First published: Wed Oct 25 2023(Updated: )
A logic issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1. A user's private browsing activity may be unexpectedly saved in the App Privacy Report.
Credit: Abhay Kailasia @abhay_kailasia Lakshmi Narain College Of Technology Bhopal India product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iPadOS | <17.1 | |
Apple iPhone OS | <17.1 | |
Apple iOS | <17.1 | 17.1 |
iPadOS | <17.1 | 17.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-42939 is considered a medium severity vulnerability due to its potential impact on user privacy.
To fix CVE-2023-42939, update your device to iOS 17.1 or iPadOS 17.1.
CVE-2023-42939 is a logic issue that could lead to unexpected saving of private browsing activity.
CVE-2023-42939 affects Apple devices running iOS and iPadOS up to version 17.1.
The fix for CVE-2023-42939 includes improved checks to prevent unintended saving of private browsing information.