CVE-2024-44206

An issue in the handling of URL protocols was addressed with improved logic. This issue is fixed in tvOS 17.6, visionOS 1.3, Safari 17.6, watchOS 10.6, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6. A user may be able to bypass some web content restrictions.
References
Link Resource
https://support.apple.com/en-us/120909 Release Notes Vendor Advisory
https://support.apple.com/en-us/120911 Release Notes Vendor Advisory
https://support.apple.com/en-us/120913 Release Notes Vendor Advisory
https://support.apple.com/en-us/120914 Release Notes Vendor Advisory
https://support.apple.com/en-us/120915 Release Notes Vendor Advisory
https://support.apple.com/en-us/120916 Release Notes Vendor Advisory
http://seclists.org/fulldisclosure/2024/Nov/6
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-10-24 17:15

Updated : 2024-11-21 21:15


NVD link : CVE-2024-44206

Mitre link : CVE-2024-44206

CVE.ORG link : CVE-2024-44206


JSON object : View

Products Affected

apple

  • macos
  • visionos
  • tvos
  • safari
  • ipados
  • iphone_os