First published: Mon Sep 16 2024(Updated: )
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Ventura 13.7, visionOS 2, iOS 18 and iPadOS 18, macOS Sonoma 14.7, macOS Sequoia 15. An app may be able to overwrite arbitrary files.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <18.0 | |
Apple iPhone OS | <18.0 | |
Apple macOS | >=13.0<13.7 | |
Apple macOS | >=14.0<14.7 | |
Apple visionOS | <2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-44167 has a high severity rating due to the potential for arbitrary file overwriting.
To fix CVE-2024-44167, update to macOS Ventura 13.7, visionOS 2, iOS 18, iPadOS 18, macOS Sonoma 14.7, or macOS Sequoia 15.
CVE-2024-44167 affects macOS versions from 13.0 up to but not including 13.7 and from 14.0 up to but not including 14.7.
Yes, CVE-2024-44167 may enable unauthorized apps to overwrite arbitrary files on affected devices.
CVE-2024-44167 impacts devices running iOS, iPadOS, macOS, and visionOS versions prior to their respective fixes.