A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.6. An app with root privileges may be able to execute arbitrary code with kernel privileges.
History

Thu, 13 Mar 2025 20:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
Metrics cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}

cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H'}


Tue, 10 Dec 2024 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Weaknesses CWE-120
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Vendors & Products Apple
Apple macos
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H'}

cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2024-07-29T22:16:44.478Z

Updated: 2025-03-13T20:05:59.539Z

Reserved: 2024-02-26T15:32:28.543Z

Link: CVE-2024-27878

cve-icon Vulnrichment

Updated: 2024-08-02T00:41:55.355Z

cve-icon NVD

Status : Modified

Published: 2024-07-29T23:15:10.747

Modified: 2025-03-13T20:15:19.347

Link: CVE-2024-27878

cve-icon Redhat

No data.