PT-2024-41824 · Apple · Apple Macos

Published

2024-10-28

·

Updated

2026-04-03

·

CVE-2024-44286

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 15.1
Description A flaw allows a local attacker with physical access to inject keyboard events into applications running on a locked device. This was addressed through improved state management.
Recommendations Update to macOS version 15.1 or later.

Fix

Authentication Bypass Using an Alternate Path or Channel

Weakness Enumeration

Related Identifiers

CVE-2024-44286

Affected Products

Apple Macos