VulnerabilityModified
CVE-2024-54541
This issue was addressed through improved state management.
MEDIUM 5.5EPSS 0.21%
Does this matter?
Lower severity and a low EPSS score (0.21%). Track it; it rarely justifies an emergency change on its own.
Description
This issue was addressed through improved state management. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventura 13.7.2, tvOS 18.2, visionOS 2.2, watchOS 11.2. An app may be able to access user-sensitive data.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 0.21% probability · 11th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-922
- Affected
- apple/ipados · apple/iphone os · apple/macos · apple/tvos · apple/visionos · apple/watchos
- Source
- product-security@apple.com
References
- https://support.apple.com/en-us/121837Release Notes
- https://support.apple.com/en-us/121839Release Notes
- https://support.apple.com/en-us/121840Release Notes
- https://support.apple.com/en-us/121842Release Notes
- https://support.apple.com/en-us/121843Release Notes
- https://support.apple.com/en-us/121844Release Notes
- https://support.apple.com/en-us/121845Release Notes
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.