VYPR
High severity7.1NVD Advisory· Published Jul 29, 2024· Updated Jun 17, 2026

CVE-2024-40774

CVE-2024-40774

Description

A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • Apple Inc./Ipados2 versions
    cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <17.6
    • (no CPE)range: prior to 17.6
  • cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
    Range: <17.6
  • Apple Inc./macOS2 versions
    cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: <12.7.6
    • (no CPE)range: prior to 14.6 (Sonoma), 13.6.8 (Ventura), 12.7.6 (Monterey)
  • cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
    Range: <17.6
  • cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
    Range: <10.6
  • Apple Inc./iOSllm-fuzzy
    Range: prior to 17.6

Patches

Vulnerability mechanics

References

24

News mentions

0

No linked articles in our index yet.