CVE-2023-42913

This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14.2. Remote Login sessions may be able to obtain full disk access permissions.
References
Link Resource
https://support.apple.com/en-us/HT214036 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214036 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:23

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT214036 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT214036 - Release Notes, Vendor Advisory

01 Aug 2024, 15:35

Type Values Removed Values Added
CWE CWE-922

08 Apr 2024, 22:46

Type Values Removed Values Added
Summary
  • (es) Esta cuestión se abordó mediante una mejor gestión de estado. Este problema se solucionó en macOS Sonoma 14.2. Las sesiones de inicio de sesión remoto pueden obtener permisos completos de acceso al disco.
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
First Time Apple macos
Apple
References () https://support.apple.com/en-us/HT214036 - () https://support.apple.com/en-us/HT214036 - Release Notes, Vendor Advisory

28 Mar 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-28 16:15

Updated : 2024-11-21 08:23


NVD link : CVE-2023-42913

Mitre link : CVE-2023-42913

CVE.ORG link : CVE-2023-42913


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-noinfo CWE-922

Insecure Storage of Sensitive Information