PT-2024-4842 · Apple · Ipados+3

Csaba Fitzl

+1

·

Published

2024-05-13

·

Updated

2025-07-29

·

CVE-2024-27848

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions iPadOS versions prior to 17.5 iOS versions prior to 17.5 macOS versions prior to Sonoma 14.5
Description The issue relates to inherited permissions errors within the StorageKit component. Exploitation may allow an attacker to elevate privileges to the root level. A malicious application may be able to gain root privileges.
Recommendations Update to iPadOS 17.5 or later. Update to iOS 17.5 or later. Update to macOS Sonoma 14.5 or later.

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

BDU:2024-05366
CVE-2024-27848

Affected Products

Apple Macos
Ios
Ipados
Macos Sonoma