CVE-2024-27840

EUVD-2024-25033
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Ventura 13.6.7, tvOS 17.5, visionOS 1.2, watchOS 10.5. An attacker that has already achieved kernel code execution may be able to bypass kernel memory protections.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.3 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 3%
Affected Products (NVD)
VendorProductVersion
appleipados
𝑥
< 16.7.8
appleipados
17.0 ≤
𝑥
< 17.5
appleiphone_os
𝑥
< 16.7.8
appleiphone_os
17.0 ≤
𝑥
< 17.5
applemacos
12.0 ≤
𝑥
< 12.7.5
applemacos
13.0 ≤
𝑥
< 13.6.7
appletvos
𝑥
< 17.5
applevisionos
𝑥
< 1.2
applewatchos
𝑥
< 10.5
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
appleiphone_os
𝑥
< 17.5
ADP
appleiphone_os
𝑥
< 16.7.8
ADP
appleipad_os
𝑥
< 17.5
ADP
appleipad_os
𝑥
< 16.7.8
ADP
applemacos
𝑥
< 13.6.7
ADP
applemacos
𝑥
< 12.7.5
ADP
applewatchos
𝑥
< 10.5
ADP
applevisionos
𝑥
< 1.2
ADP
appletvos
𝑥
< 17.5
ADP