PT-2023-8684 · Apple · Apple Macos

Craig Hockenberry

·

Published

2023-12-19

·

Updated

2024-01-04

·

CVE-2023-42940

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS Sonoma versions prior to 14.2.1
Description A session rendering issue was addressed with improved session tracking. This issue may cause a user who shares their screen to unintentionally share the incorrect content. The problem is related to the WindowServer component of the macOS operating system and is associated with a lack of protection for service data, which could allow a remote attacker to gain unauthorized access to the user's screen.
Recommendations For macOS Sonoma versions prior to 14.2.1, update to macOS Sonoma 14.2.1 to fix the session rendering issue. As a temporary workaround, consider avoiding screen sharing until the issue is resolved. Restrict access to sensitive content when using screen sharing features to minimize the risk of exploitation.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2024-01543
CVE-2023-42940

Affected Products

Apple Macos