CVE-2024-40830
Published Sep 16, 2024
·Updated
Accessibility. This issue was addressed through improved state management.
Credit
Chloe Surett, Jake Derouin (jakederouin.com), Abhay Kailasia@@abhay_kailasia(Lakshmi Narain College of Technology Bhopal India), Holger Fuhrmannek, Tuan D. Hoang, Snoolie Keffaber@@0xilis, an anonymous researcher, Daniele Antonioli, Csaba Fitzl@@theevilbit(Kandji), @@08Tc3wBB(Jamf), Denis Tokarev@@illusionofcha0s, Junsung Lee, dw0r(ZeroPointer Lab working with Trend Micro Zero Day Initiative), Antonio Zekić, Andrew Lytvynov, Alexander Heinrich, SEEMOO, DistriNet, KU Leuven@@vanhoefm, TU Darmstadt@@Sn0wfreeze, Mathy Vanhoef, Kirin@@Pwnrin, Jeff Johnson (underpassapp.com), OSS-Fuzz(Google Project Zero), Ned Williamson(Google Project Zero), Rodolphe BRUNETTI@@eisw0lf, Olivier Levon, CVE-2023-5841, ajajfxhj, Bistrit Dahal, Joshua Keller, Lukas, Narendra Bhati(Cyber Security at Suma Soft Pvt), Manager(Cyber Security at Suma Soft Pvt), Pune (India), Kenneth Chew, Anamika Adhikari, 냥냥, Wojciech Regula(SecuRing), Om Kothawade(Zaprico Digital), Omar A. Alanis(the UNTHSC College of Pharmacy), Matej Moravec@@MacejkoMoravec, Chi Yuan Chang(ZUSO ART), taikosoup, Srijan Poudel, K宝, LFY@@secsys, Smi1e, yulige, Cristian Dinca (icmd.tech), Ron Masas(BreakPoint), Bohdan Stasiuk@@Bohdan_Stasiuk, Justin Cohen, Narendra Bhati(Cyber Security At Suma Soft Pvt), Manager(Cyber Security At Suma Soft Pvt), Tashita Software Security, Ron Masas, Tim Michaud@@TimGMichaud(Moveworks), Preet Dsouza (Fleming College, Computer Security & Investigations Program), Domien Schepers
Affected Software
4 affected componentsFixes available
Apple iOS<18
18
apple iPadOS<18
18
apple iPadOS<18.0
Apple iPhone OS<18.0
Event History
Sep 16, 2024
CVE Published
via MITRE·11:22 PM
Data Sourced
via MITRE·11:22 PM
DescriptionWeakness
Sep 17, 2024
Data Sourced
via NVD·12:15 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-40830?
CVE-2024-40830 has been classified with a severity level that indicates significant potential risk due to user data exposure.
2
How do I fix CVE-2024-40830?
To mitigate CVE-2024-40830, users should upgrade to iOS 18 or iPadOS 18 to ensure the vulnerability is addressed.
3
What does CVE-2024-40830 affect?
CVE-2024-40830 affects Apple iPadOS and iPhone OS versions prior to 18.0.
4
What can happen if CVE-2024-40830 is exploited?
If exploited, CVE-2024-40830 may allow an app to enumerate a user's installed applications, potentially compromising user privacy.
5
Is there a workaround for CVE-2024-40830?
There are no known workarounds for CVE-2024-40830; upgrading the software is the recommended action.