First published: Mon Jan 23 2023(Updated: )
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.2, macOS Monterey 12.6.3. An encrypted volume may be unmounted and remounted by a different user without prompting for the password.
Credit: Oliver Norpoth @norpoth KLIXX GmbHOliver Norpoth @norpoth KLIXX GmbH product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Monterey | <12.6.3 | 12.6.3 |
<13.2 | 13.2 | |
Apple macOS | >=12.0.0<12.6.3 | |
Apple macOS | >=13.0<13.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2023-23493.
The title of the vulnerability is 'DiskArbitration - Logic Issue with Improved State Management'.
The affected software includes macOS Monterey version up to 12.6.3 and macOS Ventura version up to 13.2.
To fix the vulnerability, update to macOS Monterey version 12.6.3 or later, or update to macOS Ventura version 13.2 or later.
You can find more information about the vulnerability on the following Apple support pages: [DiskArbitration - Improper Validation of Array Index](https://support.apple.com/en-us/HT213604) and [About the security content of macOS Ventura 13.2](https://support.apple.com/en-us/HT213605).