CVE-2023-23541

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 15.7.4 and iPadOS 15.7.4, iOS 16.4 and iPadOS 16.4. An app may be able to access information about a user’s contacts.
References
Link Resource
https://support.apple.com/en-us/HT213673 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213676 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213673 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213676 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

29 Jan 2025, 16:15

Type Values Removed Values Added
CWE CWE-922

21 Nov 2024, 07:46

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213673 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213673 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213676 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213676 - Release Notes, Vendor Advisory

Information

Published : 2023-05-08 20:15

Updated : 2025-01-29 16:15


NVD link : CVE-2023-23541

Mitre link : CVE-2023-23541

CVE.ORG link : CVE-2023-23541


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados
CWE
NVD-CWE-noinfo CWE-922

Insecure Storage of Sensitive Information