CVE-2023-42924

A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.2, macOS Ventura 13.6.3. An app may be able to access sensitive user data.
References
Link Resource
http://seclists.org/fulldisclosure/2023/Dec/10 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2023/Dec/9 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214036 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT214038 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-12-12 01:15

Updated : 2023-12-13 21:17


NVD link : CVE-2023-42924

Mitre link : CVE-2023-42924

CVE.ORG link : CVE-2023-42924


JSON object : View

Products Affected

apple

  • macos
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource