{"id":59752,"date":"2024-09-17T19:21:09","date_gmt":"2024-09-17T16:21:09","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/181586\/APPLE-SA-09-16-2024-10.txt"},"modified":"2024-09-17T19:21:09","modified_gmt":"2024-09-17T16:21:09","slug":"apple-security-advisory-09-16-2024-10","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/apple-security-advisory-09-16-2024-10\/","title":{"rendered":"Apple Security Advisory 09-16-2024-10"},"content":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;<br \/>Hash: SHA256<\/p>\n<p>APPLE-SA-09-16-2024-10 macOS Ventura 13.7<\/p>\n<p>macOS Ventura 13.7 addresses the following issues.<br \/>Information about the security content is also available at<br \/>https:\/\/support.apple.com\/121234.<\/p>\n<p>Apple maintains a Security Releases page at<br \/>https:\/\/support.apple.com\/100100 which lists recent<br \/>software updates with security advisories.<\/p>\n<p>Accounts<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to leak sensitive user information<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-44129<\/p>\n<p>App Intents<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to access sensitive data logged when a<br \/>shortcut fails to launch another app<br \/>Description: This issue was addressed with improved redaction of<br \/>sensitive information.<br \/>CVE-2024-44182: Kirin (@Pwnrin)<\/p>\n<p>AppKit<br \/>Available for: macOS Ventura<br \/>Impact: An unprivileged app may be able to log keystrokes in other apps<br \/>including those using secure input mode<br \/>Description: A logic issue was addressed with improved restrictions.<br \/>CVE-2024-27886: Stephan Casas, an anonymous researcher<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to access sensitive user data<br \/>Description: The issue was addressed with additional code-signing<br \/>restrictions.<br \/>CVE-2024-40847: Mickey Jin (@patch1t)<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to bypass Privacy preferences<br \/>Description: A downgrade issue was addressed with additional code-<br \/>signing restrictions.<br \/>CVE-2024-40814: Mickey Jin (@patch1t)<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to bypass Privacy preferences<br \/>Description: This issue was addressed with improved checks.<br \/>CVE-2024-44164: Mickey Jin (@patch1t)<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to modify protected parts of the file system<br \/>Description: A library injection issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-44168: Claudio Bozzato and Francesco Benvenuto of Cisco Talos<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Ventura<br \/>Impact: An attacker may be able to read sensitive information<br \/>Description: A downgrade issue was addressed with additional code-<br \/>signing restrictions.<br \/>CVE-2024-40848: Mickey Jin (@patch1t)<\/p>\n<p>Automator<br \/>Available for: macOS Ventura<br \/>Impact: An Automator Quick Action workflow may be able to bypass<br \/>Gatekeeper<br \/>Description: This issue was addressed by adding an additional prompt for<br \/>user consent.<br \/>CVE-2024-44128: Anton Boegler<\/p>\n<p>bless<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to modify protected parts of the file system<br \/>Description: A permissions issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-44151: Mickey Jin (@patch1t)<\/p>\n<p>Compression<br \/>Available for: macOS Ventura<br \/>Impact: Unpacking a maliciously crafted archive may allow an attacker to<br \/>write arbitrary files<br \/>Description: A race condition was addressed with improved locking.<br \/>CVE-2024-27876: Snoolie Keffaber (@0xilis)<\/p>\n<p>Dock<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A privacy issue was addressed by removing sensitive data.<br \/>CVE-2024-44177: an anonymous researcher<\/p>\n<p>Game Center<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A file access issue was addressed with improved input<br \/>validation.<br \/>CVE-2024-40850: Denis Tokarev (@illusionofcha0s)<\/p>\n<p>ImageIO<br \/>Available for: macOS Ventura<br \/>Impact: Processing an image may lead to a denial-of-service<br \/>Description: An out-of-bounds access issue was addressed with improved<br \/>bounds checking.<br \/>CVE-2024-44176: dw0r of ZeroPointer Lab working with Trend Micro Zero<br \/>Day Initiative, an anonymous researcher<\/p>\n<p>Intel Graphics Driver<br \/>Available for: macOS Ventura<br \/>Impact: Processing a maliciously crafted texture may lead to unexpected<br \/>app termination<br \/>Description: A buffer overflow issue was addressed with improved memory<br \/>handling.<br \/>CVE-2024-44160: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>Intel Graphics Driver<br \/>Available for: macOS Ventura<br \/>Impact: Processing a maliciously crafted texture may lead to unexpected<br \/>app termination<br \/>Description: An out-of-bounds read was addressed with improved bounds<br \/>checking.<br \/>CVE-2024-44161: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>IOSurfaceAccelerator<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to cause unexpected system termination<br \/>Description: The issue was addressed with improved memory handling.<br \/>CVE-2024-44169: Antonio Zeki\u0107<\/p>\n<p>Kernel<br \/>Available for: macOS Ventura<br \/>Impact: Network traffic may leak outside a VPN tunnel<br \/>Description: A logic issue was addressed with improved checks.