The issue was addressed with improved checks. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, watchOS 11.1, visionOS 2.1, macOS Sequoia 15.1, Safari 18.1. Processing maliciously crafted web content may prevent Content Security Policy from being enforced.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/121566 | Vendor Advisory |
https://support.apple.com/en-us/121567 | Vendor Advisory |
https://support.apple.com/en-us/121569 | Vendor Advisory |
https://support.apple.com/en-us/121565 | Vendor Advisory |
https://support.apple.com/en-us/121563 | Vendor Advisory |
https://support.apple.com/en-us/121564 | Vendor Advisory |
https://support.apple.com/en-us/121571 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
14 Nov 2024, 14:58
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.apple.com/en-us/121569 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121563 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121567 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121566 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121571 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121565 - Vendor Advisory | |
References | () https://support.apple.com/en-us/121564 - Vendor Advisory | |
CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.4 |
CWE | NVD-CWE-noinfo | |
First Time |
Apple
Apple ipados Apple macos Apple iphone Os Apple safari Apple visionos Apple tvos Apple watchos |
29 Oct 2024, 23:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary | The issue was addressed with improved checks. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, watchOS 11.1, visionOS 2.1, macOS Sequoia 15.1, Safari 18.1. Processing maliciously crafted web content may prevent Content Security Policy from being enforced. |
28 Oct 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-28 21:15
Updated : 2024-11-14 14:58
NVD link : CVE-2024-44296
Mitre link : CVE-2024-44296
JSON object : View
Products Affected
apple
- watchos
- tvos
- ipados
- safari
- macos
- visionos
- iphone_os
CWE