CVE-2023-27936
published 2023-05-08CVE-2023-27936: An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, iOS 15.7.4 and iPadOS 15.7.4, macOS…
PriorityP339high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.26%
17.2th percentile
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. An app may be able to cause unexpected system termination or write kernel memory.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_15.7.4_and_ipados | — | — |
| apple | ios_and_ipados | >= unspecified < 15.7 | 15.7 |
| apple | ipados | < 15.7.4 | 15.7.4 |
| apple | iphone_os | < 15.7.4 | 15.7.4 |
| apple | macos | < 11.7.5 | 11.7.5 |
| apple | macos | >= 12.0 < 12.6.4 | 12.6.4 |
| apple | macos | >= 13.0 < 13.3 | 13.3 |
| apple | macos | >= unspecified < 13.3 | 13.3 |
| apple | macos | >= unspecified < 12.6 | 12.6 |
| apple | macos | >= unspecified < 11.7 | 11.7 |
| apple | macos_big_sur | — | — |
| apple | macos_monterey | — | — |
| apple | macos_ventura | — | — |
| deno | deno | >= 1.32.1 < 1.41.0 | 1.41.0 |
| deno | deno_runtime | >= 0.103.0 < 0.147.0 | 0.147.0 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
ghsa8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2023-27936: macOS Big Sur 11.7.5
vendor_apple·2023-03-27·CVSS 7.8
CVE-2023-27936 [HIGH] CVE-2023-27936: macOS Big Sur 11.7.5
Apple Security Update: About the security content of macOS Big Sur 11.7.5
Product: macOS Big Sur
Version: 11.7.5
CVE: CVE-2023-27936
Component: CommCenter
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: An out-of-bounds write issue was addressed with improved input validation.
Apple
CVE-2023-27936: macOS Monterey 12.6.4
vendor_apple·2023-03-27·CVSS 7.8
CVE-2023-27936 [HIGH] CVE-2023-27936: macOS Monterey 12.6.4
Apple Security Update: About the security content of macOS Monterey 12.6.4
Product: macOS Monterey
Version: 12.6.4
CVE: CVE-2023-27936
Component: CommCenter
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: An out-of-bounds write issue was addressed with improved input validation.
Apple
CVE-2023-27936: macOS Ventura 13.3
vendor_apple·2023-03-27·CVSS 7.8
CVE-2023-27936 [HIGH] CVE-2023-27936: macOS Ventura 13.3
Apple Security Update: About the security content of macOS Ventura 13.3
Product: macOS Ventura
Version: 13.3
CVE: CVE-2023-27936
Component: CommCenter
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: An out-of-bounds write issue was addressed with improved input validation.
Apple
CVE-2023-27936: iOS 15.7.4 and iPadOS 15.7.4
vendor_apple·2023-03-27·CVSS 7.8
CVE-2023-27936 [HIGH] CVE-2023-27936: iOS 15.7.4 and iPadOS 15.7.4
Apple Security Update: About the security content of iOS 15.7.4 and iPadOS 15.7.4
Product: iOS 15.7.4 and iPadOS
Version: 15.7.4
CVE: CVE-2023-27936
Component: CommCenter
Impact: An app may be able to cause unexpected system termination or write kernel memory
Description: An out-of-bounds write issue was addressed with improved input validation.
GHSA
Deno's deno_runtime vulnerable to interactive permission prompt spoofing via improper ANSI stripping
ghsa·2024-03-05·CVSS 8.8
CVE-2024-27936 [HIGH] CWE-150 Deno's deno_runtime vulnerable to interactive permission prompt spoofing via improper ANSI stripping
Deno's deno_runtime vulnerable to interactive permission prompt spoofing via improper ANSI stripping
### Summary
A maliciously crafted permission request can show the spoofed permission prompt by inserting a broken ANSI escape sequence into the request contents.
### Details
In [the patch for CVE-2023-28446](https://github.com/denoland/deno/commit/78d430103a8f6931154ddbbe19d36f3b8630286d), Deno is stripping any ANSI escape sequences from the permission prompt, but permissions given to the program are based on the contents that contain the ANSI escape sequences.
For example, requesting the read permission with `/tmp/hello\u001b[/../../etc/hosts` as a path will display the `/tmp/hellotc/hosts` in the permission prompt, but the actual permission given to the program is `/tmp/hello\u001b[/..
GHSA
GHSA-2jh3-9748-5hjh: An out-of-bounds write issue was addressed with improved input validation
ghsa_unreviewed·2023-05-08
CVE-2023-27936 [HIGH] CWE-787 GHSA-2jh3-9748-5hjh: An out-of-bounds write issue was addressed with improved input validation
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, macOS Monterey 12.6.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Big Sur 11.7.5. An app may be able to cause unexpected system termination or write kernel memory
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://support.apple.com/en-us/HT213670https://support.apple.com/en-us/HT213673https://support.apple.com/en-us/HT213675https://support.apple.com/en-us/HT213677https://support.apple.com/en-us/HT213670https://support.apple.com/en-us/HT213673https://support.apple.com/en-us/HT213675https://support.apple.com/en-us/HT213677
2023-05-08
Published