CVE-2024-44170Apple IOS AND Ipados vulnerability

6 documents4 sources
Severity
5.5MEDIUMNVD
EPSS
0.1%
top 81.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 17

Description

A privacy issue was addressed by moving sensitive data to a more secure location. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, watchOS 11. An app may be able to access user-sensitive data.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages7 packages

CVEListV5apple/macos< 15
NVDapple/macos< 15.0
NVDapple/ipados< 18.0
CVEListV5apple/watchos< 11
NVDapple/watchos< 11.0

🔴Vulnerability Details

2
GHSA
GHSA-qh4m-mqcp-x24m: A privacy issue was addressed by moving sensitive data to a more secure location2024-09-17
CVEList
CVE-2024-44170: A privacy issue was addressed by moving sensitive data to a more secure location2024-09-16

📋Vendor Advisories

3
Apple
CVE-2024-44170: watchOS112024-09-16
Apple
CVE-2024-44170: iOS 18 and iPadOS 182024-09-16
Apple
CVE-2024-44170: macOS Sequoia 152024-09-16
CVE-2024-44170 — Apple IOS AND Ipados vulnerability | cvebase