First published: Mon Jul 24 2023(Updated: )
Logging. The issue was addressed with improved validation of environment variables.
Credit: Wojciech Regula SecuRing product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS | <16.6 | 16.6 |
Apple iPadOS | <16.6 | 16.6 |
Apple iPadOS | <16.6 | |
Apple iPhone OS | <16.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-40394 is a vulnerability related to logging in Apple iOS and iPadOS where improved validation of environment variables has been implemented to address the issue.
The severity of CVE-2023-40394 has not been specified.
CVE-2023-40394 affects Apple iOS and iPadOS versions up to, but not including, version 16.6.
To fix CVE-2023-40394, it is recommended to update to Apple iOS or iPadOS version 16.6 or later, as the issue has been addressed in this version.
More information about CVE-2023-40394 can be found in the official Apple security advisory at the following link: https://support.apple.com/en-us/HT213841