Protection mechanism failure in macOS - CVE-2024-54564
Published: March 21, 2025
Vulnerability details
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to insufficient implementation of security measures. A file received from AirDrop may not have the quarantine flag applied. This can help an attacker into tricking the victim to execute the file, as it will appear as safe for execution.
Affected software
visionOS
iPadOS
Apple iOS
How to mitigate CVE-2024-54564
visionOS - update to 1.3
iPadOS - update to 17.6 21G80
Apple iOS - update to 17.6 21G80