PT-2023-27373 · Apple · Apple Macos

Jack Tabash

·

Published

2023-09-28

·

Updated

2023-10-02

·

CVE-2023-40307

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions macOS (affected versions not specified)
Description An attacker with standard privileges on macOS can submit input when requesting administrator privileges from the application, causing a buffer overflow. This results in a crash of the application, making it unavailable and potentially allowing reading or modification of data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2023-40307
GHSA-RGQ4-WXPJ-5JV9

Affected Products

Apple Macos