PT-2024-29071 · Apple · Apple Macos

Mickey Jin

·

Published

2024-07-29

·

Updated

2024-12-10

·

CVE-2024-40814

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 14.6
Description A downgrade issue was addressed with additional code-signing restrictions. This issue may allow an app to bypass Privacy preferences.
Recommendations For versions prior to 14.6, update to macOS Sonoma 14.6 to resolve the issue.

Fix

Improper Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-40814

Affected Products

Apple Macos