CVE-2024-23249Improper Resource Shutdown or Release in Apple Macos

Severity
7.1HIGHNVD
EPSS
0.0%
top 86.11%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 8

Description

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.4. Processing a file may lead to a denial-of-service or potentially disclose memory contents.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2

Affected Packages3 packages

Appleapple/macos_sonoma14.4
CVEListV5apple/macos< 14.4
NVDapple/macos14.014.4

🔴Vulnerability Details

1
GHSA
GHSA-j2cw-j27w-3f6m: The issue was addressed with improved memory handling2024-03-08

📋Vendor Advisories

1
Apple
CVE-2024-23249: macOS Sonoma 14.42024-03-07