Record summary

CVE-2024-27804 has a selected CVSS score of 8.1 (high); EIP currently links 2 repository PoCs.

Description

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.3, watchOS 10.5. An app may be able to cause unexpected system termination.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
2

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated May 16, 2024 · Source: CVE List

Affected products and versions

7
ProductSourceVersion rangeStatus
CVE ListBefore 17.5affected

Default status: unknown

CVE ListBefore 14.5affected

Default status: unknown

CVE ListBefore 17.5affected
CVE ListBefore 1.3affected

Default status: unknown

CVE ListBefore 10.5affected

Default status: unknown

CVE ListBefore 17.5affected

Default status: unknown

CVE ListBefore 17.5affected

Proofs of concept

2

Repository PoCs

GitHuba0zhar/QuarkPoCRepository PoCby a0zharStars: 1Not analyzed11 files

Objective-C · 133.1 KiB

GitHub

PoC details
GitHubSnoopyTools/Rootkit-cve2024Repository PoCby SnoopyToolsStars: 0Not analyzed6 files

Objective-C · 131.9 KiB

GitHub

PoC details

References

Showing 12 of 20