CVE-2024-40784

A

n integer overflow was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, macOS Ventura 13.6.8, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing a maliciously crafted file may lead to unexpected app termination.

References
Link Resource
http://seclists.org/fulldisclosure/2024/Jul/16 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/17 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/18 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/19 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/21 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/22 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/23 Mailing List
https://support.apple.com/en-us/HT214116 Vendor Advisory
https://support.apple.com/en-us/HT214117 Vendor Advisory
https://support.apple.com/en-us/HT214119 Vendor Advisory
https://support.apple.com/en-us/HT214120 Vendor Advisory
https://support.apple.com/en-us/HT214122 Vendor Advisory
https://support.apple.com/en-us/HT214123 Vendor Advisory
https://support.apple.com/en-us/HT214124 Vendor Advisory
http://seclists.org/fulldisclosure/2024/Jul/16 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/17 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/18 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/19 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/21 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/22 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/23 Mailing List
https://support.apple.com/en-us/HT214116 Vendor Advisory
https://support.apple.com/en-us/HT214117 Vendor Advisory
https://support.apple.com/en-us/HT214119 Vendor Advisory
https://support.apple.com/en-us/HT214120 Vendor Advisory
https://support.apple.com/en-us/HT214122 Vendor Advisory
https://support.apple.com/en-us/HT214123 Vendor Advisory
https://support.apple.com/en-us/HT214124 Vendor Advisory
https://support.apple.com/kb/HT214116
https://support.apple.com/kb/HT214117
https://support.apple.com/kb/HT214119
https://support.apple.com/kb/HT214120
https://support.apple.com/kb/HT214122
https://support.apple.com/kb/HT214123
https://support.apple.com/kb/HT214124
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Nov 2025, 18:16

Type Values Removed Values Added
References
  • () https://support.apple.com/kb/HT214116 -
  • () https://support.apple.com/kb/HT214117 -
  • () https://support.apple.com/kb/HT214119 -
  • () https://support.apple.com/kb/HT214120 -
  • () https://support.apple.com/kb/HT214122 -
  • () https://support.apple.com/kb/HT214123 -
  • () https://support.apple.com/kb/HT214124 -

10 Dec 2024, 14:35

Type Values Removed Values Added
First Time Apple tvos
Apple iphone Os
Apple ipados
Apple watchos
Apple visionos
Apple
Apple macos
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 5.5
References () http://seclists.org/fulldisclosure/2024/Jul/16 - () http://seclists.org/fulldisclosure/2024/Jul/16 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Jul/17 - () http://seclists.org/fulldisclosure/2024/Jul/17 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Jul/18 - () http://seclists.org/fulldisclosure/2024/Jul/18 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Jul/19 - () http://seclists.org/fulldisclosure/2024/Jul/19 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Jul/21 - () http://seclists.org/fulldisclosure/2024/Jul/21 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Jul/22 - () http://seclists.org/fulldisclosure/2024/Jul/22 - Mailing List
References () http://seclists.org/fulldisclosure/2024/Jul/23 - () http://seclists.org/fulldisclosure/2024/Jul/23 - Mailing List
References () https://support.apple.com/en-us/HT214116 - () https://support.apple.com/en-us/HT214116 - Vendor Advisory
References () https://support.apple.com/en-us/HT214117 - () https://support.apple.com/en-us/HT214117 - Vendor Advisory
References () https://support.apple.com/en-us/HT214119 - () https://support.apple.com/en-us/HT214119 - Vendor Advisory
References () https://support.apple.com/en-us/HT214120 - () https://support.apple.com/en-us/HT214120 - Vendor Advisory
References () https://support.apple.com/en-us/HT214122 - () https://support.apple.com/en-us/HT214122 - Vendor Advisory
References () https://support.apple.com/en-us/HT214123 - () https://support.apple.com/en-us/HT214123 - Vendor Advisory
References () https://support.apple.com/en-us/HT214124 - () https://support.apple.com/en-us/HT214124 - Vendor Advisory
CWE CWE-190
CPE cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

21 Nov 2024, 09:31

Type Values Removed Values Added
References () http://seclists.org/fulldisclosure/2024/Jul/16 - () http://seclists.org/fulldisclosure/2024/Jul/16 -
References () http://seclists.org/fulldisclosure/2024/Jul/17 - () http://seclists.org/fulldisclosure/2024/Jul/17 -
References () http://seclists.org/fulldisclosure/2024/Jul/18 - () http://seclists.org/fulldisclosure/2024/Jul/18 -
References () http://seclists.org/fulldisclosure/2024/Jul/19 - () http://seclists.org/fulldisclosure/2024/Jul/19 -
References () http://seclists.org/fulldisclosure/2024/Jul/21 - () http://seclists.org/fulldisclosure/2024/Jul/21 -
References () http://seclists.org/fulldisclosure/2024/Jul/22 - () http://seclists.org/fulldisclosure/2024/Jul/22 -
References () http://seclists.org/fulldisclosure/2024/Jul/23 - () http://seclists.org/fulldisclosure/2024/Jul/23 -
References () https://support.apple.com/en-us/HT214116 - () https://support.apple.com/en-us/HT214116 -
References () https://support.apple.com/en-us/HT214117 - () https://support.apple.com/en-us/HT214117 -
References () https://support.apple.com/en-us/HT214119 - () https://support.apple.com/en-us/HT214119 -
References () https://support.apple.com/en-us/HT214120 - () https://support.apple.com/en-us/HT214120 -
References () https://support.apple.com/en-us/HT214122 - () https://support.apple.com/en-us/HT214122 -
References () https://support.apple.com/en-us/HT214123 - () https://support.apple.com/en-us/HT214123 -
References () https://support.apple.com/en-us/HT214124 - () https://support.apple.com/en-us/HT214124 -

01 Aug 2024, 13:58

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-29 23:15

Updated : 2025-11-04 18:16


NVD link : CVE-2024-40784

Mitre link : CVE-2024-40784

CVE.ORG link : CVE-2024-40784


JSON object : View

CWE
CWE-190

Integer Overflow or Wraparound