{"id":57438,"date":"2024-06-12T18:20:14","date_gmt":"2024-06-12T15:20:14","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/179058\/APPLE-SA-06-10-2024-1.txt"},"modified":"2024-06-12T18:20:14","modified_gmt":"2024-06-12T15:20:14","slug":"apple-security-advisory-06-10-2024-1","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/apple-security-advisory-06-10-2024-1\/","title":{"rendered":"Apple Security Advisory 06-10-2024-1"},"content":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;<br \/>Hash: SHA256<\/p>\n<p>APPLE-SA-06-10-2024-1 visionOS 1.2<\/p>\n<p>visionOS 1.2 addresses the following issues.<br \/>Information about the security content is also available at<br \/>https:\/\/support.apple.com\/HT214108.<\/p>\n<p>Apple maintains a Security Releases page at<br \/>https:\/\/support.apple.com\/HT201222 which lists recent<br \/>software updates with security advisories.<\/p>\n<p>CoreMedia<br \/>Available for: Apple Vision Pro<br \/>Impact: An app may be able to execute arbitrary code with kernel<br \/>privileges<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-27817: pattern-f (@pattern_F_) of Ant Security Light-Year Lab<\/p>\n<p>CoreMedia<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing a file may lead to unexpected app termination or<br \/>arbitrary code execution<br \/>Description: An out-of-bounds write issue was addressed with improved<br \/>input validation.<br \/>CVE-2024-27831: Amir Bazine and Karsten K\u00f6nig of CrowdStrike Counter<br \/>Adversary Operations<\/p>\n<p>Disk Images<br \/>Available for: Apple Vision Pro<br \/>Impact: An app may be able to elevate privileges<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-27832: an anonymous researcher<\/p>\n<p>Foundation<br \/>Available for: Apple Vision Pro<br \/>Impact: An app may be able to elevate privileges<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-27801: CertiK SkyFall Team<\/p>\n<p>ImageIO<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing a maliciously crafted image may lead to arbitrary<br \/>code execution<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-27836: Junsung Lee working with Trend Micro Zero Day Initiative<\/p>\n<p>IOSurface<br \/>Available for: Apple Vision Pro<br \/>Impact: An app may be able to execute arbitrary code with kernel<br \/>privileges<br \/>Description: The issue was addressed with improved memory handling.<br \/>CVE-2024-27828: Pan ZhenPeng (@Peterpan0927) of STAR Labs SG Pte. Ltd.<\/p>\n<p>Kernel<br \/>Available for: Apple Vision Pro<br \/>Impact: An attacker that has already achieved kernel code execution may<br \/>be able to bypass kernel memory protections<br \/>Description: The issue was addressed with improved memory handling.<br \/>CVE-2024-27840: an anonymous researcher<\/p>\n<p>Kernel<br \/>Available for: Apple Vision Pro<br \/>Impact: An app may be able to execute arbitrary code with kernel<br \/>privileges<br \/>Description: An out-of-bounds write issue was addressed with improved<br \/>input validation.<br \/>CVE-2024-27815: an anonymous researcher, and Joseph Ravichandran<br \/>(@0xjprx) of MIT CSAIL<\/p>\n<p>libiconv<br \/>Available for: Apple Vision Pro<br \/>Impact: An app may be able to elevate privileges<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-27811: Nick Wellnhofer<\/p>\n<p>Messages<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing a maliciously crafted message may lead to a denial-<br \/>of-service<br \/>Description: This issue was addressed by removing the vulnerable code.<br \/>CVE-2024-27800: Daniel Zajork and Joshua Zajork<\/p>\n<p>Metal<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing a maliciously crafted file may lead to unexpected app<br \/>termination or arbitrary code execution<br \/>Description: An out-of-bounds read was addressed with improved input<br \/>validation.<br \/>CVE-2024-27802: Meysam Firouzi (@R00tkitsmm) working with Trend Micro<br \/>Zero Day Initiative<\/p>\n<p>Metal<br \/>Available for: Apple Vision Pro<br \/>Impact: A remote attacker may be able to cause unexpected app<br \/>termination or arbitrary code execution<br \/>Description: An out-of-bounds access issue was addressed with improved<br \/>bounds checking.<br \/>CVE-2024-27857: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>Safari<br \/>Available for: Apple Vision Pro<br \/>Impact: A website&#8217;s permission dialog may persist after navigation away<br \/>from the site<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-27844: Narendra Bhati of Suma Soft Pvt. Ltd in Pune (India),<br \/>Shaheen Fazim<\/p>\n<p>WebKit<br \/>Available for: Apple Vision Pro<br \/>Impact: A maliciously crafted webpage may be able to fingerprint the<br \/>user<br \/>Description: The issue was addressed by adding additional logic.<br \/>WebKit Bugzilla: 262337<br \/>CVE-2024-27838: Emilio Cobos of Mozilla<\/p>\n<p>WebKit<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing web content may lead to arbitrary code execution<br \/>Description: The issue was addressed with improved memory handling.