← KEV catalog
CISA known exploited vulnerability

CVE-2024-23296

Apple Multiple Products Memory Corruption Vulnerability

SOURCE FACT

Apple · Multiple Products

Apple iOS, iPadOS, macOS, tvOS, and watchOS RTKit contain a memory corruption vulnerability that allows an attacker with arbitrary kernel read and write capability to bypass kernel memory protections.

Required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CISA notes

https://support.apple.com/en-us/HT214081, https://support.apple.com/en-us/HT214082, https://support.apple.com/en-us/HT214084, https://support.apple.com/en-us/HT214086, https://support.apple.com/en-us/HT214088 ; https://nvd.nist.gov/vuln/detail/CVE-2024-23296

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?