{"id":59755,"date":"2024-09-17T19:21:14","date_gmt":"2024-09-17T16:21:14","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/181583\/APPLE-SA-09-16-2024-9.txt"},"modified":"2024-09-17T19:21:14","modified_gmt":"2024-09-17T16:21:14","slug":"apple-security-advisory-09-16-2024-9","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/apple-security-advisory-09-16-2024-9\/","title":{"rendered":"Apple Security Advisory 09-16-2024-9"},"content":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;<br \/>Hash: SHA256<\/p>\n<p>APPLE-SA-09-16-2024-9 macOS Sonoma 14.7<\/p>\n<p>macOS Sonoma 14.7 addresses the following issues.<br \/>Information about the security content is also available at<br \/>https:\/\/support.apple.com\/121247.<\/p>\n<p>Apple maintains a Security Releases page at<br \/>https:\/\/support.apple.com\/100100 which lists recent<br \/>software updates with security advisories.<\/p>\n<p>Accounts<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: The issue was addressed with improved permissions logic.<br \/>CVE-2024-44153: Mickey Jin (@patch1t)<\/p>\n<p>App Intents<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access sensitive data logged when a<br \/>shortcut fails to launch another app<br \/>Description: This issue was addressed with improved redaction of<br \/>sensitive information.<br \/>CVE-2024-44182: Kirin (@Pwnrin)<\/p>\n<p>AppleGraphicsControl<br \/>Available for: macOS Sonoma<br \/>Impact: Processing a maliciously crafted video file may lead to<br \/>unexpected app termination<br \/>Description: The issue was addressed with improved memory handling.<br \/>CVE-2024-40846: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<br \/>CVE-2024-40845: Pwn2car working with Trend Micro Zero Day Initiative<\/p>\n<p>AppleGraphicsControl<br \/>Available for: macOS Sonoma<br \/>Impact: Processing a maliciously crafted file may lead to unexpected app<br \/>termination<br \/>Description: A memory initialization issue was addressed with improved<br \/>memory handling.<br \/>CVE-2024-44154: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access sensitive user data<br \/>Description: The issue was addressed with additional code-signing<br \/>restrictions.<br \/>CVE-2024-40847: Mickey Jin (@patch1t)<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to bypass Privacy preferences<br \/>Description: This issue was addressed with improved checks.<br \/>CVE-2024-44164: Mickey Jin (@patch1t)<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to modify protected parts of the file system<br \/>Description: A library injection issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-44168: Claudio Bozzato and Francesco Benvenuto of Cisco Talos<\/p>\n<p>AppleMobileFileIntegrity<br \/>Available for: macOS Sonoma<br \/>Impact: An attacker may be able to read sensitive information<br \/>Description: A downgrade issue was addressed with additional code-<br \/>signing restrictions.<br \/>CVE-2024-40848: Mickey Jin (@patch1t)<\/p>\n<p>AppleVA<br \/>Available for: macOS Sonoma<br \/>Impact: Processing a maliciously crafted video file may lead to<br \/>unexpected app termination<br \/>Description: An out-of-bounds write issue was addressed with improved<br \/>bounds checking.<br \/>CVE-2024-40841: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>AppSandbox<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access protected files within an App<br \/>Sandbox container<br \/>Description: A permissions issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-44135: Mickey Jin (@patch1t)<\/p>\n<p>Automator<br \/>Available for: macOS Sonoma<br \/>Impact: An Automator Quick Action workflow may be able to bypass<br \/>Gatekeeper<br \/>Description: This issue was addressed by adding an additional prompt for<br \/>user consent.<br \/>CVE-2024-44128: Anton Boegler<\/p>\n<p>bless<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to modify protected parts of the file system<br \/>Description: A permissions issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-44151: Mickey Jin (@patch1t)<\/p>\n<p>Compression<br \/>Available for: macOS Sonoma<br \/>Impact: Unpacking a maliciously crafted archive may allow an attacker to<br \/>write arbitrary files<br \/>Description: A race condition was addressed with improved locking.