2025-03-21 00:58:52 +00:00
{
"id" : "CVE-2024-44199" ,
"sourceIdentifier" : "product-security@apple.com" ,
"published" : "2025-03-21T00:15:17.577" ,
2025-03-24 17:03:52 +00:00
"lastModified" : "2025-03-24T15:10:53.813" ,
"vulnStatus" : "Analyzed" ,
2025-03-21 00:58:52 +00:00
"cveTags" : [ ] ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Sonoma 14.6. An app may be able to cause unexpected system termination or read kernel memory."
2025-03-21 19:03:52 +00:00
} ,
{
"lang" : "es" ,
"value" : "Se solucion\u00f3 una lectura fuera de los l\u00edmites mejorando la validaci\u00f3n de entrada. Este problema se solucion\u00f3 en macOS Sonoma 14.6. Una aplicaci\u00f3n podr\u00eda provocar la finalizaci\u00f3n inesperada del sistema o leer la memoria del kernel."
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" ,
"baseScore" : 7.1 ,
"baseSeverity" : "HIGH" ,
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "LOW" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "NONE" ,
"availabilityImpact" : "HIGH"
} ,
"exploitabilityScore" : 1.8 ,
"impactScore" : 5.2
}
]
} ,
"weaknesses" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-125"
}
]
2025-03-21 00:58:52 +00:00
}
] ,
2025-03-24 17:03:52 +00:00
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "14.6" ,
"matchCriteriaId" : "687902EF-637F-4537-B419-15A1695370B9"
}
]
}
]
}
] ,
2025-03-21 00:58:52 +00:00
"references" : [
{
"url" : "https://support.apple.com/en-us/120911" ,
2025-03-24 17:03:52 +00:00
"source" : "product-security@apple.com" ,
"tags" : [
"Release Notes" ,
"Vendor Advisory"
]
2025-03-21 00:58:52 +00:00
}
]
}