CVE-2024-54530

T

he issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 and iPadOS 18.2. Password autofill may fill in passwords after failing authentication.

References
Link Resource
https://support.apple.com/en-us/121837 Release Notes Vendor Advisory
https://support.apple.com/en-us/121839 Release Notes Vendor Advisory
https://support.apple.com/en-us/121843 Release Notes Vendor Advisory
https://support.apple.com/en-us/121845 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Apr 2025, 18:14

Type Values Removed Values Added
First Time Apple macos
Apple ipados
Apple watchos
Apple visionos
Apple iphone Os
Apple
References () https://support.apple.com/en-us/121837 - () https://support.apple.com/en-us/121837 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121839 - () https://support.apple.com/en-us/121839 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121843 - () https://support.apple.com/en-us/121843 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/121845 - () https://support.apple.com/en-us/121845 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*

18 Mar 2025, 21:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-863

18 Feb 2025, 20:15

Type Values Removed Values Added
CWE CWE-862
CVSS v2 : unknown
v3 : 9.1
v2 : unknown
v3 : unknown

28 Jan 2025, 16:15

Type Values Removed Values Added
Summary
  • (es) El problema se solucionó con comprobaciones mejoradas. Este problema se solucionó en macOS Sequoia 15.2, watchOS 11.2, visionOS 2.2, iOS 18.2 y iPadOS 18.2. La función de autocompletar contraseñas puede completar las contraseñas después de una autenticación fallida.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-862

27 Jan 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-27 22:15

Updated : 2025-04-04 18:14


NVD link : CVE-2024-54530

Mitre link : CVE-2024-54530

CVE.ORG link : CVE-2024-54530


JSON object : View

CWE
CWE-863

Incorrect Authorization