This issue was addressed by forcing hardened runtime on the affected binaries at the system level. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. An app may be able to inject code into sensitive binaries bundled with Xcode.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT213758 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213759 | Release Notes Vendor Advisory |
https://support.apple.com/en-us/HT213760 | Release Notes Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
18 Jan 2024, 14:46
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
References | () https://support.apple.com/en-us/HT213758 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213759 - Release Notes, Vendor Advisory | |
References | () https://support.apple.com/en-us/HT213760 - Release Notes, Vendor Advisory | |
CWE | NVD-CWE-noinfo | |
First Time |
Apple
Apple macos |
|
CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* |
11 Jan 2024, 13:57
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
10 Jan 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-10 22:15
Updated : 2024-01-18 14:46
NVD link : CVE-2023-32383
Mitre link : CVE-2023-32383
CVE.ORG link : CVE-2023-32383
JSON object : View
Products Affected
apple
- macos
CWE