CVE-2023-41975
CVE-2023-41975
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
25 Oct 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. A website may be able to access the microphone without the microphone use indicator being shown.
Affected products
Apple · macOSWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://seclists.org/fulldisclosure/2023/Oct/21http://seclists.org/fulldisclosure/2023/Oct/24http://seclists.org/fulldisclosure/2023/Oct/26https://support.apple.com/en-us/HT213983https://support.apple.com/en-us/HT213984https://support.apple.com/en-us/HT213985https://support.apple.com/kb/HT213983https://support.apple.com/kb/HT213984https://support.apple.com/kb/HT213985