CVE-2023-40434Apple IOS AND Ipados vulnerability

4 documents3 sources
Severity
3.3LOWNVD
EPSS
0.1%
top 84.21%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 27

Description

A configuration issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access a user's Photos Library.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:NExploitability: 1.8 | Impact: 1.4

Affected Packages7 packages

CVEListV5apple/macosunspecified14
NVDapple/macos< 14.0
NVDapple/ipados< 17.0
CVEListV5apple/ios_and_ipadosunspecified17

🔴Vulnerability Details

1
GHSA
GHSA-pfmr-7m9x-5jwr: A configuration issue was addressed with additional restrictions2023-09-27

📋Vendor Advisories

2
Apple
CVE-2023-40434: macOS Sonoma 142023-09-26
Apple
CVE-2023-40434: iOS 17 and iPadOS 172023-09-18