CVE-2023-23499
Description
This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. An app may be able to access user-sensitive data.
CWE
- CWE-200 — CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
Affected
- Apple / iOS and iPadOS — v=unspecified <16.3 [affected]
- Apple / tvOS — v=unspecified <16.3 [affected]
- Apple / macOS — v=unspecified <11.7 [affected]
- Apple / macOS — v=unspecified <13.2 [affected]
- Apple / macOS — v=unspecified <12.6 [affected]
- Apple / watchOS — v=unspecified <9.3 [affected]
CVSS
- (none)
References
- https://support.apple.com/en-us/HT213606
- https://support.apple.com/en-us/HT213601
- https://support.apple.com/en-us/HT213603
- https://support.apple.com/en-us/HT213605
- https://support.apple.com/en-us/HT213604
- https://support.apple.com/en-us/HT213599
Source
cvelistV5-main/cves/2023/23xxx/CVE-2023-23499.json