First published: Mon Jan 23 2023(Updated: )
An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3, tvOS 16.3, watchOS 9.3. An app may be able to determine kernel memory layout.
Credit: Pan ZhenPeng @Peterpan0927 STAR Labs SG PtePan ZhenPeng @Peterpan0927 STAR Labs SG PtePan ZhenPeng @Peterpan0927 STAR Labs SG PtePan ZhenPeng @Peterpan0927 STAR Labs SG PtePan ZhenPeng @Peterpan0927 STAR Labs SG Pte product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <16.3 | |
Apple iPhone OS | <16.3 | |
Apple macOS | >=12.0.0<12.6.3 | |
Apple macOS | >=13.0<13.2 | |
Apple tvOS | <16.3 | |
Apple watchOS | <9.3 | |
<13.2 | 13.2 | |
<16.3 | 16.3 | |
<12.6.3 | 12.6.3 | |
<16.3 | 16.3 | |
<16.3 | 16.3 | |
Apple watchOS | <9.3 | 9.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-23502 is an information disclosure issue in the Kernel that was fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3, tvOS 16.3, watchOS 9.3.
CVE-2023-23502 has a severity rating of 5.5 (medium).
To fix CVE-2023-23502, you need to update your macOS to version 12.6.3 or later, iOS to version 16.3 or later, or iPadOS to version 16.3 or later.
CVE-2023-23502 affects macOS Monterey, macOS Ventura, iOS, iPadOS, tvOS, and watchOS.
You can find more information about CVE-2023-23502 on Apple's official support page: https://support.apple.com/en-us/HT213599