CVE-2023-28197

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13.3, macOS Big Sur 11.7.5, macOS Monterey 12.6.4. An app may be able to access user-sensitive data.
References
Link Resource
https://support.apple.com/en-us/HT213670 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213675 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213677 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213670 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213675 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213677 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

17 Jun 2025, 18:15

Type Values Removed Values Added
CWE CWE-284

21 Nov 2024, 07:54

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213670 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213670 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213675 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213675 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213677 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213677 - Release Notes, Vendor Advisory

18 Jan 2024, 14:49

Type Values Removed Values Added
CWE NVD-CWE-Other
References () https://support.apple.com/en-us/HT213670 - () https://support.apple.com/en-us/HT213670 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213675 - () https://support.apple.com/en-us/HT213675 - Release Notes, Vendor Advisory
References () https://support.apple.com/en-us/HT213677 - () https://support.apple.com/en-us/HT213677 - Release Notes, Vendor Advisory
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.3
First Time Apple
Apple macos

11 Jan 2024, 13:57

Type Values Removed Values Added
Summary
  • (es) Se solucionó un problema de acceso con restricciones adicionales de sandbox. Este problema se solucionó en macOS Ventura 13.3, macOS Big Sur 11.7.5, macOS Monterey 12.6.4. Es posible que una aplicación pueda acceder a datos confidenciales del usuario.

10 Jan 2024, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-10 22:15

Updated : 2025-06-17 18:15


NVD link : CVE-2023-28197

Mitre link : CVE-2023-28197

CVE.ORG link : CVE-2023-28197


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-Other CWE-284

Improper Access Control