CVE-2024-44127

This issue was addressed through improved state management. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18. Private Browsing tabs may be accessed without authentication.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

12 Dec 2024, 15:10

Type Values Removed Values Added
References () https://support.apple.com/en-us/121246 - () https://support.apple.com/en-us/121246 - Vendor Advisory
References () https://support.apple.com/en-us/121250 - () https://support.apple.com/en-us/121250 - Vendor Advisory
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
First Time Apple
Apple ipados
Apple iphone Os
CWE NVD-CWE-noinfo

18 Sep 2024, 18:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
CWE CWE-287
Summary
  • (es) Este problema se solucionó mediante una mejor gestión del estado. Este problema se solucionó en iOS 17.7 y iPadOS 17.7, iOS 18 y iPadOS 18. Se puede acceder a las pestañas de Navegación privada sin autenticación.

17 Sep 2024, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-17 00:15

Updated : 2024-12-12 15:10


NVD link : CVE-2024-44127

Mitre link : CVE-2024-44127

CVE.ORG link : CVE-2024-44127


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados
CWE
NVD-CWE-noinfo CWE-287

Improper Authentication