CVE-2024-54558
published 2025-03-10CVE-2024-54558: A clickjacking issue was addressed with improved out-of-process view handling. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be…
low2.8CVSS 3.1
AVLACLPRLUIRSUCLINAN
A clickjacking issue was addressed with improved out-of-process view handling. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be able to trick a user into granting access to photos from the user's photo library.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_18_and_ipados | — | — |
| apple | ios_and_ipados | < 18 | 18 |
| apple | ipados | < 18.0 | 18.0 |
| apple | iphone_os | < 18.0 | 18.0 |
| apple | macos | < 15 | 15 |
| apple | macos | < 15.0 | 15.0 |
| apple | macos_sequoia | — | — |
Apple
CVE-2024-54558: macOS Sequoia 15
vendor_apple·2024-09-16·CVSS 2.8
CVE-2024-54558 [LOW] CVE-2024-54558: macOS Sequoia 15
Apple Security Update: About the security content of macOS Sequoia 15
Product: macOS Sequoia
Version: 15
CVE: CVE-2024-54558
Component: TCC
Impact: An app may be able to trick a user into granting access to photos from the user's photo library
Description: A clickjacking issue was addressed with improved out-of-process view handling.
Apple
CVE-2024-54558: iOS 18 and iPadOS 18
vendor_apple·2024-09-16·CVSS 2.8
CVE-2024-54558 [LOW] CVE-2024-54558: iOS 18 and iPadOS 18
Apple Security Update: About the security content of iOS 18 and iPadOS 18
Product: iOS 18 and iPadOS
Version: 18
CVE: CVE-2024-54558
Component: TCC
Impact: An app may be able to trick a user into granting access to photos from the user's photo library
Description: A clickjacking issue was addressed with improved out-of-process view handling.
GHSA
GHSA-xq2q-rgqf-8r75: A clickjacking issue was addressed with improved out-of-process view handling
ghsa_unreviewed·2025-03-10
CVE-2024-54558 [HIGH] CWE-451 GHSA-xq2q-rgqf-8r75: A clickjacking issue was addressed with improved out-of-process view handling
A clickjacking issue was addressed with improved out-of-process view handling. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be able to trick a user into granting access to photos from the user's photo library.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-03-10
Published