First published: Mon Jan 23 2023(Updated: )
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, iOS 15.7.3 and iPadOS 15.7.3, iOS 16.3 and iPadOS 16.3. An app may be able to access information about a user’s contacts.
Credit: Wojciech Regula SecuRingCsaba Fitzl @theevilbit Offensive SecurityWojciech Reguła SecuRing Offensive SecurityCsaba Fitzl @theevilbit Offensive SecurityWojciech Reguła SecuRingCsaba Fitzl @theevilbit Offensive SecurityWojciech Regula SecuRingCsaba Fitzl @theevilbit Offensive SecurityWojciech Reguła SecuRingCsaba Fitzl @theevilbit Offensive SecurityWojciech Reguła SecuRingCsaba Fitzl @theevilbit Offensive Security product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <15.7.3 | |
Apple iPadOS | >=16.0<16.3 | |
Apple iPhone OS | <15.7.3 | |
Apple iPhone OS | >=16.0<16.3 | |
Apple macOS | >=11.0<11.7.3 | |
Apple macOS | >=12.0.0<12.6.3 | |
Apple macOS | >=13.0<13.2 | |
Apple watchOS | <9.3 | |
Apple macOS Big Sur | <11.7.3 | 11.7.3 |
<13.2 | 13.2 | |
<12.6.3 | 12.6.3 | |
<16.3 | 16.3 | |
<16.3 | 16.3 | |
<15.7.3 | 15.7.3 | |
<15.7.3 | 15.7.3 | |
Apple watchOS | <9.3 | 9.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2023-23505 is a vulnerability that relates to a privacy issue with improved private data redaction for log entries.
The severity of CVE-2023-23505 is low with a severity value of 3.3.
CVE-2023-23505 affects macOS devices running versions up to and including 11.7.3, macOS Monterey up to and including 12.6.3, and iOS devices up to and including 15.7.3.
To fix CVE-2023-23505, update your macOS device to version 11.7.3 or later, update macOS Monterey to version 12.6.3 or later, and update iOS devices to version 15.7.3 or later.
You can find more information about CVE-2023-23505 on the following Apple support pages: [link1](https://support.apple.com/en-us/HT213598), [link2](https://support.apple.com/en-us/HT213599), [link3](https://support.apple.com/en-us/HT213603).