CVE-2023-42952

The issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.3, macOS Sonoma 14.1, macOS Monterey 12.7.1. An app with root privileges may be able to access private information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:*

History

27 Mar 2025, 21:15

Type Values Removed Values Added
CWE CWE-269

05 Dec 2024, 19:56

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213982 - () https://support.apple.com/en-us/HT213982 - Vendor Advisory
References () https://support.apple.com/en-us/HT213983 - () https://support.apple.com/en-us/HT213983 - Vendor Advisory
References () https://support.apple.com/en-us/HT213984 - () https://support.apple.com/en-us/HT213984 - Vendor Advisory
References () https://support.apple.com/en-us/HT214038 - () https://support.apple.com/en-us/HT214038 - Vendor Advisory
CPE cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Apple iphone Os
Apple
Apple ipad Os
Apple macos
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.4

21 Nov 2024, 08:23

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213982 - () https://support.apple.com/en-us/HT213982 -
References () https://support.apple.com/en-us/HT213983 - () https://support.apple.com/en-us/HT213983 -
References () https://support.apple.com/en-us/HT213984 - () https://support.apple.com/en-us/HT213984 -
References () https://support.apple.com/en-us/HT214038 - () https://support.apple.com/en-us/HT214038 -

21 Feb 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-21 07:15

Updated : 2025-03-27 21:15


NVD link : CVE-2023-42952

Mitre link : CVE-2023-42952

CVE.ORG link : CVE-2023-42952


JSON object : View

Products Affected

apple

  • ipad_os
  • iphone_os
  • macos
CWE
NVD-CWE-noinfo CWE-269

Improper Privilege Management