CVE-2024-23201: Buffer Overflow
A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.4, macOS Sonoma 14.3, macOS Ventura 13.6.5, tvOS 17.3, watchOS 10.3. An app may be able to cause a denial-of-service.
Other sources
Admin Framework. A logic issue was addressed with improved checks.
— Apple
Airport. This issue was addressed with improved redaction of sensitive information.
— Apple
Apple Neural Engine. The issue was addressed with improved memory handling.
— Apple
AppleMobileFileIntegrity. A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions.
— Apple
ColorSync. The issue was addressed with improved memory handling.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2024-23212
- CVE-2024-23218
- CVE-2024-23224
- CVE-2024-23208
- CVE-2024-23201
- CVE-2024-23209
- CVE-2024-23207
- CVE-2024-23223
- CVE-2024-27791
- CVE-2024-23211
- CVE-2024-23203
- CVE-2024-23204
- CVE-2024-23217
- CVE-2024-23215
- CVE-2024-23210
- CVE-2024-23206
- CVE-2024-23213
- CVE-2024-23214
- CVE-2024-23222
- CVE-2024-23271
- CVE-2024-23276
- CVE-2024-23227
- CVE-2024-23269
- CVE-2024-23247
- CVE-2024-23299
- CVE-2024-23244
- CVE-2024-23270
- CVE-2024-23286
- CVE-2024-23257
- CVE-2024-23234
- CVE-2024-23266
- CVE-2024-23265
- CVE-2024-23225
- CVE-2023-28826
- CVE-2024-23264
- CVE-2024-23283
- CVE-2024-23274
- CVE-2024-23268
- CVE-2024-23275
- CVE-2024-23267
- CVE-2024-23216
- CVE-2024-23230
- CVE-2024-23245
- CVE-2024-23272
- CVE-2023-40389
- CVE-2024-23229
- CVE-2024-23278
- CVE-2024-23231
- CVE-2024-23228
- CVE-2024-23219
Frequently Asked Questions
What is the severity of CVE-2024-23201?
CVE-2024-23201 has been classified as having a high severity due to its potential to cause a denial-of-service.
How do I fix CVE-2024-23201?
To mitigate CVE-2024-23201, ensure that your device is updated to the latest version of macOS Monterey 12.7.4, watchOS 10.3, tvOS 17.3, macOS Ventura 13.6.5, iOS 17.3, iPadOS 17.3, or macOS Sonoma 14.3.
Which Apple products are affected by CVE-2024-23201?
CVE-2024-23201 affects Apple devices running specific versions of macOS Monterey, watchOS, tvOS, iOS, iPadOS, and macOS Ventura.
Can CVE-2024-23201 lead to unauthorized access?
CVE-2024-23201 does not directly lead to unauthorized access, but it can potentially create vulnerabilities that may be exploited.
When was CVE-2024-23201 reported?
CVE-2024-23201 was reported and publicly acknowledged in March 2024.