CVE-2023-42914
CVE-2023-42914
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
12 dic 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.2, iOS 17.2 and iPadOS 17.2, watchOS 10.2, macOS Ventura 13.6.3, tvOS 17.2, iOS 16.7.3 and iPadOS 16.7.3, macOS Monterey 12.7.2. An app may be able to break out of its sandbox.
Referencias
http://seclists.org/fulldisclosure/2023/Dec/10http://seclists.org/fulldisclosure/2023/Dec/11http://seclists.org/fulldisclosure/2023/Dec/12http://seclists.org/fulldisclosure/2023/Dec/13http://seclists.org/fulldisclosure/2023/Dec/7http://seclists.org/fulldisclosure/2023/Dec/8http://seclists.org/fulldisclosure/2023/Dec/9https://support.apple.com/en-us/HT214034https://support.apple.com/en-us/HT214035https://support.apple.com/en-us/HT214036https://support.apple.com/en-us/HT214037https://support.apple.com/en-us/HT214038