First published: Mon Mar 27 2023(Updated: )
A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Ventura 13.3, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. An app may be able to disclose kernel memory.
Credit: Arsenii Kostromin (0x3c3e) Arsenii Kostromin (0x3c3e) Arsenii Kostromin (0x3c3e) Arsenii Kostromin (0x3c3e) Arsenii Kostromin (0x3c3e) product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <15.7.4 | 15.7.4 |
Apple iPadOS | <15.7.4 | 15.7.4 |
Apple macOS Ventura | <13.5 | 13.5 |
Apple iPadOS | <15.7.4 | |
Apple iPhone OS | <15.7.4 | |
Apple macOS | >=11.0<11.7.5 | |
Apple macOS | >=12.0<12.6.4 | |
Apple macOS | >=13.0<13.3 | |
Apple macOS | =13.4 | |
Apple Ipad Os | <15.7.4 | |
<12.6.4 | 12.6.4 | |
<11.7.5 | 11.7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2023-28200.
The severity level of CVE-2023-28200 is medium.
The affected software versions are macOS Ventura 13.3, iOS 15.7.4, iPadOS 15.7.4, macOS Monterey 12.6.4, and macOS Big Sur 11.7.5.
An app can disclose kernel memory through CVE-2023-28200 due to a validation issue that was addressed with improved input sanitization.
To fix CVE-2023-28200, update to the latest versions of the affected software: macOS Ventura 13.3, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, or macOS Big Sur 11.7.5.