CVE-2024-27804
HIGH 8.1EPSS 1.3%
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An app may be able to execute arbitrary code with kernel privileges.
- CVSS v3.1
- 5.5 MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H - CVSS v3.1
- 8.1 HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H - EPSS
- 1.31% chance of exploitation in the next 30 days, 69th percentile
- Published
- 2024-05-13
- Updated
- 2026-04-02
Proof-of-concept exploits (1)
- R00tkitSMM/CVE-2024-27804138★ · 2024-05-14