About the security content of macOS Sonoma 14.4.1 – Apple Support

March 25, 2024 at 01:54PM Apple has released an update for macOS Sonoma to address out-of-bounds write issues in CoreMedia and WebRTC. The issues were resolved with improved input validation to prevent arbitrary code execution when processing images. CVE-2024-1580 is the identifier for this vulnerability. The meeting notes indicate that there are two issues addressed … Read more

About the security content of macOS Sonoma 14.1.2 – Apple Support

November 30, 2023 at 01:42PM Apple fixed two WebKit vulnerabilities (CVE-2023-42916, CVE-2023-42917) affecting macOS Sonoma that could disclose sensitive info or execute arbitrary code; possibly exploited in iOS pre-16.7.1. Release on 2023-11-30, addressed via improved input validation and locking. Meeting Takeaways: 1. A recent Apple security document with ID HT214032 was discussed. 2. Two vulnerabilities … Read more