CVE-2024-44162

Severity
7.8HIGH
EPSS
0.1%
top 74.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 17

Description

This issue was addressed by enabling hardened runtime. This issue is fixed in Xcode 16. A malicious application may gain access to a user's Keychain items.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

โ–ถCVEListV5apple/xcode< 16
โ–ถNVDapple/xcode< 16.0

๐Ÿ”ดVulnerability Details

2
GHSA
GHSA-6xw6-r35g-4w48: This issue was addressed by enabling hardened runtimeโ†—2024-09-17
โ–ถ
CVEList
CVE-2024-44162: This issue was addressed by enabling hardened runtimeโ†—2024-09-16
โ–ถ

๐Ÿ“‹Vendor Advisories

1
Apple
CVE-2024-44162: Xcode 16โ†—2024-09-16
โ–ถ