CVE-2024-40782

A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing maliciously crafted web content may lead to an unexpected process crash.
References
Link Resource
http://seclists.org/fulldisclosure/2024/Jul/15 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/16 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/17 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/18 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/21 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/22 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/23 Mailing List
https://support.apple.com/en-us/HT214116 Vendor Advisory
https://support.apple.com/en-us/HT214117 Vendor Advisory
https://support.apple.com/en-us/HT214119 Vendor Advisory
https://support.apple.com/en-us/HT214121 Vendor Advisory
https://support.apple.com/en-us/HT214122 Vendor Advisory
https://support.apple.com/en-us/HT214123 Vendor Advisory
https://support.apple.com/en-us/HT214124 Vendor Advisory
http://seclists.org/fulldisclosure/2024/Jul/15 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/16 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/17 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/18 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/21 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/22 Mailing List
http://seclists.org/fulldisclosure/2024/Jul/23 Mailing List
https://lists.debian.org/debian-lts-announce/2024/09/msg00006.html
https://support.apple.com/en-us/HT214116 Vendor Advisory
https://support.apple.com/en-us/HT214117 Vendor Advisory
https://support.apple.com/en-us/HT214119 Vendor Advisory
https://support.apple.com/en-us/HT214121 Vendor Advisory
https://support.apple.com/en-us/HT214122 Vendor Advisory
https://support.apple.com/en-us/HT214123 Vendor Advisory
https://support.apple.com/en-us/HT214124 Vendor Advisory
https://support.apple.com/kb/HT214116
https://support.apple.com/kb/HT214117
https://support.apple.com/kb/HT214119
https://support.apple.com/kb/HT214122
https://support.apple.com/kb/HT214123
https://support.apple.com/kb/HT214124
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:visionos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

04 Nov 2025, 18:16

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/09/msg00006.html -
  • () https://support.apple.com/kb/HT214116 -
  • () https://support.apple.com/kb/HT214117 -
  • () https://support.apple.com/kb/HT214119 -
  • () https://support.apple.com/kb/HT214122 -
  • () https://support.apple.com/kb/HT214123 -
  • () https://support.apple.com/kb/HT214124 -

Information

Published : 2024-07-29 23:15

Updated : 2025-11-04 18:16


NVD link : CVE-2024-40782

Mitre link : CVE-2024-40782

CVE.ORG link : CVE-2024-40782


JSON object : View

Products Affected

apple

  • watchos
  • visionos
  • ipados
  • iphone_os
  • safari
  • tvos
  • macos
CWE
CWE-416

Use After Free