CVE-2023-42923

This issue was addressed through improved state management. This issue is fixed in iOS 17.2 and iPadOS 17.2. Private Browsing tabs may be accessed without authentication.
References
Link Resource
http://seclists.org/fulldisclosure/2023/Dec/7 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214035 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

13 Dec 2023, 21:19

Type Values Removed Values Added
CPE cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References () http://seclists.org/fulldisclosure/2023/Dec/7 - () http://seclists.org/fulldisclosure/2023/Dec/7 - Mailing List, Third Party Advisory
References () https://support.apple.com/en-us/HT214035 - () https://support.apple.com/en-us/HT214035 - Release Notes, Vendor Advisory
First Time Apple
Apple ipados
Apple iphone Os
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

13 Dec 2023, 01:15

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2023/Dec/7 -

12 Dec 2023, 13:43

Type Values Removed Values Added
Summary
  • (es) Esta cuestión se abordó mediante una mejor gestión estatal. Este problema se solucionó en iOS 17.2 y iPadOS 17.2. Se puede acceder a las pestañas de navegación privada sin autenticación.

12 Dec 2023, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-12 01:15

Updated : 2023-12-13 21:19


NVD link : CVE-2023-42923

Mitre link : CVE-2023-42923

CVE.ORG link : CVE-2023-42923


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados