macOS
macOS 12.7.4
Advisory officielmacOS 12.7.4, publié le 2024-03-07, corrige 28 CVE, dont 1 activement exploitée (CISA KEV). Les versions antérieures restent exposées à ces vulnérabilités.
- Date de sortie
- 2024-03-07
- Fin de support
- 2024-09-16 · EOL
- CVE corrigées
- 28
- KEV CISA
- 1
12 élevé
CVE corrigées
| CVE |
|---|
|
CVE-2024-23225
HIGH 7.8
KEV
A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Monterey… |
|
CVE-2024-23299
HIGH 8.6
The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to brea… |
|
CVE-2024-23265
HIGH 7.8
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Mon… |
|
CVE-2024-23268
HIGH 7.8
An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app … |
|
CVE-2024-23270
HIGH 7.8
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura… |
|
CVE-2024-23274
HIGH 7.8
An injection issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app … |
|
CVE-2024-23276
HIGH 7.8
A logic issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to … |
|
CVE-2024-23286
HIGH 7.8
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Monte… |
|
CVE-2024-23244
HIGH 7.8
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4. An app from a standard user account ma… |
|
CVE-2024-23247
HIGH 7.8
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. Processing a file… |
|
CVE-2024-23204
HIGH 7.5
The issue was addressed with additional permissions checks. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.… |
|
CVE-2024-23216
HIGH 7.1
A path handling issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may… |
|
CVE-2024-23234
MEDIUM 6.7
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.… |
|
CVE-2024-23218
MEDIUM 5.9
A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions. This issue is fixed in iOS 16.7.6 and iPad… |
|
CVE-2023-40389
MEDIUM 5.5
The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Ventura 13.6.5, macOS Monterey 12.7.4. An app may be a… |
|
CVE-2024-23264
MEDIUM 5.5
A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Montere… |
|
CVE-2024-23266
MEDIUM 5.5
The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to modi… |
|
CVE-2024-23267
MEDIUM 5.5
The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able to bypa… |
|
CVE-2024-23269
MEDIUM 5.5
A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Monterey 12.7.4, ma… |
|
CVE-2024-23272
MEDIUM 5.5
A logic issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An attacker may gain a… |
|
CVE-2024-23283
MEDIUM 5.5
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, macOS Monterey 12.7.4,… |
|
CVE-2023-28826
MEDIUM 5.5
This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, macOS Monterey 12.7.4, macOS So… |
|
CVE-2024-23201
MEDIUM 5.5
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.4, macOS Sonoma 14.3, macO… |
|
CVE-2024-23230
MEDIUM 5.5
This issue was addressed with improved file handling. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be able… |
|
CVE-2024-23275
MEDIUM 4.7
A race condition was addressed with additional validation. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5. An app may be… |
|
CVE-2024-23245
LOW 3.3
This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.5… |
|
CVE-2024-23257
LOW 3.3
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ven… |
|
CVE-2024-23227
LOW 3.3
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, macOS Ventura 13.6.… |
Déployer cette mise à jour macOS sur votre flotte
Appaloosa déploie et contrôle les mises à jour macOS sur tout votre parc.