CVE-2024-23223
- EPSS 0.02%
- Veröffentlicht 23.01.2024 01:15:11
- Zuletzt bearbeitet 04.06.2025 16:15:30
A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An app may be able to access sensitive user data.
CVE-2024-23206
- EPSS 0.48%
- Veröffentlicht 23.01.2024 01:15:10
- Zuletzt bearbeitet 15.05.2025 15:16:07
An access issue was addressed with improved access restrictions. This issue is fixed in watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, iOS 16.7.5 and iPadOS 16.7.5, Safari 17.3. A maliciously crafted webpage may be able to fing...
CVE-2024-23208
- EPSS 2.95%
- Veröffentlicht 23.01.2024 01:15:10
- Zuletzt bearbeitet 04.06.2025 16:15:29
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An app may be able to execute arbitrary code with kernel privileges.
CVE-2023-40528
- EPSS 0.01%
- Veröffentlicht 23.01.2024 01:15:09
- Zuletzt bearbeitet 17.06.2025 17:15:31
This issue was addressed by removing the vulnerable code. This issue is fixed in tvOS 17, watchOS 10, macOS Sonoma 14, iOS 17 and iPadOS 17, macOS Ventura 13.6.4. An app may be able to bypass Privacy preferences.
CVE-2023-42862
- EPSS 0.25%
- Veröffentlicht 10.01.2024 22:15:50
- Zuletzt bearbeitet 20.06.2025 16:15:23
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, tvOS 16.4, iOS 16.4 and iPadOS 16.4, watchOS 9.4. Processing an image may result in disclosure of process memory.
CVE-2023-42865
- EPSS 0.25%
- Veröffentlicht 10.01.2024 22:15:50
- Zuletzt bearbeitet 16.06.2025 19:15:23
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, tvOS 16.4, iOS 16.4 and iPadOS 16.4, watchOS 9.4. Processing an image may result in disclosure of process memory.
CVE-2023-42866
- EPSS 0.37%
- Veröffentlicht 10.01.2024 22:15:50
- Zuletzt bearbeitet 03.06.2025 15:15:40
The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.5, iOS 16.6 and iPadOS 16.6, tvOS 16.6, Safari 16.6, watchOS 9.6. Processing web content may lead to arbitrary code execution.
CVE-2023-40414
- EPSS 0.25%
- Veröffentlicht 10.01.2024 22:15:48
- Zuletzt bearbeitet 20.06.2025 16:15:22
A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 10, iOS 17 and iPadOS 17, tvOS 17, macOS Sonoma 14, Safari 17. Processing web content may lead to arbitrary code execution.
CVE-2023-28185
- EPSS 0.04%
- Veröffentlicht 10.01.2024 22:15:47
- Zuletzt bearbeitet 03.06.2025 15:15:25
An integer overflow was addressed through improved input validation. This issue is fixed in tvOS 16.4, macOS Big Sur 11.7.5, iOS 16.4 and iPadOS 16.4, watchOS 9.4, macOS Monterey 12.6.4, iOS 15.7.4 and iPadOS 15.7.4. An app may be able to cause a den...
- EPSS 0.21%
- Veröffentlicht 09.01.2024 18:15:45
- Zuletzt bearbeitet 14.02.2025 16:20:50
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.1, watchOS 9.2, iOS 16.2 and iPadOS 16.2, tvOS 16.2. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication. Apple is awa...