← Back to browse · API

CVE-2024-23296

Severity
HIGH
CVSS
7.8
EPSS
0.01411
Risk score
56.69
CISA KEV
Yes
PoC
No
Published
2024-03-06
Modified
2024-03-06
First seen
2026-08-07
Aliases
EUVD-2024-20815, GHSA-V4RC-HQ4F-4CMP
Products
Apple:Multiple Products, Apple:iOS and iPadOS 0 <16.7.8, Apple:iOS and iPadOS 0 <17.4, Apple:macOS 0 <12.7.6, Apple:macOS 0 <13.6.7, Apple:macOS 0 <14.4, Apple:tvOS 0 <17.4, Apple:visionOS 0 <1.1, Apple:watchOS 0 <10.4
Sources
euvd EUVD-2024-20815
cisa.gov CVE-2024-23296

Description

Apple iOS, iPadOS, macOS, tvOS, and watchOS RTKit contain a memory corruption vulnerability that allows an attacker with arbitrary kernel read and write capability to bypass kernel memory protections.

References