<br \/>CVE-2024-27876: Snoolie Keffaber (@0xilis)<\/p>\n<p>Dock<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A privacy issue was addressed by removing sensitive data.<br \/>CVE-2024-44177: an anonymous researcher<\/p>\n<p>Game Center<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A file access issue was addressed with improved input<br \/>validation.<br \/>CVE-2024-40850: Denis Tokarev (@illusionofcha0s)<\/p>\n<p>ImageIO<br \/>Available for: macOS Sonoma<br \/>Impact: Processing a maliciously crafted file may lead to unexpected app<br \/>termination<br \/>Description: An out-of-bounds read issue was addressed with improved<br \/>input validation.<br \/>CVE-2024-27880: Junsung Lee<\/p>\n<p>ImageIO<br \/>Available for: macOS Sonoma<br \/>Impact: Processing an image may lead to a denial-of-service<br \/>Description: An out-of-bounds access issue was addressed with improved<br \/>bounds checking.<br \/>CVE-2024-44176: dw0r of ZeroPointer Lab working with Trend Micro Zero<br \/>Day Initiative, an anonymous researcher<\/p>\n<p>Intel Graphics Driver<br \/>Available for: macOS Sonoma<br \/>Impact: Processing a maliciously crafted texture may lead to unexpected<br \/>app termination<br \/>Description: A buffer overflow issue was addressed with improved memory<br \/>handling.<br \/>CVE-2024-44160: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>Intel Graphics Driver<br \/>Available for: macOS Sonoma<br \/>Impact: Processing a maliciously crafted texture may lead to unexpected<br \/>app termination<br \/>Description: An out-of-bounds read was addressed with improved bounds<br \/>checking.<br \/>CVE-2024-44161: Michael DePlante (@izobashi) of Trend Micro Zero Day<br \/>Initiative<\/p>\n<p>IOSurfaceAccelerator<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to cause unexpected system termination<br \/>Description: The issue was addressed with improved memory handling.<br \/>CVE-2024-44169: Antonio Zeki\u0107<\/p>\n<p>Kernel<br \/>Available for: macOS Sonoma<br \/>Impact: Network traffic may leak outside a VPN tunnel<br \/>Description: A logic issue was addressed with improved checks.<br \/>CVE-2024-44165: Andrew Lytvynov<\/p>\n<p>Mail Accounts<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access information about a user&#8217;s contacts<br \/>Description: A privacy issue was addressed with improved private data<br \/>redaction for log entries.<br \/>CVE-2024-40791: Rodolphe BRUNETTI (@eisw0lf)<\/p>\n<p>Maps<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to read sensitive location information<br \/>Description: An issue was addressed with improved handling of temporary<br \/>files.<br \/>CVE-2024-44181: Kirin(@Pwnrin) and LFY(@secsys) from Fudan University<\/p>\n<p>mDNSResponder<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to cause a denial-of-service<br \/>Description: A logic error was addressed with improved error handling.<br \/>CVE-2024-44183: Olivier Levon<\/p>\n<p>Notes<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to overwrite arbitrary files<br \/>Description: This issue was addressed by removing the vulnerable code.<br \/>CVE-2024-44167: ajajfxhj<\/p>\n<p>PackageKit<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to modify protected parts of the file system<br \/>Description: This issue was addressed with improved validation of<br \/>symlinks.<br \/>CVE-2024-44178: Mickey Jin (@patch1t)<\/p>\n<p>Safari<br \/>Available for: macOS Sonoma<br \/>Impact: Visiting a malicious website may lead to user interface spoofing<br \/>Description: This issue was addressed through improved state management.<br \/>CVE-2024-40797: Rifa&#8217;i Rejal Maynando<\/p>\n<p>Sandbox<br \/>Available for: macOS Sonoma<br \/>Impact: A malicious application may be able to access private<br \/>information<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-44163: Zhongquan Li (@Guluisacat)<\/p>\n<p>Sandbox<br \/>Available for: macOS Sonoma<br \/>Impact: A malicious application may be able to leak sensitive user<br \/>information<br \/>Description: The issue was addressed with improved checks.