Vulnerabilities > CVE-2024-23254

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE

Summary

The issue was addressed with improved UI handling. This issue is fixed in tvOS 17.4, macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, watchOS 10.4, Safari 17.4. A malicious website may exfiltrate audio data cross-origin.

Vulnerable Configurations

Part Description Count
OS
Apple
612
OS
Fedoraproject
1
Application
Apple
203
Application
Wpewebkit
109
Application
Webkitgtk
376