First published: Mon Mar 27 2023(Updated: )
A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 16.4 and iPadOS 16.4. A user in a privileged network position may be able to cause a denial-of-service
Credit: Itay Iellin General Motors Product Cyber Security product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
<16.4 | 16.4 | |
<16.4 | 16.4 | |
Apple iPadOS | <16.4 | |
Apple iPhone OS | <16.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2023-23494.
The title of this vulnerability is 'CarPlay. A buffer overflow was addressed with improved bounds checking.'
The severity rating of CVE-2023-23494 is medium with a score of 5.3.
This vulnerability affects iOS versions up to but not including 16.4, iPadOS versions up to but not including 16.4, Apple watchOS, and Apple iPhone OS.
This vulnerability is fixed in iOS 16.4 and iPadOS 16.4. Ensure that you update your device to the latest available version.