CVE-2024-23208

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jan 23, 2024
Updated: Jan 30, 2024

Summary

CVE-2024-23208 is a recently identified vulnerability affecting multiple Apple operating systems, including macOS Sonoma, watchOS, tvOS, iOS, and iPadOS. The issue stems from insufficient memory handling, which can allow a malicious application to execute arbitrary code with kernel privileges. This serious security flaw could potentially enable attackers to gain administrative control over affected devices. Apple has addressed this vulnerability with the release of versions 14.3 for macOS Sonoma, 10.3 for watchOS, 17.3 for tvOS, 17.3 for iOS, and 17.3 for iPadOS. Users are strongly advised to update their systems to the latest available versions to mitigate the risk associated with this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Apple (iPhone OS)
  • iPadOS
  • Apple Watch
  • tvOS
  • WatchOS

Affected Vendors

  • Apple