CVE Vulnerabilities

CVE-2023-38571

Published: Jul 28, 2023 | Modified: Aug 03, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to bypass Privacy preferences.

Affected Software

Name Vendor Start Version End Version
Macos Apple * 11.7.9 (excluding)
Macos Apple 12.0 (including) 12.6.8 (excluding)
Macos Apple 13.0 (including) 13.5 (excluding)

References