VDB

CVE-2024-40771

CVE-2024-40771 PUBLISHED CVSS 7.800000190734863 HIGH

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, watchOS 10.5, tvOS 17.5, macOS Ventura 13.6.7, visionOS 1.2. An app may be able to execute arbitrary code with kernel privileges.

EPSS 0.18% · 7.5th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.18%
7.5th percentile

Affected Products

VendorProductVersions
applemacos13.0, 12.0, 14.0
ApplevisionOSunspecified
appleiphone_os0, 17.0
appleipados17.0, 0
applevisionos0
AppleiOS and iPadOS*, *
ApplewatchOS*
ApplemacOSunspecified, unspecified, unspecified
AppletvOSunspecified
appletvos0

Timeline

  • Jan 15, 2025 CVE Published
  • Jan 15, 2025 PoC Published
  • Jan 15, 2025 PoC Published
  • Jan 15, 2025 PoC Published
  • Jan 16, 2025 EPSS Score
  • Jan 16, 2025 PoC Published
  • Feb 1, 2025 EPSS Score
  • Feb 16, 2025 EPSS Score
  • Mar 4, 2025 EPSS Score
  • Mar 19, 2025 EPSS Score
  • Apr 4, 2025 EPSS Score
  • Apr 19, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›