CVE-2024-23258
published 2024-03-08CVE-2024-23258: An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Sonoma 14.4, visionOS 1.1. Processing an image may lead to…
high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Sonoma 14.4, visionOS 1.1. Processing an image may lead to arbitrary code execution.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | macos | < 14.4 | 14.4 |
| apple | macos | >= 14.0 < 14.4 | 14.4 |
| apple | macos_sonoma | — | — |
| apple | visionos | < 1.1 | 1.1 |
| apple | visionos | — | — |
GHSA
GHSA-rf7r-2hr8-m287: An out-of-bounds read was addressed with improved input validation
ghsa_unreviewed·2024-03-08
CVE-2024-23258 [HIGH] CWE-125 GHSA-rf7r-2hr8-m287: An out-of-bounds read was addressed with improved input validation
An out-of-bounds read was addressed with improved input validation. This issue is fixed in visionOS 1.1, macOS Sonoma 14.4. Processing an image may lead to arbitrary code execution.
Apple
CVE-2024-23258: visionOS 1.1
vendor_apple·2024-03-07·CVSS 7.8
CVE-2024-23258 [HIGH] CVE-2024-23258: visionOS 1.1
Apple Security Update: About the security content of visionOS 1.1
Product: visionOS
Version: 1.1
CVE: CVE-2024-23258
Component: ImageIO
Impact: Processing an image may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
Apple
CVE-2024-23258: macOS Sonoma 14.4
vendor_apple·2024-03-07·CVSS 7.8
CVE-2024-23258 [HIGH] CVE-2024-23258: macOS Sonoma 14.4
Apple Security Update: About the security content of macOS Sonoma 14.4
Product: macOS Sonoma
Version: 14.4
CVE: CVE-2024-23258
Component: ImageIO
Impact: Processing an image may lead to arbitrary code execution
Description: An out-of-bounds read was addressed with improved input validation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://support.apple.com/en-us/120883https://support.apple.com/en-us/120895http://seclists.org/fulldisclosure/2024/Mar/21http://seclists.org/fulldisclosure/2024/Mar/26https://support.apple.com/en-us/HT214084https://support.apple.com/en-us/HT214087https://support.apple.com/kb/HT214084https://support.apple.com/kb/HT214087
2024-03-08
Published