This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14.6, iOS 17.6 and iPadOS 17.6, Safari 17.6. Private Browsing tabs may be accessed without authentication.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2024/Jul/15 | Mailing List Third Party Advisory |
http://seclists.org/fulldisclosure/2024/Jul/16 | Mailing List Third Party Advisory |
http://seclists.org/fulldisclosure/2024/Jul/18 | Mailing List Third Party Advisory |
https://support.apple.com/en-us/HT214117 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT214119 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT214121 | Release Notes Vendor Advisory |
http://seclists.org/fulldisclosure/2024/Jul/15 | Mailing List Third Party Advisory |
http://seclists.org/fulldisclosure/2024/Jul/16 | Mailing List Third Party Advisory |
http://seclists.org/fulldisclosure/2024/Jul/18 | Mailing List Third Party Advisory |
https://support.apple.com/en-us/HT214117 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT214119 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT214121 | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
14 Mar 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-287 |
Information
Published : 2024-07-29 23:15
Updated : 2025-03-14 19:15
NVD link : CVE-2024-40794
Mitre link : CVE-2024-40794
CVE.ORG link : CVE-2024-40794
JSON object : View
Products Affected
apple
- iphone_os
- safari
- macos
- ipados
CWE