An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sonoma 14.2, macOS Ventura 13.6.3, macOS Monterey 12.7.2. A user may be able to cause unexpected app termination or arbitrary code execution.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Accessibility | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Accounts | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Appleevents | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Applegraphicscontrol | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Appleva | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Archiveutility | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Assets | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Automation | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Avevideoencoder | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Bluetooth | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Coremediaplayback | — | — | Oct 14, 2024 | Dec 12, 2023 |
| Apple Osx Coreservices | — | Upgrade macOS to the latest version | Dec 12, 2023 | Dec 12, 2023 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub