cbcvebase.
CVE-2023-40400
published 2023-09-27

CVE-2023-40400: This issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. A remote user may cause an…

PriorityP353critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.52%
71.7th percentile
This issue was addressed with improved checks. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. A remote user may cause an unexpected app termination or arbitrary code execution.

Affected

17 ranges
VendorProductVersion rangeFixed in
appleios_16.6_and_ipados
appleios_17_and_ipados
appleipados< 16.616.6
appleiphone_os< 16.616.6
applemacos< 14.014.0
applemacos_sonoma
appletvos< 17.017.0
appletvos
applewatchos< 10.010.0
applewatchos
debianlibpcap< libpcap 1.10.5-1 (forky)libpcap 1.10.5-1 (forky)
tcpdumplibpcap< 1.10.51.10.5
tcpdumplibpcap>= 0 < 1.10.5-11.10.5-1
tcpdumplibpcap>= 0 < 1.10.5-11.10.5-1
the_tcpdump_grouplibpcap
the_tcpdump_grouplibpcap
the_tcpdump_grouplibpcap1.10.x – 1.10.4

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vendor_debian9.8LOW
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.