5, update to Safari 17.5 to resolve the issue.

Fix

Related Identifiers

CVE-2024-27844

Affected Products

Apple Macos
Safari
Macos Sonoma
Visionos