CVE-2024-27878

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.6. An app with root privileges may be able to execute arbitrary code with kernel privileges.
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

10 Dec 2024, 15:14

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 6.7
First Time Apple
Apple macos
CWE CWE-120
References () http://seclists.org/fulldisclosure/2024/Jul/18 - () http://seclists.org/fulldisclosure/2024/Jul/18 - Mailing List
References () https://support.apple.com/en-us/HT214119 - () https://support.apple.com/en-us/HT214119 - Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

Information

Published : 2024-07-29 23:15

Updated : 2025-03-13 20:15


NVD link : CVE-2024-27878

Mitre link : CVE-2024-27878

CVE.ORG link : CVE-2024-27878


JSON object : View

Products Affected

apple

  • macos
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')