CVE-2024-44261: Input Validation
Accessibility. The issue was addressed with improved authentication.
Other sources
App Support. A path handling issue was addressed with improved logic.
— Apple
AppleAVD. The issue was addressed with improved bounds checks.
— Apple
Calendar. A path handling issue was addressed with improved logic.
— Apple
CoreMedia Playback. This issue was addressed with improved handling of symlinks.
— Apple
CoreText. The issue was addressed with improved checks.
— Apple
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2024-44274
- CVE-2024-44232
- CVE-2024-44233
- CVE-2024-44234
- CVE-2024-44240
- CVE-2024-44302
- CVE-2024-44282
- CVE-2024-40854
- CVE-2024-44215
- CVE-2024-44297
- CVE-2024-44239
- CVE-2024-44258
- CVE-2024-44252
- CVE-2024-44155
- CVE-2024-44259
- CVE-2024-44144
- CVE-2024-44218
- CVE-2024-54538
- CVE-2024-44269
- CVE-2024-54470
- CVE-2024-44278
- CVE-2024-44261
- CVE-2024-44296
- CVE-2024-44255
- CVE-2024-54535
- CVE-2024-44273
- CVE-2024-44299
- CVE-2024-44241
- CVE-2024-44242
- CVE-2024-44238
- CVE-2024-44285
- CVE-2024-40867
- CVE-2024-44201
- CVE-2024-44277
- CVE-2024-44229
- CVE-2024-44254
- CVE-2024-44194
- CVE-2024-40851
- CVE-2024-44263
- CVE-2024-44200
- CVE-2024-44251
- CVE-2024-44235
- CVE-2024-44290
- CVE-2024-44212
- CVE-2024-44244
- CVE-2024-54556
Frequently Asked Questions
What is the severity of CVE-2024-44261?
CVE-2024-44261 is classified with a high severity due to potential impacts on user data and system security.
How do I fix CVE-2024-44261?
To remediate CVE-2024-44261, update your iOS or iPadOS devices to version 17.7.1 or 18.1 or later.
What products are affected by CVE-2024-44261?
CVE-2024-44261 affects iOS versions before 18.1 and iPadOS versions before 18.1.
What types of issues does CVE-2024-44261 address?
CVE-2024-44261 addresses authentication improvements, path handling issues, and bounds check enhancements.
Is there a workaround for CVE-2024-44261?
There are no known workarounds for CVE-2024-44261; the only solution is to update the software.