CVE-2024-40774
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences.
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-40774?
CVE-2024-40774 is classified as a security vulnerability that addresses a downgrade issue with additional code-signing restrictions.
How do I fix CVE-2024-40774?
To fix CVE-2024-40774, update to macOS Ventura 13.6.8, macOS Monterey 12.7.6, iOS 17.6, iPadOS 17.6, watchOS 10.6, or tvOS 17.6.
What platforms are affected by CVE-2024-40774?
CVE-2024-40774 affects multiple Apple platforms, including macOS, iOS, iPadOS, watchOS, and tvOS.
What are the potential risks associated with CVE-2024-40774?
The potential risks associated with CVE-2024-40774 include the possibility of an app bypassing Privacy preferences due to the downgrade issue.
Is there a known exploit for CVE-2024-40774?
As of now, there are no specific exploits publicly disclosed for CVE-2024-40774, but the nature of the vulnerability could pose a risk.