CVE-2023-32357

An authorization issue was addressed with improved state management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to retain access to system configuration files even after its permission is revoked.
References
Link Resource
https://support.apple.com/en-us/HT213757 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213758 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213759 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213760 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213761 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213764 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213757 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213758 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213759 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213760 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213761 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213764 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:03

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213757 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213757 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213759 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213759 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213760 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213760 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213761 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213761 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213764 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213764 - Release Notes, Vendor Advisory

27 Jul 2023, 04:15

Type Values Removed Values Added
Summary An authorization issue was addressed with improved state management. This issue is fixed in watchOS 9.5, macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, macOS Big Sur 11.7.7, macOS Monterey 12.6.6. An app may be able to retain access to system configuration files even after its permission is revoked An authorization issue was addressed with improved state management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to retain access to system configuration files even after its permission is revoked.

30 Jun 2023, 13:49

Type Values Removed Values Added
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References (MISC) https://support.apple.com/en-us/HT213764 - (MISC) https://support.apple.com/en-us/HT213764 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213757 - (MISC) https://support.apple.com/en-us/HT213757 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213759 - (MISC) https://support.apple.com/en-us/HT213759 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213761 - (MISC) https://support.apple.com/en-us/HT213761 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213758 - (MISC) https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213760 - (MISC) https://support.apple.com/en-us/HT213760 - Release Notes, Vendor Advisory
First Time Apple
Apple watchos
Apple iphone Os
Apple tvos
Apple macos
Apple ipados
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1

23 Jun 2023, 19:24

Type Values Removed Values Added
New CVE

Information

Published : 2023-06-23 18:15

Updated : 2024-11-21 08:03


NVD link : CVE-2023-32357

Mitre link : CVE-2023-32357

CVE.ORG link : CVE-2023-32357


JSON object : View

Products Affected

apple

  • macos
  • watchos
  • iphone_os
  • ipados
  • tvos