First published: Mon Sep 18 2023(Updated: )
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS Monterey 12.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to disclose kernel memory.
Credit: Tim Michaud @TimGMichaud MoveworksTim Michaud @TimGMichaud MoveworksTim Michaud @TimGMichaud MoveworksTim Michaud @TimGMichaud MoveworksTim Michaud @TimGMichaud MoveworksTim Michaud @TimGMichaud Moveworks product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <17.0 | |
Apple iPhone OS | <17.0 | |
Apple macOS | >=12.0.0<12.7 | |
Apple macOS | >=13.0<13.6 | |
Apple tvOS | <17.0 | |
Apple watchOS | <10.0 | |
Apple macOS Ventura | <13.6 | 13.6 |
Apple macOS Monterey | <12.7 | 12.7 |
Apple macOS Sonoma | <14 | 14 |
<17 | 17 | |
<17 | 17 | |
<17 | 17 | |
Apple watchOS | <10 | 10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2023-40410.
The severity of CVE-2023-40410 is not specified in the information provided.
CVE-2023-40410 affects Apple tvOS (up to version 17), Apple iOS (up to version 17), Apple iPadOS (up to version 17), Apple watchOS (up to version 10), and Apple macOS Sonoma (up to version 14).
CVE-2023-40410 was addressed with improved input validation.
You can find more information about CVE-2023-40410 on the following references: [Support Apple - HT213937](https://support.apple.com/en-us/HT213937), [Support Apple - HT213940](https://support.apple.com/en-us/HT213940), [Support Apple - HT213936](https://support.apple.com/en-us/HT213936).