NA

CVE-2024-27804

Published: 14/05/2024 Updated: 14/05/2024

Vulnerability Summary

The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An app may be able to execute arbitrary code with kernel privileges.

Vulnerability Trend

Vendor Advisories

About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-05-13-2024-7 watchOS 105 watchOS 105 addresses the following issues Information about the security content is also available at supportapplecom/HT214104 Apple maintains a Security Releases page at supportapplecom/HT201222 which lists recent software updates with sec ...
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-05-13-2024-4 macOS Sonoma 145 macOS Sonoma 145 addresses the following issues Information about the security content is also available at supportapplecom/HT214106 Apple maintains a Security Releases page at supportapplecom/HT201222 which lists recent software update ...

Github Repositories

POC for CVE-2024-27804

CVE-2024-27804 /buildsh /panicsh panic(cpu 4 caller 0xfffffe0026851cdc): Unaligned kernel data abort at pc 0xfffffe0026aed514, lr 0xfffffe0026aed5d8 (saved state: 0xfffffe3a396e3200) x0: 0x000000000000000e x1: 0xfffffe1002bdc01b x2: 0x0000000000000000 x3: 0xfffffe3a396e3444 x4: 0xfffffe3a396e344c x5: 0x000000000002d1