PT-2023-8684 · Apple · Apple Macos
Craig Hockenberry
·
Published
2023-12-19
·
Updated
2024-01-04
·
CVE-2023-42940
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
macOS Sonoma versions prior to 14.2.1
Description
A session rendering issue was addressed with improved session tracking. This issue may cause a user who shares their screen to unintentionally share the incorrect content. The problem is related to the WindowServer component of the macOS operating system and is associated with a lack of protection for service data, which could allow a remote attacker to gain unauthorized access to the user's screen.
Recommendations
For macOS Sonoma versions prior to 14.2.1, update to macOS Sonoma 14.2.1 to fix the session rendering issue.
As a temporary workaround, consider avoiding screen sharing until the issue is resolved.
Restrict access to sensitive content when using screen sharing features to minimize the risk of exploitation.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apple Macos