A huge collection of 3400+ free website templates JAR theme com WP themes and more at the biggest community-driven free web design site
Home / security-advisories / GarageBand 10.4.11 for macOS Use-After-Free Vulnerability (CVE-2024-23300)

GarageBand 10.4.11 for macOS Use-After-Free Vulnerability (CVE-2024-23300)

Advisory No: TZCERT/SA/2024/03/13-02

Date of First Release: 13th March 2024

Source: Apple

Software Affected: macOS Ventura and macOS Sonoma

Overview:

Apple has released security update to address a critical vulnerability affecting macOS Ventura and macOS Sonoma. The vulnerability could allow an attacker to execute arbitrary code on the affected system.

Description:

macOS Ventura and macOS Sonoma are affected with the use-after-free vulnerability found in the GarageBand for mac. The vulnerability allows the processing of the maliciously crafted file that may result into unexpected crash or arbitrary code execution.

Impact:

Successful exploitation of this vulnerability may allow the attacker to take control of affected system.

Solution:

Apple has released patches for this vulnerability. Users and administrators are encouraged to apply necessary updates.

References:

  1. https://support.apple.com/en-us/HT214090
  2. https://www.intego.com/mac-security-blog/apple-patches-security-flaw-in-garageband-10-4-11-for-macos-sonoma-ventura/

Check Also

HPE Superdome Flex, Superdome Flex 280 and Compute Scale-up Server 3200 Servers Arbitrary Code Execution (CVE-2021-38578)

Advisory No: TZCERT/SA/2024/04/19 Date of First Release: 19th April 2024 Source: Hewlett Packard Enterprise (HPE) …