CVE Vulnerabilities

CVE-2023-38571

Published: Jul 28, 2023 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to bypass Privacy preferences.

Affected Software

NameVendorStart VersionEnd Version
MacosApple*11.7.9 (excluding)
MacosApple12.0 (including)12.6.8 (excluding)
MacosApple13.0 (including)13.5 (excluding)

References