CVE Vulnerabilities

CVE-2023-42829

Published: Jan 10, 2024 | Modified: Jan 17, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The issue was addressed with additional restrictions on the observability of app states. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to access SSH passphrases.

Affected Software

Name Vendor Start Version End Version
Macos Apple 11.0 (including) 11.7.9 (excluding)
Macos Apple 12.0.0 (including) 12.6.8 (excluding)
Macos Apple 13.0 (including) 13.5 (excluding)

References