CVE-2023-32413

A race condition was addressed with improved state handling. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to gain root privileges.
References
Link Resource
https://support.apple.com/en-us/HT213757 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213758 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213759 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213760 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213761 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213764 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213765 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

History

27 Jul 2023, 04:15

Type Values Removed Values Added
Summary A race condition was addressed with improved state handling. This issue is fixed in watchOS 9.5, iOS 15.7.6 and iPadOS 15.7.6, macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, macOS Big Sur 11.7.7, macOS Monterey 12.6.6. An app may be able to gain root privileges A race condition was addressed with improved state handling. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to gain root privileges.

30 Jun 2023, 07:14

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.0
References (MISC) https://support.apple.com/en-us/HT213764 - (MISC) https://support.apple.com/en-us/HT213764 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213757 - (MISC) https://support.apple.com/en-us/HT213757 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213759 - (MISC) https://support.apple.com/en-us/HT213759 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213761 - (MISC) https://support.apple.com/en-us/HT213761 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213765 - (MISC) https://support.apple.com/en-us/HT213765 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213758 - (MISC) https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory
References (MISC) https://support.apple.com/en-us/HT213760 - (MISC) https://support.apple.com/en-us/HT213760 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
CWE CWE-362
First Time Apple
Apple watchos
Apple iphone Os
Apple tvos
Apple macos
Apple ipados

23 Jun 2023, 19:24

Type Values Removed Values Added
New CVE

Information

Published : 2023-06-23 18:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-32413

Mitre link : CVE-2023-32413

CVE.ORG link : CVE-2023-32413


JSON object : View

Products Affected

apple

  • iphone_os
  • watchos
  • ipados
  • tvos
  • macos
CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')