seclists.org
http://seclists.org/fulldisclosure/2024/Oct/10 CVE-2024-44218
HIGH
Record summary
CVE-2024-44218 has a selected CVSS score of 7.8 (high).
Description
This issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, macOS Sonoma 14.7.1. Processing a maliciously crafted file may lead to heap corruption.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 31, 2024 · Source: CVE List
Affected products and versions
4| Product | Source | Version range | Status |
|---|---|---|---|
iOS and iPadOSBrowse Apple / iOS and iPadOS | CVE List | Before 17.7.1 | affected |
| Before 18.1 | affected | ||
macOSBrowse Apple / macOSDefault status: unknown | CVE List | Before 14.7.1 | affected |
| Before 15.1 | affected | ||
| Before 14.7 | affected | ||
Default status: unknown | CVE List | Before 17.7 | affected |
| Before 18.1 | affected | ||
ipadosBrowse apple / ipadosDefault status: unknown | CVE List | Before 17.7 | affected |
| Before 18.1 | affected |
References
8seclists.org
http://seclists.org/fulldisclosure/2024/Oct/11 seclists.org
http://seclists.org/fulldisclosure/2024/Oct/12 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-44218 support.apple.com
https://support.apple.com/en-us/121563 support.apple.com
https://support.apple.com/en-us/121564 support.apple.com
https://support.apple.com/en-us/121567 support.apple.com
https://support.apple.com/en-us/121570