CVE-2024-27884: Apple iPadOS

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

This issue was addressed with a new entitlement. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, visionOS 1.2, watchOS 10.5. An app may be able to access user-sensitive data.

Affected products

  • Apple iPadOS: before 17.5 (fixed in 17.5)
  • Apple iPhone OS: before 17.5 (fixed in 17.5)
  • Apple macOS: before 14.5 (fixed in 14.5)
  • Apple tvOS: before 17.5 (fixed in 17.5)
  • Apple visionOS: before 1.2 (fixed in 1.2)
  • Apple watchOS: before 10.5 (fixed in 10.5)

Published 2024-07-29. Last modified 2026-06-17.