CISA Known Exploited Vulnerability

CVE-2024-23225

Apple · Multiple Products

Apple Multiple Products Memory Corruption Vulnerability

Date added
BOD 22-01 due date
CWE CWE-787
Ransomware Unknown

CISA description

Apple iOS, iPadOS, macOS, tvOS, watchOS, and visionOS kernel contain a memory corruption vulnerability that allows an attacker with arbitrary kernel read and write capability to bypass kernel memory protections.

Required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.