CVE-2024-23300: Apple Garageband
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
A use-after-free issue was addressed with improved memory management. This issue is fixed in GarageBand 10.4.11. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
Affected products
- Apple Garageband: before 10.4.11 (fixed in 10.4.11)
Published 2024-03-12. Last modified 2026-06-17.