CVE-2024-40864

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
31/03/2025
Last modified:
04/04/2025

Description

The issue was addressed with improved handling of protocols. This issue is fixed in macOS Ventura 13.7.5, macOS Sonoma 14.7.5. An attacker in a privileged network position can track a user's activity.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* 13.7.5 (excluding)
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* 14.0 (including) 14.7.5 (excluding)