A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. Parsing an office document may lead to an unexpected app termination or arbitrary code execution.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213758 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213759 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213760 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213758 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213759 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213760 | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:03
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213759 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213760 - Release Notes, Vendor Advisory |
18 Jan 2024, 14:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213760 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213759 - Release Notes, Vendor Advisory | |
CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
First Time |
Apple
Apple macos |
|
CWE | CWE-120 |
10 Jan 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-10 22:15
Updated : 2024-11-21 08:03
NVD link : CVE-2023-32401
Mitre link : CVE-2023-32401
CVE.ORG link : CVE-2023-32401
JSON object : View
Products Affected
apple
- macos
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')