Lucene search

K
cvelistAppleCVELIST:CVE-2024-23216
HistoryMar 08, 2024 - 1:35 a.m.

CVE-2024-23216

2024-03-0801:35:25
apple
www.cve.org
8
path handling validation
macos sonoma 14.4
macos monterey 12.7.4
macos ventura 13.6.5
file overwrite

AI Score

6.9

Confidence

High

EPSS

0

Percentile

10.3%

A path handling issue was addressed with improved validation. This issue is fixed in macOS Sonoma 14.4, macOS Monterey 12.7.4, macOS Ventura 13.6.5. An app may be able to overwrite arbitrary files.

CNA Affected

[
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "12.7",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "13.6",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected",
        "lessThan": "14.4",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

6.9

Confidence

High

EPSS

0

Percentile

10.3%

Related for CVELIST:CVE-2024-23216