CVE-2024-23226

EUVD-2024-20745
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.4. Processing web content may lead to arbitrary code execution.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
Affected Products (NVD)
VendorProductVersion
appleipad_os
𝑥
< 17.4
appleiphone_os
𝑥
< 17.4
applemacos
14.0 ≤
𝑥
< 14.4
appletvos
𝑥
< 17.4
applevisionos
𝑥
< 1.1
applewatchos
𝑥
< 10.4
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
applevisionos
𝑥
< 1.1
ADP
appletvos
𝑥
< 17.4
ADP
appleios
𝑥
< 17.4
ADP
appleipados
𝑥
< 17.4
ADP
applemacos
𝑥
< 14.4
ADP
applewatchos
𝑥
< 10.4
ADP
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
webkitgtk
bionic
ignored
focal
dne
jammy
dne
mantic
dne
noble
dne
xenial
ignored
webkit2gtk
bionic
ignored
focal
ignored
jammy
not-affected
mantic
not-affected
noble
not-affected
xenial
ignored
qtwebkit-source
bionic
ignored
focal
dne
jammy
dne
mantic
dne
noble
dne
xenial
ignored
wpewebkit
focal
ignored
jammy
ignored
mantic
dne
noble
dne
qtwebkit-opensource-src
bionic
ignored
focal
ignored
jammy
ignored
mantic
ignored
noble
ignored
xenial
ignored