Overview
- Description
- The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1. A sandboxed app may be able to access sensitive user data.
- Source
- product-security@apple.com
- NVD status
- Modified
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.5
- Impact score
- 3.6
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- Severity
- MEDIUM
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-863
Social media
- Hype score
- Not currently trending
SEVERE VULNERABILITIES Apple security releases: 2024-10-28 URL: https://t.co/U4sFJ67F5e Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None CVEs: CVE-2024-40851, CVE-2024-40855, CVE-2024 #apple #cyber
@CharyyevPerman
30 Oct 2024
21 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
馃毃 Sandboxed App Vulnerability in #Apple #macOS: #Update Now (#CVE-2024-40855) https://t.co/HEo0KlIbhq
@UndercodeNews
29 Oct 2024
9 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA438ABE-99D4-49D3-A90A-959B8FDD4012", "versionEndExcluding": "13.7.1" }, { "criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "901D36FD-C5D9-428D-BE13-662AC380C9AE", "versionEndExcluding": "14.7.1", "versionStartIncluding": "14.0" } ], "operator": "OR" } ] } ]