CVE-2024-40853: Race Condition
Accessibility. This issue was addressed by restricting options offered on a locked device.
Other sources
Accessibility. This issue was addressed through improved state management.
— Apple
Accessibility. This issue was addressed with improved data protection.
— Apple
ARKit. The issue was addressed with improved checks.
— Apple
Cellular. This issue was addressed through improved state management.
— Apple
Compression. A race condition was addressed with improved locking.
— Apple
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2024-40840
- CVE-2024-40830
- CVE-2024-44171
- CVE-2024-40852
- CVE-2024-44126
- CVE-2024-27874
- CVE-2024-27876
- CVE-2024-27869
- CVE-2024-44124
- CVE-2024-54469
- CVE-2024-44131
- CVE-2024-40850
- CVE-2024-27880
- CVE-2024-44176
- CVE-2024-44169
- CVE-2024-44165
- CVE-2024-44191
- CVE-2024-44122
- CVE-2024-54560
- CVE-2024-44198
- CVE-2024-40791
- CVE-2024-44183
- CVE-2023-5841
- CVE-2024-44147
- CVE-2024-44167
- CVE-2024-44217
- CVE-2024-40826
- CVE-2024-44155
- CVE-2024-44202
- CVE-2024-44127
- CVE-2024-40863
- CVE-2024-44144
- CVE-2024-44123
- CVE-2024-44145
- CVE-2024-44179
- CVE-2024-40853
- CVE-2024-44139
- CVE-2024-44180
- CVE-2024-44170
- CVE-2024-54558
- CVE-2024-44184
- CVE-2024-27879
- CVE-2024-54467
- CVE-2024-44192
- CVE-2024-40857
- CVE-2024-44187
- CVE-2024-44227
- CVE-2024-40856
Frequently Asked Questions
What is the severity of CVE-2024-40853?
CVE-2024-40853 is classified as a medium-severity vulnerability affecting iOS and iPadOS versions prior to 18.0.
How do I fix CVE-2024-40853?
To fix CVE-2024-40853, update your device to iOS 18 or iPadOS 18.
What type of attack does CVE-2024-40853 involve?
CVE-2024-40853 involves an attacker potentially using Siri to enable Auto-Answer Calls on a locked device.
Which devices are affected by CVE-2024-40853?
CVE-2024-40853 affects devices running iOS and iPadOS versions before 18.0.
Is CVE-2024-40853 still a threat if my device is updated?
No, CVE-2024-40853 is no longer a threat if your device is updated to iOS 18 or iPadOS 18.