PT-2023-2891 · Apple · Apple Macos

Hou Xuewei

·

Published

2023-05-18

·

Updated

2023-07-27

·

CVE-2023-32410

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to Big Sur 11.7.7 macOS versions prior to Monterey 12.6.6 macOS versions prior to Ventura 13.4
Description The issue is related to an out-of-bounds read in the IOSurface component of MacOS, which may allow an attacker to disclose protected information. An app may be able to leak sensitive kernel state due to this issue.
Recommendations For macOS versions prior to Big Sur 11.7.7, update to macOS Big Sur 11.7.7 to resolve the issue. For macOS versions prior to Monterey 12.6.6, update to macOS Monterey 12.6.6 to resolve the issue. For macOS versions prior to Ventura 13.4, update to macOS Ventura 13.4 to resolve the issue.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2023-02846
CVE-2023-32410

Affected Products

Apple Macos