CVE Vulnerabilities

CVE-2023-40413

Published: Oct 25, 2023 | Modified: Nov 02, 2023
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 12.7.1, watchOS 10.1, iOS 16.7.2 and iPadOS 16.7.2, macOS Ventura 13.6.1, macOS Sonoma 14.1. An app may be able to read sensitive location information.

Affected Software

Name Vendor Start Version End Version
Ipados Apple * 16.7.2 (excluding)
Ipados Apple 17.0 (including) 17.1 (excluding)
Iphone_os Apple * 16.7.2 (excluding)
Iphone_os Apple 17.0 (including) 17.1 (excluding)
Macos Apple 12.0.0 (including) 12.7.1 (excluding)
Macos Apple 13.0 (including) 13.6.1 (excluding)
Macos Apple 14.0 (including) 14.1 (excluding)
Watchos Apple * 10.1 (excluding)

References