|
321
|
7.5
-
|
HIGH
Network
|
Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Ventura 13.4, iOS 16.5 and iPadOS 16.5. Multiple issues in libxml2.
|
CWE-787
Out-of-bounds Write
|
CVE-2023-42869
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.5
|
2024-11-21 17:23
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
322
|
8.8
-
|
HIGH
Network
|
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.5, iOS 16.6 and iPadOS 16.6, tvOS 16.6, Safari 16.6, watchOS 9.6. Processing web content may lead to arb…
|
NVD-CWE-noinfo
|
CVE-2023-42866
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.6
|
2024-11-21 17:23
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
323
|
6.5
-
|
MEDIUM
Network
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, tvOS 16.4, iOS 16.4 and iPadOS 16.4, watchOS 9.4. Processing an image may result in disc…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-42865
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.4
|
2024-11-21 17:23
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
324
|
6.5
-
|
MEDIUM
Network
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, tvOS 16.4, iOS 16.4 and iPadOS 16.4, watchOS 9.4. Processing an image may result in disc…
|
CWE-125
Out-of-bounds Read
|
CVE-2023-42862
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.4
|
2024-11-21 17:23
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
325
|
8.8
-
|
HIGH
Network
|
A correctness issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14, Safari 17, iOS 17 and iPadOS 17. Processing web content may lead to arbitrary code execution.
|
NVD-CWE-noinfo
|
CVE-2023-42833
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
17.0
|
2024-11-21 17:23
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
326
|
5.5
-
|
MEDIUM
Local
|
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Big Sur 11.7.9, iOS 15.7.8 and iPadOS 15.7.8, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to f…
|
NVD-CWE-noinfo
|
CVE-2023-42831
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
15.7.8
|
2024-11-21 17:23
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
327
|
3.3
-
|
LOW
Local
|
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4. An app may be able to read sensitive location …
|
NVD-CWE-noinfo
|
CVE-2023-42830
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
16.4
|
2024-11-21 17:23
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
328
|
7.8
-
|
HIGH
Local
|
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.
|
CWE-416
Use After Free
|
CVE-2023-41974
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
17.0
|
2024-11-21 17:22
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
329
|
7.8
-
|
HIGH
Local
|
A type confusion issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.7.5, macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6…
|
CWE-843
Type Confusion
|
CVE-2023-41075
|
cpe:2.3:o:apple:iphone_os:*:*
|
16.0 15.0
|
|
|
16.4 15.7.4
|
2024-11-21 17:20
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
330
|
5.5
-
|
MEDIUM
Local
|
This issue was addressed by improving Face ID anti-spoofing models. This issue is fixed in iOS 17 and iPadOS 17. A 3D model constructed to look like the enrolled user may authenticate via Face ID.
|
NVD-CWE-noinfo
|
CVE-2023-41069
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
17.0
|
2024-11-21 17:20
2024-01-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|