A race condition was addressed with additional validation. This issue is fixed in iPadOS 17.7.3, watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, iOS 18.2 and iPadOS 18.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. An attacker may be able to create a read-only memory mapping that can be written to.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/121837 | Vendor Advisory |
https://support.apple.com/en-us/121838 | Vendor Advisory |
https://support.apple.com/en-us/121839 | Vendor Advisory |
https://support.apple.com/en-us/121840 | Vendor Advisory |
https://support.apple.com/en-us/121842 | Vendor Advisory |
https://support.apple.com/en-us/121843 | Vendor Advisory |
https://support.apple.com/en-us/121844 | Vendor Advisory |
https://support.apple.com/en-us/121845 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
13 Dec 2024, 18:31
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-362 | |
References | () https://support.apple.com/en-us/121837 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121838 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121839 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121840 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121842 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121843 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121844 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121845 - Vendor Advisory | |
CPE | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* |
|
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.9 |
First Time |
Apple macos
Apple ipados Apple iphone Os Apple Apple visionos Apple watchos Apple tvos |
12 Dec 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-12-12 02:15
Updated : 2024-12-16 19:15
NVD link : CVE-2024-54494
Mitre link : CVE-2024-54494
CVE.ORG link : CVE-2024-54494
JSON object : View
Products Affected
apple
- watchos
- macos
- visionos
- tvos
- ipados
- iphone_os
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')