First published: Mon Sep 18 2023(Updated: )
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6, iOS 16.7 and iPadOS 16.7, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access sensitive data logged when a user shares a link.
Credit: Kirin @Pwnrin Kirin @Pwnrin Kirin @Pwnrin Kirin @Pwnrin Kirin @Pwnrin product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPadOS | <16.7 | |
Apple iPhone OS | <16.7 | |
Apple macOS | >=13.0<13.6 | |
Apple watchOS | <10.0 | |
Apple macOS Ventura | <13.6 | 13.6 |
Apple iOS | <16.7 | 16.7 |
Apple iPadOS | <16.7 | 16.7 |
Apple macOS Sonoma | <14 | 14 |
<17 | 17 | |
<17 | 17 | |
Apple watchOS | <10 | 10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2023-41070.
The title of this vulnerability is 'Share Sheet. A logic issue was addressed with improved checks.'
The affected software products are Apple iOS (up to version 17), Apple iPadOS (up to version 17), Apple watchOS (up to version 10), and Apple macOS Sonoma (up to version 14).
To fix this vulnerability, update your Apple software to the latest available version.
Yes, you can find references for this vulnerability at the following links: [link1](https://support.apple.com/en-us/HT213937), [link2](https://support.apple.com/en-us/HT213940), [link3](https://support.apple.com/en-us/HT213938).