The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, iOS 16.7 and iPadOS 16.7, macOS Ventura 13.6. A local attacker may be able to elevate their privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213927 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213931 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213932 | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
10 Jan 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary | The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, iOS 16.7 and iPadOS 16.7, macOS Ventura 13.6. A local attacker may be able to elevate their privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7. |
07 Nov 2023, 04:21
Type | Values Removed | Values Added |
---|---|---|
References |
|
24 Oct 2023, 13:00
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:apple:iphone_os:17.0:*:*:*:*:*:*:* cpe:2.3:o:apple:ipados:17.0:*:*:*:*:*:*:* |
12 Oct 2023, 02:44
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://support.apple.com/en-us/HT213931 - Release Notes, Vendor Advisory | |
References | (MISC) http://seclists.org/fulldisclosure/2023/Oct/5 - Mailing List, Third Party Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213927 - Release Notes, Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213932 - Release Notes, Vendor Advisory | |
CPE | cpe:2.3:o:apple:watchos:10.0.0:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipad_os:17.0:*:*:*:*:*:*:* |
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* |
First Time |
Apple ipados
|
03 Oct 2023, 06:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
27 Sep 2023, 15:19
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary | The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, macOS Ventura 13.6, iOS 16.7 and iPadOS 16.7. A local attacker may be able to elevate their privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7. |
25 Sep 2023, 16:43
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://support.apple.com/en-us/HT213926 - Vendor Advisory | |
References | (MISC) https://support.apple.com/kb/HT213926 - Vendor Advisory | |
References | (MISC) http://seclists.org/fulldisclosure/2023/Sep/18 - Third Party Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213932 - Vendor Advisory | |
References | (MISC) http://seclists.org/fulldisclosure/2023/Sep/15 - Third Party Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213927 - Vendor Advisory | |
References | (MISC) http://seclists.org/fulldisclosure/2023/Sep/17 - Third Party Advisory | |
References | (MISC) http://seclists.org/fulldisclosure/2023/Sep/14 - Third Party Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213929 - Vendor Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213931 - Vendor Advisory | |
References | (MISC) http://seclists.org/fulldisclosure/2023/Sep/19 - Third Party Advisory | |
References | (MISC) https://support.apple.com/en-us/HT213928 - Vendor Advisory | |
References | (MISC) http://seclists.org/fulldisclosure/2023/Sep/16 - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
First Time |
Apple
Apple ipad Os Apple watchos Apple iphone Os Apple macos |
|
CWE | CWE-754 | |
CPE | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:17.0:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:10.0.0:*:*:*:*:*:*:* cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipad_os:17.0:*:*:*:*:*:*:* cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* |
23 Sep 2023, 03:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
21 Sep 2023, 20:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
21 Sep 2023, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-21 19:15
Updated : 2024-06-21 16:15
NVD link : CVE-2023-41992
Mitre link : CVE-2023-41992
CVE.ORG link : CVE-2023-41992
JSON object : View
Products Affected
apple
- ipados
- iphone_os
- macos
CWE
CWE-754
Improper Check for Unusual or Exceptional Conditions