CVE-2023-32369
published 2023-06-23CVE-2023-32369: A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An app may…
PriorityP423medium6CVSS 3.1
AVLACLPRHUINSCCNIHAN
EPSS
0.68%
48.6th percentile
A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An app may be able to modify protected parts of the file system.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | macos | >= 11.0 < 11.7.7 | 11.7.7 |
| apple | macos | >= 12.0 < 12.6.6 | 12.6.6 |
| apple | macos | >= 13.0 < 13.4 | 13.4 |
| apple | macos | >= unspecified < 13.4 | 13.4 |
| apple | macos | >= unspecified < 12.6 | 12.6 |
| apple | macos | >= unspecified < 11.7 | 11.7 |
| apple | macos_big_sur | — | — |
| apple | macos_monterey | — | — |
| apple | macos_ventura | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2023-32369: macOS Ventura 13.4
vendor_apple·2023-05-18·CVSS 6.0
CVE-2023-32369 [MEDIUM] CVE-2023-32369: macOS Ventura 13.4
Apple Security Update: About the security content of macOS Ventura 13.4
Product: macOS Ventura
Version: 13.4
CVE: CVE-2023-32369
Component: LaunchServices
Impact: An app may bypass Gatekeeper checks
Description: A logic issue was addressed with improved checks.
Apple
CVE-2023-32369: macOS Big Sur 11.7.7
vendor_apple·2023-05-18·CVSS 6.0
CVE-2023-32369 [MEDIUM] CVE-2023-32369: macOS Big Sur 11.7.7
Apple Security Update: About the security content of macOS Big Sur 11.7.7
Product: macOS Big Sur
Version: 11.7.7
CVE: CVE-2023-32369
Component: LaunchServices
Impact: An app may bypass Gatekeeper checks
Description: A logic issue was addressed with improved checks.
Apple
CVE-2023-32369: macOS Monterey 12.6.6
vendor_apple·2023-05-18·CVSS 6.0
CVE-2023-32369 [MEDIUM] CVE-2023-32369: macOS Monterey 12.6.6
Apple Security Update: About the security content of macOS Monterey 12.6.6
Product: macOS Monterey
Version: 12.6.6
CVE: CVE-2023-32369
Component: LaunchServices
Impact: An app may bypass Gatekeeper checks
Description: A logic issue was addressed with improved checks.
GHSA
GHSA-fq6c-f6gp-wghr: A logic issue was addressed with improved state management
ghsa_unreviewed·2023-06-23
CVE-2023-32369 [MEDIUM] GHSA-fq6c-f6gp-wghr: A logic issue was addressed with improved state management
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.4, macOS Big Sur 11.7.7, macOS Monterey 12.6.6. An app may be able to modify protected parts of the file system
No detection rules found.
No public exploits indexed.
Bleepingcomputer
Microsoft: macOS Sploitlight flaw leaks Apple Intelligence data
blogs_bleepingcomputer·2025-07-28·CVSS 7.1
CVE-2020-9771 [HIGH] Microsoft: macOS Sploitlight flaw leaks Apple Intelligence data
## Microsoft: macOS Sploitlight flaw leaks Apple Intelligence data
## Sergiu Gatlan
Since 2020, Apple has patched other TCC bypasses that exploit Time Machine mounts ( CVE-2020-9771 ), environment variable poisoning ( CVE-2020-9934 ), and a bundle conclusion issue ( CVE-2021-30713 ) . In the past, Microsoft security researchers have also discovered several other TCC bypasses, including powerdir ( CVE-2021-30970 ) and HM-Surf , that could also be abused to gain access to users' private data.
"While similar to prior TCC bypasses like HM-Surf and powerdir, the implications of this vulnerability, which we refer to as 'Sploitlight' for its use of Spotlight plugins, are more severe due to its ability to extract and leak sensitive information cached by Apple Intelligence, such as precise geol
Bleepingcomputer
Microsoft: macOS bug lets hackers install malicious kernel drivers
blogs_bleepingcomputer·2025-01-13·CVSS 5.5
CVE-2024-44243 [MEDIUM] Microsoft: macOS bug lets hackers install malicious kernel drivers
## Microsoft: macOS bug lets hackers install malicious kernel drivers
## Sergiu Gatlan
"System Integrity Protection (SIP) serves as a critical safeguard against malware, attackers, and other cybersecurity threats, establishing a fundamental layer of protection for macOS systems," Microsoft said today in a report that provides more technical details on CVE-2024-44243.
"Bypassing SIP impacts the entire operating system's security and could lead to severe consequences, emphasizing the necessity for comprehensive security solutions that can detect anomalous behavior from specially entitled processes."
Microsoft security researchers have discovered multiple macOS vulnerabilities in recent years. A SIP bypass dubbed 'Shrootless ' ( CVE-2021-30892 ), reported in 2021, also allows attackers to
2023-06-23
Published