Amadey Botnet – Active IOCs
August 2, 2024ICS: Multiple Johnson Controls Vulnerabilities
August 3, 2024Amadey Botnet – Active IOCs
August 2, 2024ICS: Multiple Johnson Controls Vulnerabilities
August 3, 2024Severity
Medium
Analysis Summary
CVE-2024-27877
Apple macOS Ventura could allow a remote attacker to obtain sensitive information, caused by an out-of-bounds read when processing files in the VTDecoderXPCService process. By persuading a victim to open a specially crafted file, an attacker could exploit this vulnerability to disclose memory contents or cause a denial of service.
Impact
- Information Disclosure
Indicators of Compromise
CVE
- CVE-2024-27877
Affected Vendors
Affected Products
- Apple macOS Ventura 13.6.7
Remediation
Refer to Apple security document for patch, upgrade or suggested workaround information.