发布时间: 2024年11月19日
修改时间: 2025年1月4日
A use after free issue was addressed with improved memory management. This issue is fixed in Safari 17.2, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. Processing maliciously crafted web content may lead to arbitrary code execution.
NVD | openEuler | |
---|---|---|
CVSS评分 | 8.8 | 8.8 |
Attack Vector | Network | Network |
Attack Complexity | Low | Low |
Privileges Required | None | None |
User Interaction | Required | Required |
Scope | Unchanged | Unchanged |
Confidentiality | High | High |
Integrity | High | High |
Availability | High | High |
公告名 | 概要 | 发布时间 |
---|---|---|
KylinSec-SA-2024-4164 | A use after free issue was addressed with improved memory management. This issue is fixed in Safari 17.2, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. Processing maliciously crafted web content may lead to arbitrary code execution. | 2024年11月23日 |
产品 | 包 | 状态 |
---|---|---|
KY3.4-5A | openjdk-11 | Unaffected |
KY3.5.2 | openjdk-11 | Unaffected |
KY3.5.3 | openjdk-11 | Unaffected |
V6 | openjdk-11 | Unaffected |