MEDIUM
The issue was addressed with improved permissions logic
Published Oct 25, 2023
5.5
MEDIUMCVSS 3.1
EPSS 0.30%
Description
The issue was addressed with improved permissions logic. This issue is fixed in macOS Sonoma 14.1. An app may be able to access sensitive user data.
Affected products
-
Affected
- ≥ unspecified, < 14.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (4)
- http://seclists.org/fulldisclosure/2023/Oct/24 Mailing ListThird Party Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-47271 Advisory
- https://support.apple.com/en-us/HT213984 Release NotesVendor Advisory
- https://support.apple.com/kb/HT213984 Release NotesVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://seclists.org/fulldisclosure/2023/Oct/24 | Mailing ListThird Party Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-47271 | Advisory | |
| https://support.apple.com/en-us/HT213984 | Release NotesVendor Advisory | |
| https://support.apple.com/kb/HT213984 | Release NotesVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apple
Published Oct 25, 2023
Updated Feb 13, 2025
Reserved Sep 14, 2023
Link CVE-2023-42850
CISA Vulnrichment
Updated Sep 10, 2024
Red Hat
No data
GitHub
No data