CVE-2024-23271

April 24, 2024, 5:16 p.m.

Awaiting Analysis
CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.

Products

iOS

  • 17.3

iPadOS

  • 17.3

Safari

  • 17.3

tvOS

  • 17.3

macOS Sonoma

  • 14.3

watchOS

  • 10.3

Source

product-security@apple.com

Tags

CVE-2024-23271 details

Published : April 24, 2024, 5:15 p.m.
Last Modified : April 24, 2024, 5:16 p.m.

Description

A logic issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, Safari 17.3, tvOS 17.3, macOS Sonoma 14.3, watchOS 10.3. A malicious website may cause unexpected cross-origin behavior.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description

References

URL Source
https://support.apple.com/en-us/HT214055 product-security@apple.com
https://support.apple.com/en-us/HT214056 product-security@apple.com
https://support.apple.com/en-us/HT214059 product-security@apple.com
https://support.apple.com/en-us/HT214060 product-security@apple.com
https://support.apple.com/en-us/HT214061 product-security@apple.com
This website uses the NVD API, but is not approved or certified by it.