Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Visionos
(Apple)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 111 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-10-28 | CVE-2024-44255 | A path handling issue was addressed with improved logic. This issue is fixed in visionOS 2.1, iOS 18.1 and iPadOS 18.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, tvOS 18.1. A malicious app may be able to run arbitrary shortcuts without user consent. | Ipados, Iphone_os, Macos, Tvos, Visionos, Watchos | 7.8 | ||
2024-10-28 | CVE-2024-44262 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in visionOS 2.1. A user may be able to view sensitive user information. | Visionos | 5.5 | ||
2024-10-28 | CVE-2024-44282 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, visionOS 2.1. Parsing a file may lead to disclosure of user information. | Ipados, Iphone_os, Macos, Tvos, Visionos, Watchos | 5.5 | ||
2024-10-28 | CVE-2024-44285 | A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 18.1 and iPadOS 18.1, watchOS 11.1, visionOS 2.1, tvOS 18.1. An app may be able to cause unexpected system termination or corrupt kernel memory. | Ipados, Iphone_os, Tvos, Visionos, Watchos | 7.8 | ||
2024-10-28 | CVE-2024-44297 | The issue was addressed with improved bounds checks. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, visionOS 2.1. Processing a maliciously crafted message may lead to a denial-of-service. | Ipad_os, Iphone_os, Macos, Tvos, Visionos, Watchos | 6.5 | ||
2024-10-28 | CVE-2024-44229 | An information leakage was addressed with additional validation. This issue is fixed in visionOS 2.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, Safari 18.1. Private browsing may leak some browsing history. | Ipados, Iphone_os, Visionos | 5.3 | ||
2024-09-17 | CVE-2024-44165 | A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, visionOS 2, iOS 18 and iPadOS 18, macOS Sonoma 14.7, macOS Sequoia 15. Network traffic may leak outside a VPN tunnel. | Ipados, Iphone_os, Macos, Visionos | 7.5 | ||
2024-09-17 | CVE-2024-40857 | This issue was addressed through improved state management. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. Processing maliciously crafted web content may lead to universal cross site scripting. | Ipados, Iphone_os, Macos, Safari, Tvos, Visionos, Watchos | 6.1 | ||
2024-09-17 | CVE-2024-44176 | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in macOS Ventura 13.7, iOS 17.7 and iPadOS 17.7, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, macOS Sonoma 14.7, tvOS 18. Processing an image may lead to a denial-of-service. | Ipados, Iphone_os, Macos, Tvos, Visionos, Watchos | 5.5 | ||
2024-09-17 | CVE-2024-44187 | A cross-origin issue existed with "iframe" elements. This was addressed with improved tracking of security origins. This issue is fixed in Safari 18, visionOS 2, watchOS 11, macOS Sequoia 15, iOS 18 and iPadOS 18, tvOS 18. A malicious website may exfiltrate data cross-origin. | Ipados, Iphone_os, Macos, Safari, Tvos, Visionos, Watchos | 6.5 |