4.6

CVE-2023-41997

This issue was addressed by restricting options offered on a locked device. This issue is fixed in macOS Sonoma 14.1, watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1. An attacker with physical access may be able to use Siri to access sensitive user data.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AppleiPadOS Version < 16.7.2
AppleiPadOS Version >= 17.0 < 17.1
AppleiPhone OS Version < 16.7.2
AppleiPhone OS Version >= 17.0 < 17.1
ApplemacOS Version >= 14.0 < 14.1
ApplewatchOS Version < 10.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.09% 0.263
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.6 0.9 3.6
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
http://seclists.org/fulldisclosure/2023/Oct/24
Third Party Advisory
Mailing List
https://support.apple.com/kb/HT213984
Vendor Advisory
Release Notes
http://seclists.org/fulldisclosure/2023/Oct/23
Third Party Advisory
Mailing List
https://support.apple.com/en-us/HT213981
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT213984
Vendor Advisory
Release Notes
http://seclists.org/fulldisclosure/2023/Oct/19
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Oct/25
Third Party Advisory
Mailing List
https://support.apple.com/en-us/HT213982
Vendor Advisory
Release Notes
https://support.apple.com/en-us/HT213988
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT213981
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT213982
Vendor Advisory
Release Notes
https://support.apple.com/kb/HT213988
Vendor Advisory
Release Notes