CVE-2024-40850

A file access issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, macOS Sonoma 14.7, tvOS 18. An app may be able to access user-sensitive data.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Nov 2025, 17:16

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Sep/32 -
  • () http://seclists.org/fulldisclosure/2024/Sep/33 -
  • () http://seclists.org/fulldisclosure/2024/Sep/36 -
  • () http://seclists.org/fulldisclosure/2024/Sep/39 -
  • () http://seclists.org/fulldisclosure/2024/Sep/40 -
  • () http://seclists.org/fulldisclosure/2024/Sep/41 -

22 Mar 2025, 14:15

Type Values Removed Values Added
CWE CWE-200

Information

Published : 2024-09-17 00:15

Updated : 2025-11-04 17:16


NVD link : CVE-2024-40850

Mitre link : CVE-2024-40850

CVE.ORG link : CVE-2024-40850


JSON object : View

Products Affected

apple

  • watchos
  • visionos
  • iphone_os
  • tvos
  • macos
  • ipados
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor