Apple Security Updates – 10 March 2024

Apple has released security updates to address several vulnerabilities across Safari, macOS Ventura, macOS Monterey, and macOS Sonoma.

The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, perform denial of service attacks, gain elevated privileges, or execute arbitrary code and gain access to the affected systems.

Sample of the addressed vulnerabilities:

1. Apple macOS Monterey Privilege Escalation Vulnerability (CVE-2024-23268):

  • CVSS: 7.8
  • Attack Vector: Local
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Gain Privileges

2. Apple Safari Security Bypass Vulnerability (CVE-2024-23273):

  • CVSS: 6.5
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Bypass Security
Vulnerabilities
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Apple Security Advisory

References