iOS
iOS 17.7.1
Advisory officiel23 CVE corrigées par cette release.
- Date de sortie
- 2024-10-28
- Fin de support
- 2024-11-19 EOL
- CVE corrigées
- 23
- KEV CISA
- 0
- Critique
- 0
- Élevé
- 0
- En attente NVD
- 23
CVE corrigées
| CVE | Sévérité | KEV | Publié | Description |
|---|---|---|---|---|
|
CVE-2024-40854
[Apple GPU Drivers] An app may be able to cause unexpected system termination |
N/A | — | [Apple GPU Drivers] An app may be able to cause unexpected system termination | |
|
CVE-2024-44144
[Apple SceneKit] Processing a maliciously crafted file may lead to unexpected app termination |
N/A | — | [Apple SceneKit] Processing a maliciously crafted file may lead to unexpected app termination | |
|
CVE-2024-44155
[Apple Safari] Maliciously crafted web content may violate iframe sandboxing policy |
N/A | — | [Apple Safari] Maliciously crafted web content may violate iframe sandboxing policy | |
|
CVE-2024-44215
[Apple ImageIO] Processing an image may result in disclosure of process memory |
N/A | — | [Apple ImageIO] Processing an image may result in disclosure of process memory | |
|
CVE-2024-44218
[Apple SceneKit] Processing a maliciously crafted file may lead to heap corruption |
N/A | — | [Apple SceneKit] Processing a maliciously crafted file may lead to heap corruption | |
|
CVE-2024-44232
[Apple AppleAVD] Parsing a maliciously crafted video file may lead to unexpected system termination |
N/A | — | [Apple AppleAVD] Parsing a maliciously crafted video file may lead to unexpected system termination | |
|
CVE-2024-44233
[Apple AppleAVD] Parsing a maliciously crafted video file may lead to unexpected system termination |
N/A | — | [Apple AppleAVD] Parsing a maliciously crafted video file may lead to unexpected system termination | |
|
CVE-2024-44234
[Apple AppleAVD] Parsing a maliciously crafted video file may lead to unexpected system termination |
N/A | — | [Apple AppleAVD] Parsing a maliciously crafted video file may lead to unexpected system termination | |
|
CVE-2024-44239
[Apple Kernel] An app may be able to leak sensitive kernel state |
N/A | — | [Apple Kernel] An app may be able to leak sensitive kernel state | |
|
CVE-2024-44240
[Apple CoreText] Processing a maliciously crafted font may result in the disclosure of process memory |
N/A | — | [Apple CoreText] Processing a maliciously crafted font may result in the disclosure of process memory | |
|
CVE-2024-44252
[Apple MobileBackup] Restoring a maliciously crafted backup file may lead to modification of protected system files |
N/A | — | [Apple MobileBackup] Restoring a maliciously crafted backup file may lead to modification of protected system files | |
|
CVE-2024-44258
[Apple Managed Configuration] Restoring a maliciously crafted backup file may lead to modification of protected system … |
N/A | — | [Apple Managed Configuration] Restoring a maliciously crafted backup file may lead to modification of protected system files | |
|
CVE-2024-44259
[Apple Safari Downloads] An attacker may be able to misuse a trust relationship to download malicious content |
N/A | — | [Apple Safari Downloads] An attacker may be able to misuse a trust relationship to download malicious content | |
|
CVE-2024-44261
[Apple VoiceOver] An attacker may be able to view restricted content from the lock screen |
N/A | — | [Apple VoiceOver] An attacker may be able to view restricted content from the lock screen | |
|
CVE-2024-44269
[Apple Shortcuts] A malicious app may use shortcuts to access restricted files |
N/A | — | [Apple Shortcuts] A malicious app may use shortcuts to access restricted files | |
|
CVE-2024-44274
[Apple Accessibility] An attacker with physical access to a locked device may be able to view sensitive user information |
N/A | — | [Apple Accessibility] An attacker with physical access to a locked device may be able to view sensitive user information | |
|
CVE-2024-44278
[Apple Siri] A sandboxed app may be able to access sensitive user data in system logs |
N/A | — | [Apple Siri] A sandboxed app may be able to access sensitive user data in system logs | |
|
CVE-2024-44282
[Apple Foundation] Parsing a file may lead to disclosure of user information |
N/A | — | [Apple Foundation] Parsing a file may lead to disclosure of user information | |
|
CVE-2024-44296
[Apple WebKit] Processing maliciously crafted web content may prevent Content Security Policy from being enforced |
N/A | — | [Apple WebKit] Processing maliciously crafted web content may prevent Content Security Policy from being enforced | |
|
CVE-2024-44297
[Apple ImageIO] Processing a maliciously crafted message may lead to a denial-of-service |
N/A | — | [Apple ImageIO] Processing a maliciously crafted message may lead to a denial-of-service | |
|
CVE-2024-44302
[Apple CoreText] Processing a maliciously crafted font may result in the disclosure of process memory |
N/A | — | [Apple CoreText] Processing a maliciously crafted font may result in the disclosure of process memory | |
|
CVE-2024-54470
[Apple Siri] An attacker with physical access may be able to access contacts from the lock screen |
N/A | — | [Apple Siri] An attacker with physical access may be able to access contacts from the lock screen | |
|
CVE-2024-54538
[Apple Security] A remote attacker may be able to cause a denial-of-service |
N/A | — | [Apple Security] A remote attacker may be able to cause a denial-of-service |