CVE-2024-27857

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
10/06/2024
Last modified:
02/04/2026

Description

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2. A remote attacker may be able to cause unexpected app termination or arbitrary code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* 17.5 (excluding)
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 17.5 (excluding)
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* 14.0 (including) 14.5 (excluding)
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* 17.5 (excluding)
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* 1.2 (excluding)