<br \/>CVE-2024-44165: Andrew Lytvynov<\/p>\n<p>Mail Accounts<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to access information about a user&#8217;s contacts<br \/>Description: A privacy issue was addressed with improved private data<br \/>redaction for log entries.<br \/>CVE-2024-40791: Rodolphe BRUNETTI (@eisw0lf)<\/p>\n<p>Maps<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to read sensitive location information<br \/>Description: An issue was addressed with improved handling of temporary<br \/>files.<br \/>CVE-2024-44181: Kirin(@Pwnrin) and LFY(@secsys) from Fudan University<\/p>\n<p>mDNSResponder<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to cause a denial-of-service<br \/>Description: A logic error was addressed with improved error handling.<br \/>CVE-2024-44183: Olivier Levon<\/p>\n<p>Notes<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to overwrite arbitrary files<br \/>Description: This issue was addressed by removing the vulnerable code.<br \/>CVE-2024-44167: ajajfxhj<\/p>\n<p>PackageKit<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to modify protected parts of the file system<br \/>Description: This issue was addressed with improved validation of<br \/>symlinks.<br \/>CVE-2024-44178: Mickey Jin (@patch1t)<\/p>\n<p>Safari<br \/>Available for: macOS Ventura<br \/>Impact: Visiting a malicious website may lead to user interface spoofing<br \/>Description: This issue was addressed through improved state management.<br \/>CVE-2024-40797: Rifa&#8217;i Rejal Maynando<\/p>\n<p>Sandbox<br \/>Available for: macOS Ventura<br \/>Impact: A malicious application may be able to access private<br \/>information<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-44163: Zhongquan Li (@Guluisacat)<\/p>\n<p>Shortcuts<br \/>Available for: macOS Ventura<br \/>Impact: A shortcut may output sensitive user data without consent<br \/>Description: This issue was addressed with improved redaction of<br \/>sensitive information.<br \/>CVE-2024-44158: Kirin (@Pwnrin)<\/p>\n<p>Shortcuts<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to observe data displayed to the user by<br \/>Shortcuts<br \/>Description: A privacy issue was addressed with improved handling of<br \/>temporary files.<br \/>CVE-2024-40844: Kirin (@Pwnrin) and luckyu (@uuulucky) of NorthSea<\/p>\n<p>System Settings<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A privacy issue was addressed with improved private data<br \/>redaction for log entries.<br \/>CVE-2024-44166: Kirin (@Pwnrin) and LFY (@secsys) from Fudan University<\/p>\n<p>System Settings<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to read arbitrary files<br \/>Description: A path handling issue was addressed with improved<br \/>validation.<br \/>CVE-2024-44190: Rodolphe BRUNETTI (@eisw0lf)<\/p>\n<p>Transparency<br \/>Available for: macOS Ventura<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A permissions issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-44184: Bohdan Stasiuk (@Bohdan_Stasiuk)<\/p>\n<p>Additional recognition<\/p>\n<p>Airport<br \/>We would like to acknowledge David Dudok de Wit for their assistance.<\/p>\n<p>macOS Ventura 13.7 may be obtained from the Mac App Store or Apple&#8217;s<br \/>Software Downloads web site: https:\/\/support.apple.com\/downloads\/<\/p>\n<p>All information is also posted on the Apple Security Releases<br \/>web site: https:\/\/support.apple.com\/100100.<\/p>\n<p>This message is signed with Apple&#8217;s Product Security PGP key,<br \/>and details are available at:<br \/>https:\/\/www.apple.com\/support\/security\/pgp\/<br \/>&#8212;&#8211;BEGIN PGP SIGNATURE&#8212;&#8211;<\/p>\n<p>iQIzBAEBCAAdFiEEsz9altA7uTI+rE\/qX+5d1TXaIvoFAmboy2sACgkQX+5d1TXa<br \/>IvoOmhAA1kPpqqhEBRbskSU4pFIfX+JY\/MyIrnI+6pNgMk3CLhQ5SSx0aFS2tg\/c<br \/>We70hoiTA8eWMvRkYr8KYNriNstqCivg7iq84Gv4\/ycJ9Hx4Zwj6pZh5If1H8y+Q<br \/>3NVsvLgnmvnAb6W7MvpXtgma47vA5xRe2oefCNe6QbcC2qnQ2xaspBZtH805IkAi<br \/>WznXdr7UXmjJyfjlgp2FifyiLYQoPXPGFOLKkBURDCxaH4SJidgvzxerU+B+1ju9<br \/>dqW29eQwTjG+qhXncTuxfUSuQ5s7g5XfVqfvcTQihUk+ZjWaMYOaUT2UYlAgDfg5<br \/>Mq35kP\/Hvh8zmf+Ryufl3D+qfKpyVUUJUKu+kEMbOIoIMkCzM4F0G30czaKiGCA+<br \/>tJCEtsY\/oxcbEcy8DLQbesPCv5Hf1Gv2fMkP3p\/6CAYqXQ1mXQF0Vm2erKRqS+yD<br \/>N2+M+r\/GFzvK4i9bf6j10kDgv9PRxPs+pH9zuU85cwhT+jZzr2dkvTC9p+mI+5CJ<br \/>AZ7ZMgTLbXDw2M4d4e6mEV3XbJ5ebNqQv9t0Hfbg3pf8YVEeAO0casIPopLK6fqi<br \/>uS7gn\/3PL9C1HS2gqlekYuwiP0DSleKk9qCDUVVfmAAxTA1vHKvtvlRBO0ykN7HI<br \/>NmX+8AuFy8jnZRmZWXIbav1\/EdWYg7e5SLCD+pemYLcMYSoSNXg=<br \/>=YxVI<br \/>&#8212;&#8211;END PGP SIGNATURE&#8212;&#8211;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;Hash: SHA256 APPLE-SA-09-16-2024-10 macOS Ventura 13.7 macOS Ventura 13.7 addresses the following issues.Information about the security content is also available athttps:\/\/support.apple.com\/121234. Apple maintains a Security Releases page athttps:\/\/support.apple.com\/100100 which lists recentsoftware updates with security advisories. AccountsAvailable for: macOS VenturaImpact: An app may be able to leak sensitive user informationDescription: The issue was &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-59752","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/59752","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=59752"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/59752\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=59752"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=59752"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=59752"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}