CVE-2024-27796
HIGHDescription
The issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, macOS Sonoma 14.5, macOS Ventura 13.6.7. An attacker may be able to elevate privileges.
Is your site exposed to CVE-2024-27796?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| apple | ipados |
| apple | ipados |
| apple | iphone_os |
| apple | iphone_os |
| apple | macos |
| apple | macos |
| apple | macos |
References
Advisories & Patches
Other References
Frequently Asked Questions
What is CVE-2024-27796? +
How severe is CVE-2024-27796? +
What products are affected by CVE-2024-27796? +
How do I check if I'm vulnerable to CVE-2024-27796? +
Related Vulnerabilities
veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service vulnerability in …
veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service vulnerability in …
Issue summary: Remote peer may exhaust heap memory of the QUIC server or client by flooding it with packets containing …
A flaw was found in Smallrye, where smallrye-fault-tolerance is vulnerable to an out-of-memory (OOM) issue. This vulnerability is externally triggered …
An authenticated user can cause excess memory usage via bitwise match expression AST processing of $bitsAllSet, $bitsAnySet, $bitsAllClear, and $bitsAnyClear. …
Using expressions that generate large arrays it is possible to craft a query that creates very large intermediate objects in …