Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-40815


A race condition was addressed with additional validation. This issue is fixed in macOS Ventura 13.6.8, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, macOS Sonoma 14.6. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.


Published

2024-07-29T23:15:13.523

Last Modified

2025-03-13T19:15:46.173

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-362
  • Type: Secondary
    CWE-352

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System apple ipados < 17.6 Yes
Operating System apple iphone_os < 17.6 Yes
Operating System apple macos < 13.6.8 Yes
Operating System apple macos < 14.6 Yes
Operating System apple tvos < 17.6 Yes
Operating System apple watchos < 10.6 Yes

References