CVE-2024-54466: Input Validation
Accounts. A logic issue was addressed with improved file handling.
Other sources
An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventura 13.7.2. An encrypted volume may be accessed by a different user without prompting for the password.
— MITRE
APFS. This issue was addressed through improved state management.
— Apple
Apple Account. The issue was addressed with improved handling of protocols.
— Apple
Apple Software Restore. The issue was addressed with improved checks.
— Apple
AppleGraphicsControl. The issue was addressed with improved memory handling.
— Apple
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2024-54488
- CVE-2024-54541
- CVE-2024-54477
- CVE-2024-44220
- CVE-2024-54527
- CVE-2024-54526
- CVE-2024-54509
- CVE-2024-54529
- CVE-2024-44300
- CVE-2024-54466
- CVE-2024-54489
- CVE-2024-54547
- CVE-2024-54519
- CVE-2024-54486
- CVE-2024-54478
- CVE-2024-54500
- CVE-2024-54468
- CVE-2024-54494
- CVE-2024-54510
- CVE-2024-44245
- CVE-2024-44201
- CVE-2024-45490
- CVE-2024-54514
- CVE-2024-44225
- CVE-2024-54474
- CVE-2024-54476
- CVE-2024-54537
- CVE-2024-54501
- CVE-2024-44248
- CVE-2024-54557
- CVE-2024-54516
- CVE-2024-54528
- CVE-2024-54498
- CVE-2024-44291
- CVE-2024-44224
- CVE-2024-54495
- CVE-2024-54520
- CVE-2024-54475
- CVE-2024-45306
- CVE-2024-54539
- CVE-2024-40864
- CVE-2024-54490
- CVE-2024-54568
- CVE-2024-54550
- CVE-2024-44271
- CVE-2024-54513
- CVE-2024-54499
- CVE-2024-54517
- CVE-2024-54518
- CVE-2024-54522
- CVE-2024-54523
- CVE-2024-54506
- CVE-2024-54507
- CVE-2024-54531
- CVE-2024-54465
- CVE-2024-54491
- CVE-2024-54484
- CVE-2024-54525
- CVE-2024-54536
- CVE-2024-54504
- CVE-2024-54530
- CVE-2024-54492
- CVE-2016-1246
- CVE-2023-31484
- CVE-2023-31486
- CVE-2023-47100
- CVE-2023-32395
- CVE-2024-54497
- CVE-2024-44246
- CVE-2024-54542
- CVE-2024-54559
- CVE-2024-54515
- CVE-2024-54524
- CVE-2024-54493
- CVE-2024-54533
- CVE-2024-44243
- CVE-2024-54549
- CVE-2024-54485
- CVE-2024-54479
- CVE-2024-54502
- CVE-2024-54508
- CVE-2024-54505
- CVE-2024-54534
- CVE-2024-54543
- CVE-2024-54565
Frequently Asked Questions
What is the severity of CVE-2024-54466?
The severity of CVE-2024-54466 has been classified as medium due to its potential risk of unauthorized access to encrypted volumes.
How do I fix CVE-2024-54466?
To fix CVE-2024-54466, users should update their macOS to version 13.7.2, 14.7.2, or 15.2.
What systems are affected by CVE-2024-54466?
CVE-2024-54466 affects macOS versions ranging from 13.0 to 15.2.
What type of issue is CVE-2024-54466?
CVE-2024-54466 involves a logic and authorization issue that impacts file handling and state management.
Is CVE-2024-54466 fixed in the latest macOS updates?
Yes, CVE-2024-54466 has been addressed in macOS Sequoia 15.2, macOS Ventura 13.7.2, and macOS Sonoma 14.7.2.