CVE-2023-42940

A session rendering issue was addressed with improved session tracking. This issue is fixed in macOS Sonoma 14.2.1. A user who shares their screen may unintentionally share the incorrect content.
References
Link Resource
http://seclists.org/fulldisclosure/2023/Dec/20 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214048 Release Notes Vendor Advisory
http://seclists.org/fulldisclosure/2023/Dec/20 Mailing List Third Party Advisory
https://support.apple.com/en-us/HT214048 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

06 May 2025, 19:15

Type Values Removed Values Added
CWE CWE-200

21 Nov 2024, 08:23

Type Values Removed Values Added
References () http://seclists.org/fulldisclosure/2023/Dec/20 - Mailing List, Third Party Advisory () http://seclists.org/fulldisclosure/2023/Dec/20 - Mailing List, Third Party Advisory
References () https://support.apple.com/en-us/HT214048 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT214048 - Release Notes, Vendor Advisory

04 Jan 2024, 14:56

Type Values Removed Values Added
First Time Apple macos
Apple
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References () http://seclists.org/fulldisclosure/2023/Dec/20 - () http://seclists.org/fulldisclosure/2023/Dec/20 - Mailing List, Third Party Advisory
References () https://support.apple.com/en-us/HT214048 - () https://support.apple.com/en-us/HT214048 - Release Notes, Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.7

20 Dec 2023, 13:50

Type Values Removed Values Added
Summary
  • (es) Se solucionó un problema de representación de sesiones con un seguimiento de sesiones mejorado. Este problema se solucionó en macOS Sonoma 14.2.1. Un usuario que comparte su pantalla puede compartir sin querer el contenido incorrecto.

19 Dec 2023, 23:15

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2023/Dec/20 -

19 Dec 2023, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-19 22:15

Updated : 2025-05-06 19:15


NVD link : CVE-2023-42940

Mitre link : CVE-2023-42940

CVE.ORG link : CVE-2023-42940


JSON object : View

Products Affected

apple

  • macos
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor