CVE-2023-32425
- EPSS 0.09%
- Published 06.09.2023 02:15:09
- Last modified 12.12.2024 14:26:18
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to gain elevated privileges.
CVE-2023-32428
- EPSS 0.91%
- Published 06.09.2023 02:15:09
- Last modified 12.12.2024 14:26:18
This issue was addressed with improved file handling. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to gain root privileges.
CVE-2023-32432
- EPSS 0.04%
- Published 06.09.2023 02:15:09
- Last modified 12.12.2024 14:26:18
A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to access user-sensitive data.
CVE-2023-32438
- EPSS 0.05%
- Published 06.09.2023 02:15:09
- Last modified 12.12.2024 14:26:18
This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in tvOS 16.3, macOS Ventura 13.2, watchOS 9.3, iOS 16.3 and iPadOS 16.3. An app may be able to bypass Privacy preferences.
CVE-2023-34352
- EPSS 0.21%
- Published 06.09.2023 02:15:09
- Last modified 12.12.2024 14:26:18
A permissions issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An attacker may be able to leak user account emails.
CVE-2023-28208
- EPSS 0.18%
- Published 06.09.2023 02:15:08
- Last modified 12.12.2024 14:26:18
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3. A user may send a text from a secondary eSIM despite configuring a contact to use a primary eSIM.
CVE-2022-46724
- EPSS 0.07%
- Published 14.08.2023 23:15:10
- Last modified 21.11.2024 07:30:58
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 16.4 and iPadOS 16.4. A person with physical access to an iOS device may be able to view the last image used in Magnifier from the lock screen.
CVE-2022-46725
- EPSS 0.07%
- Published 14.08.2023 23:15:10
- Last modified 21.11.2024 07:30:59
A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.4 and iPadOS 16.4. Visiting a malicious website may lead to address bar spoofing.
CVE-2022-48503
- EPSS 0.27%
- Published 14.08.2023 23:15:10
- Last modified 21.11.2024 07:33:27
The issue was addressed with improved bounds checks. This issue is fixed in tvOS 15.6, watchOS 8.7, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5, Safari 15.6. Processing web content may lead to arbitrary code execution.
CVE-2023-28198
- EPSS 0.06%
- Published 14.08.2023 23:15:10
- Last modified 21.11.2024 07:54:34
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.4 and iPadOS 16.4, macOS Ventura 13.3. Processing web content may lead to arbitrary code execution.