A type confusion issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.7.5, macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4. An app may be able to execute arbitrary code with kernel privileges.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213670 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213673 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213675 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213676 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213677 | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
17 Jan 2024, 21:03
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
|
CWE | CWE-843 | |
First Time |
Apple
Apple macos Apple ipados Apple iphone Os |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
References | () https://support.apple.com/en-us/HT213677 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213673 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213675 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213676 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213670 - Release Notes, Vendor Advisory |
10 Jan 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-10 22:15
Updated : 2024-08-26 20:35
NVD link : CVE-2023-41075
Mitre link : CVE-2023-41075
CVE.ORG link : CVE-2023-41075
JSON object : View
Products Affected
apple
- ipados
- iphone_os
- macos
CWE
CWE-843
Access of Resource Using Incompatible Type ('Type Confusion')