<br \/>CVE-2024-44125: Zhongquan Li (@Guluisacat)<\/p>\n<p>Security Initialization<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access protected user data<br \/>Description: A permissions issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-40801: Zhongquan Li (@Guluisacat), Pedro Jos\u00e9 Pereira Vieito<br \/>(@pvieito), an anonymous researcher<\/p>\n<p>Shortcuts<br \/>Available for: macOS Sonoma<br \/>Impact: A shortcut may output sensitive user data without consent<br \/>Description: This issue was addressed with improved redaction of<br \/>sensitive information.<br \/>CVE-2024-44158: Kirin (@Pwnrin)<\/p>\n<p>Shortcuts<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to observe data displayed to the user by<br \/>Shortcuts<br \/>Description: A privacy issue was addressed with improved handling of<br \/>temporary files.<br \/>CVE-2024-40844: Kirin (@Pwnrin) and luckyu (@uuulucky) of NorthSea<\/p>\n<p>sudo<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to modify protected parts of the file system<br \/>Description: A logic issue was addressed with improved checks.<br \/>CVE-2024-40860: Arsenii Kostromin (0x3c3e)<\/p>\n<p>System Settings<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A privacy issue was addressed with improved private data<br \/>redaction for log entries.<br \/>CVE-2024-44166: Kirin (@Pwnrin) and LFY (@secsys) from Fudan University<\/p>\n<p>System Settings<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to read arbitrary files<br \/>Description: A path handling issue was addressed with improved<br \/>validation.<br \/>CVE-2024-44190: Rodolphe BRUNETTI (@eisw0lf)<\/p>\n<p>Transparency<br \/>Available for: macOS Sonoma<br \/>Impact: An app may be able to access user-sensitive data<br \/>Description: A permissions issue was addressed with additional<br \/>restrictions.<br \/>CVE-2024-44184: Bohdan Stasiuk (@Bohdan_Stasiuk)<\/p>\n<p>Additional recognition<\/p>\n<p>Airport<br \/>We would like to acknowledge David Dudok de Wit for their assistance.<\/p>\n<p>macOS Sonoma 14.7 may be obtained from the Mac App Store or Apple&#8217;s<br \/>Software Downloads web site: https:\/\/support.apple.com\/downloads\/<\/p>\n<p>All information is also posted on the Apple Security Releases<br \/>web site: https:\/\/support.apple.com\/100100.<\/p>\n<p>This message is signed with Apple&#8217;s Product Security PGP key,<br \/>and details are available at:<br \/>https:\/\/www.apple.com\/support\/security\/pgp\/<br \/>&#8212;&#8211;BEGIN PGP SIGNATURE&#8212;&#8211;<\/p>\n<p>iQIzBAEBCAAdFiEEsz9altA7uTI+rE\/qX+5d1TXaIvoFAmboywEACgkQX+5d1TXa<br \/>IvrDjxAA2tgRLOOTvFpZrVW\/HEBxwCFUn7UkzXyfgUTuqntjSvmsc\/pyVmPDpnOM<br \/>UnLhZ4d3B6v44MSelhxSbomtGkggQfYAvcNmlPDk+yMMS0K5yRBJ3dobEt4e53Wj<br \/>9DQl2cQfHxop3uaLRFRTRy5Wk46xIZcsPS3Obb0kLAZpnzD1K2UQ5tIgEVF2ETqi<br \/>SaRlrjqsgiauG\/qZ8pzJjQSB1\/iNBJCf4TBMBmHHJ91zAVOiYxvVcIAcBl1cBK4m<br \/>UU6Z0vF1NmNCTAu\/8KPP0Y6AD5tM7ZrkotU1yTP8uey4r3Ec8XrZqzhTH05sMI5V<br \/>Xt98UeRNl2EJQAJR2Wjfsa2u255SvJ9VJpOGpTff9npsP5c6a7fup2mcKSVmCJHG<br \/>FxFoU9WC2Lx2fsb7kBZXx5y4+\/lwKBh8gQBkqOB4vttUZIYwp\/rwXJtBvwkSb3E+<br \/>2MTYly0SAAAbwrGoImKsskbiOxB+Ebry2cZ4Rg8rKKwQIfpjpgCb2U97Ue1zCU\/S<br \/>lHCObpyD0HtDD13zYw3NXfbrcWS195WhLdgtVl9XJz90pQQwdcINzubGhILmabpl<br \/>Q+QXoSuKNi0ooy9qO8yEmQdzF0swD\/FZMqTmF6FFtFby4NpY6ooapHHyhJOGeqSn<br \/>\/Poj2T\/Ay\/xaX7VL2fUPU9n0KTNtp+HgvgpzMX31HpBNXo\/96Eo=<br \/>=YUrh<br \/>&#8212;&#8211;END PGP SIGNATURE&#8212;&#8211;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;Hash: SHA256 APPLE-SA-09-16-2024-9 macOS Sonoma 14.7 macOS Sonoma 14.7 addresses the following issues.Information about the security content is also available athttps:\/\/support.apple.com\/121247. Apple maintains a Security Releases page athttps:\/\/support.apple.com\/100100 which lists recentsoftware updates with security advisories. AccountsAvailable for: macOS SonomaImpact: An app may be able to access user-sensitive dataDescription: The issue was addressed &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-59755","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/59755","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=59755"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/59755\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=59755"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=59755"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=59755"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}