PT-2023-7907 · Apple · Apple Macos

Guluisacat

+1

·

Publicado

2023-12-11

·

Atualizado

2023-12-13

·

CVE-2023-42932

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 14.2 macOS Ventura versions prior to 13.6.3 macOS Monterey versions prior to 12.7.2
Description A logic issue was addressed with improved checks, which may allow an app to access protected user data. The issue is related to insufficient protection of service data in the macOS operating system, potentially allowing an attacker to access protected information.
Recommendations For macOS versions prior to 14.2, update to macOS Sonoma 14.2 to resolve the issue. For macOS Ventura versions prior to 13.6.3, update to macOS Ventura 13.6.3 to resolve the issue. For macOS Monterey versions prior to 12.7.2, update to macOS Monterey 12.7.2 to resolve the issue.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-08978
CVE-2023-42932

Produtos afetados

Apple Macos