First published: Wed Oct 25 2023(Updated: )
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. A website may be able to access the microphone without the microphone use indicator being shown.
Credit: an anonymous researcher an anonymous researcher an anonymous researcher product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Ventura | <13.6.1 | 13.6.1 |
Apple macOS Monterey | <12.7.1 | 12.7.1 |
Apple macOS Sonoma | <14.1 | 14.1 |
Apple macOS | >=12.0.0<12.7.1 | |
Apple macOS | >=13.0<13.6.1 | |
Apple macOS | >=14.0<14.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2023-41975.
The severity of CVE-2023-41975 is not specified.
A website can access the microphone without the microphone use indicator being shown due to this vulnerability in WindowServer.
This vulnerability was addressed by removing the vulnerable code.
This vulnerability is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, and macOS Ventura 13.6.1.