PT-2024-2647 · Apple · Ipados+1

Om Kothawade

·

Published

2024-03-05

·

Updated

2024-12-05

·

CVE-2024-23256

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions iOS versions prior to 17.4 iPadOS versions prior to 17.4
Description A logic issue was addressed with improved state management. The issue allows a user's locked tabs to be briefly visible while switching tab groups when Locked Private Browsing is enabled. This may permit an attacker to disclose protected information.
Recommendations For iOS versions prior to 17.4, update to iOS 17.4 to resolve the issue. For iPadOS versions prior to 17.4, update to iPadOS 17.4 to resolve the issue.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2024-02714
CVE-2024-23256

Affected Products

Ios
Ipados