First published: Wed Dec 11 2024(Updated: )
Accounts. A logic issue was addressed with improved file handling.
Credit: Mickey Jin @patch1t KandjiCsaba Fitzl @theevilbit KandjiD4m0n Mickey Jin @patch1t Arsenii Kostromin (0x3c3e) CertiK SkyFall Team Dillon Franke Google Project ZeroSmi1e @Smi1eSEC an anonymous researcher Michael Cohen D’Angelo Gonzalez CrowdStrikeRodolphe BRUNETTI @eisw0lf Lupus NovaKirin @Pwnrin 7feilee Hossein Lotfi @hosselot Trend Micro Zero Day InitiativeGary Kwong Anonymous Trend Micro Zero Day InitiativeJunsung Lee Trend Micro Zero Day InitiativeYe Zhang @VAR10CK Baidu SecurityJoseph Ravichandran @0xjprx MIT CSAILsohybbyk Hyerean Jang Taehun Kim Youngjoo Shin CVE-2024-45490 风沐云烟 @binary_fmyy Meng Zhang (鲸落) NorthSeaClaudio Bozzato Cisco TalosFrancesco Benvenuto Cisco Talos神罚 @Pwnrin Bohdan Stasiuk @Bohdan_Stasiuk Abhay Kailasia @abhay_kailasia CRakeshkumar Talaviya Talal Haj Bakry Mysk IncTommy Mysk @mysk_co Mysk IncJacob Braun Rei @reizydev Kenneth Chew Michael DePlante @izobashi Trend Micro's Zero Day InitiativeYokesh Muthu K Mickey Jin @patch1t MicrosoftJonathan Bar Or @yo_yo_yo_jbo MicrosoftAmy @asentientbot Rodolphe BRUNETTI @eisw0lf CVE-2024-45306 Seunghyun Lee Brendon Tiszka Google Project Zerolinjy HKUS3Labchluo WHUSecLabXiangwei Zhang Tencent Security YUNDING LABTashita Software Security Lukas Bernhard Halle Winkler Politepix theoffcuts.org Trent Lloyd @lathiat Benjamin Hornbeck ZUSO ARTSkadz @skadz108 ZUSO ARTChi Yuan Chang ZUSO ARTtaikosoup product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | <15.2 | |
macOS | <15.2 | 15.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The severity of CVE-2024-54490 is classified as moderate.
To fix CVE-2024-54490, update your macOS to version 15.2 or later.
CVE-2024-54490 affects macOS versions up to 15.2.
CVE-2024-54490 is a logic issue related to file handling and state management.
Users of macOS 15.2 or earlier versions are impacted by CVE-2024-54490.