2024-07-29 23:58:11 +00:00
{
"id" : "CVE-2024-40783" ,
"sourceIdentifier" : "product-security@apple.com" ,
"published" : "2024-07-29T23:15:11.853" ,
2024-08-01 14:03:18 +00:00
"lastModified" : "2024-08-01T13:58:04.677" ,
2024-07-30 14:03:15 +00:00
"vulnStatus" : "Awaiting Analysis" ,
2024-07-29 23:58:11 +00:00
"cveTags" : [ ] ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Sonoma 14.6, macOS Monterey 12.7.6, macOS Ventura 13.6.8. A malicious application may be able to bypass Privacy preferences."
2024-07-30 14:03:15 +00:00
} ,
{
"lang" : "es" ,
"value" : " El problema se solucion\u00f3 mejorando la restricci\u00f3n del acceso a los contenedores de datos. Este problema se solucion\u00f3 en macOS Sonoma 14.6, macOS Monterey 12.7.6, macOS Ventura 13.6.8. Es posible que una aplicaci\u00f3n maliciosa pueda omitir las preferencias de privacidad."
2024-07-29 23:58:11 +00:00
}
] ,
2024-08-01 14:03:18 +00:00
"metrics" : {
"cvssMetricV31" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" ,
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "REQUIRED" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
"availabilityImpact" : "NONE" ,
"baseScore" : 7.1 ,
"baseSeverity" : "HIGH"
} ,
"exploitabilityScore" : 1.8 ,
"impactScore" : 5.2
}
]
} ,
"weaknesses" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-285"
}
]
}
] ,
2024-07-29 23:58:11 +00:00
"references" : [
2024-07-30 04:03:12 +00:00
{
"url" : "http://seclists.org/fulldisclosure/2024/Jul/18" ,
"source" : "product-security@apple.com"
} ,
{
"url" : "http://seclists.org/fulldisclosure/2024/Jul/19" ,
"source" : "product-security@apple.com"
} ,
2024-07-30 02:03:13 +00:00
{
"url" : "http://seclists.org/fulldisclosure/2024/Jul/20" ,
"source" : "product-security@apple.com"
} ,
2024-07-29 23:58:11 +00:00
{
"url" : "https://support.apple.com/en-us/HT214118" ,
"source" : "product-security@apple.com"
} ,
{
"url" : "https://support.apple.com/en-us/HT214119" ,
"source" : "product-security@apple.com"
} ,
{
"url" : "https://support.apple.com/en-us/HT214120" ,
"source" : "product-security@apple.com"
}
]
}