T
he issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, Safari 17.5, watchOS 10.5, macOS Sonoma 14.5. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
04 Nov 2025, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
12 Dec 2024, 14:33
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-noinfo | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| First Time |
Webkitgtk webkitgtk
Wpewebkit wpe Webkit Webkitgtk Apple ipados Apple macos Apple safari Wpewebkit Fedoraproject fedora Apple tvos Apple iphone Os Apple Apple watchos Fedoraproject |
|
| References | () http://seclists.org/fulldisclosure/2024/May/10 - Mailing List | |
| References | () http://seclists.org/fulldisclosure/2024/May/12 - Mailing List | |
| References | () http://seclists.org/fulldisclosure/2024/May/16 - Mailing List | |
| References | () http://seclists.org/fulldisclosure/2024/May/17 - Mailing List | |
| References | () http://seclists.org/fulldisclosure/2024/May/9 - Mailing List | |
| References | () http://www.openwall.com/lists/oss-security/2024/05/21/1 - Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/[email protected]/message/ADCLQW54XN37VJZNYD3UKCYATJFIMYXG/ - Mailing List | |
| References | () https://lists.fedoraproject.org/archives/list/[email protected]/message/WKIXADCW3O4R2OOSDZGPU55XQFE6NA3M/ - Mailing List | |
| References | () https://support.apple.com/en-us/HT214101 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214102 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214103 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214104 - Vendor Advisory | |
| References | () https://support.apple.com/en-us/HT214106 - Vendor Advisory | |
| CPE | cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:a:webkitgtk:webkitgtk:*:*:*:*:*:*:*:* cpe:2.3:a:wpewebkit:wpe_webkit:*:*:*:*:*:*:*:* cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* |
21 Nov 2024, 09:05
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://seclists.org/fulldisclosure/2024/May/10 - | |
| References | () http://seclists.org/fulldisclosure/2024/May/12 - | |
| References | () http://seclists.org/fulldisclosure/2024/May/16 - | |
| References | () http://seclists.org/fulldisclosure/2024/May/17 - | |
| References | () http://seclists.org/fulldisclosure/2024/May/9 - | |
| References | () http://www.openwall.com/lists/oss-security/2024/05/21/1 - | |
| References | () https://lists.fedoraproject.org/archives/list/[email protected]/message/ADCLQW54XN37VJZNYD3UKCYATJFIMYXG/ - | |
| References | () https://lists.fedoraproject.org/archives/list/[email protected]/message/WKIXADCW3O4R2OOSDZGPU55XQFE6NA3M/ - | |
| References | () https://support.apple.com/en-us/HT214101 - | |
| References | () https://support.apple.com/en-us/HT214102 - | |
| References | () https://support.apple.com/en-us/HT214103 - | |
| References | () https://support.apple.com/en-us/HT214104 - | |
| References | () https://support.apple.com/en-us/HT214106 - |
03 Jul 2024, 01:51
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.1 |
| CWE | CWE-277 |
22 Jun 2024, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
19 Jun 2024, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Jun 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| References |
|
14 May 2024, 15:13
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-05-14 15:13
Updated : 2025-11-04 18:16
NVD link : CVE-2024-27834
Mitre link : CVE-2024-27834
CVE.ORG link : CVE-2024-27834
JSON object : View
Products Affected
CWE