<br \/>WebKit Bugzilla: 268221<br \/>CVE-2024-27808: Lukas Bernhard of CISPA Helmholtz Center for Information<br \/>Security<\/p>\n<p>WebKit<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing web content may lead to a denial-of-service<br \/>Description: The issue was addressed with improvements to the file<br \/>handling protocol.<br \/>CVE-2024-27812: Ryan Pickren (ryanpickren.com)<\/p>\n<p>WebKit<br \/>Available for: Apple Vision Pro<br \/>Impact: A maliciously crafted webpage may be able to fingerprint the<br \/>user<br \/>Description: This issue was addressed with improvements to the noise<br \/>injection algorithm.<br \/>WebKit Bugzilla: 270767<br \/>CVE-2024-27850: an anonymous researcher<\/p>\n<p>WebKit<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing maliciously crafted web content may lead to arbitrary<br \/>code execution<br \/>Description: An integer overflow was addressed with improved input<br \/>validation.<br \/>WebKit Bugzilla: 271491<br \/>CVE-2024-27833: Manfred Paul (@_manfp) working with Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>WebKit<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing maliciously crafted web content may lead to arbitrary<br \/>code execution<br \/>Description: The issue was addressed with improved bounds checks.<br \/>WebKit Bugzilla: 272106<br \/>CVE-2024-27851: Nan Wang (@eternalsakura13) of 360 Vulnerability<br \/>Research Institute<\/p>\n<p>WebKit Canvas<br \/>Available for: Apple Vision Pro<br \/>Impact: A maliciously crafted webpage may be able to fingerprint the<br \/>user<br \/>Description: This issue was addressed through improved state management.<br \/>WebKit Bugzilla: 271159<br \/>CVE-2024-27830: Joe Rutkowski (@Joe12387) of Crawless and @abrahamjuliot<\/p>\n<p>WebKit Web Inspector<br \/>Available for: Apple Vision Pro<br \/>Impact: Processing web content may lead to arbitrary code execution<br \/>Description: The issue was addressed with improved memory handling.<br \/>WebKit Bugzilla: 270139<br \/>CVE-2024-27820: Jeff Johnson of underpassapp.com<\/p>\n<p>Additional recognition<\/p>\n<p>ImageIO<br \/>We would like to acknowledge an anonymous researcher for their<br \/>assistance.<\/p>\n<p>Transparency<br \/>We would like to acknowledge Mickey Jin (@patch1t) for their assistance.<\/p>\n<p>Instructions on how to update visionOS are available at<br \/>https:\/\/support.apple.com\/HT214009 To check the software version<br \/>on your Apple Vision Pro, open the Settings app and choose General &gt;<br \/>About.<br \/>All information is also posted on the Apple Security Releases<br \/>web site: https:\/\/support.apple.com\/HT201222.<\/p>\n<p>This message is signed with Apple&#8217;s Product Security PGP key,<br \/>and details are available at:<br \/>https:\/\/www.apple.com\/support\/security\/pgp\/<br \/>&#8212;&#8211;BEGIN PGP SIGNATURE&#8212;&#8211;<\/p>\n<p>iQIzBAEBCAAdFiEEsz9altA7uTI+rE\/qX+5d1TXaIvoFAmZnfN8ACgkQX+5d1TXa<br \/>IvoomBAA23557a2KB9vrRnWu5nGWe5qidODwqadX9qUbErqlx6Hm0IMcKEGlaNjc<br \/>i1BKib0QXYgh9IVzwn0\/Q6GZX9mncM1EKJfjPVHJjdMPAXue9Dec7PeuSr4mQHUD<br \/>bVUh9TS+ejQo9w06AQRdVDOGRl3uXX1E90h4uMVUPOXLkiobYJMlEdU4OAAaJ2MV<br \/>qJvfQsTyzRNy4ciaFpc+5opWmaFse1AueE+Sjz30ed9tEjbyHML+yoy39HqAMheT<br \/>lECfaKGLp28XyxsKCKW8+F5j83R4Rwi7U0nLROiRSukrwzq+Gbi52n\/BTBvlxTc3<br \/>Ng\/4drldksgm9Uu6M9rRQFSRFBFKulK9Zxrj3qUK4Q6HvCTB+N4\/gE7Yf11TyxPl<br \/>+HkwG\/ScIw9S4bB88FhA8rYMKIGIlZfDfh8NHCx3Wc11LE+p6LzX2RxQNKaSjgnf<br \/>c1+VHJ3SwX\/2mbtBdfPJdu5Qr6ofhanpsCiczJP2FkuSVGCPVIoq8Vam75rrueLn<br \/>SLCHqgVker14Z12Q3XYRjyQrsI8nftu0pGZdYruAfw93Od0tTuX6i7G9VopHPRor<br \/>1Y6JevWkhAC54KGWDmB2SRc6e3AZRaiAE25QE6I3nwAwRUCo2JZEjoQWfxYry1l2<br \/>G5lga3qFvcbyriNoJPUfcKU7EzPYurVbY5rqpnUFi+xTtz1iyEw=<br \/>=9AfP<br \/>&#8212;&#8211;END PGP SIGNATURE&#8212;&#8211;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;Hash: SHA256 APPLE-SA-06-10-2024-1 visionOS 1.2 visionOS 1.2 addresses the following issues.Information about the security content is also available athttps:\/\/support.apple.com\/HT214108. Apple maintains a Security Releases page athttps:\/\/support.apple.com\/HT201222 which lists recentsoftware updates with security advisories. CoreMediaAvailable for: Apple Vision ProImpact: An app may be able to execute arbitrary code with kernelprivilegesDescription: The issue was &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-57438","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/57438","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=57438"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/57438\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=57438"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=57438"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=57438"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}