First published: Mon Jan 27 2025(Updated: )
An authentication issue was addressed with improved state management. This issue is fixed in Safari 18.2, macOS Sequoia 15.2, watchOS 11.2, iOS 18.2 and iPadOS 18.2. Private Browsing tabs may be accessed without authentication.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Safari | <18.2 | |
<15.2 | ||
Apple watchOS | <11.2 | |
Apple iOS | <18.2 | |
Apple iPadOS | <18.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-54542 is classified with moderate severity due to its impact on authentication and state management.
To fix CVE-2024-54542, update Safari to version 18.2 or update your affected Apple devices to their respective patched versions.
CVE-2024-54542 allows unauthorized access to Private Browsing tabs, potentially exposing sensitive information.
CVE-2024-54542 affects Apple Safari, macOS Sequoia, watchOS, iOS, and iPadOS prior to their respective version updates.
CVE-2024-54542 was disclosed as an authentication vulnerability in the affected Apple software products.