CVE-2024-23291
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, watchOS 10.4. A malicious app may be able to observe user data in log entries related to accessibility notifications.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23291?
CVE-2024-23291 addresses a privacy issue concerning user data exposure in log entries, indicating a moderate severity level.
How do I fix CVE-2024-23291?
To remediate CVE-2024-23291, update your devices to the respective software versions: tvOS 17.4, iOS 17.4, iPadOS 17.4, macOS Sonoma 14.4, or watchOS 10.4.
What software versions are affected by CVE-2024-23291?
CVE-2024-23291 affects Apple iOS, iPadOS, tvOS, watchOS, and macOS versions prior to their respective fixes.
What type of data is exposed in CVE-2024-23291?
CVE-2024-23291 involves the potential exposure of user data related to accessibility notifications in system log entries.
Is there a workaround for CVE-2024-23291?
There is no specific workaround for CVE-2024-23291; updating to the latest software version is recommended.