CVE-2023-40423

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 25, 2023
Updated: Nov 2, 2023
CWE ID 119

Summary

CVE-2023-40423 is a vulnerability affecting various Apple operating systems, including iOS 17.1, iPadOS 17.1, macOS Monterey 12.7.1, iOS 16.7.2, iPadOS 16.7.2, macOS Ventura 13.6.1, and macOS Sonoma 14.1. The issue stems from improper memory handling, allowing a malicious app to execute arbitrary code with kernel privileges. This could potentially lead to significant security risks, making it crucial for users to apply the respective software updates as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Apple (iPhone OS)
  • iPadOS
  • MacOS

Affected Vendors

  • Apple