CVE-2023-42952

The issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.3, macOS Sonoma 14.1, macOS Monterey 12.7.1. An app with root privileges may be able to access private information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:*

History

27 Mar 2025, 21:15

Type Values Removed Values Added
CWE CWE-269

05 Dec 2024, 19:56

Type Values Removed Values Added
First Time Apple
Apple macos
Apple ipad Os
Apple iphone Os
References () https://support.apple.com/en-us/HT213982 - () https://support.apple.com/en-us/HT213982 - Vendor Advisory
References () https://support.apple.com/en-us/HT213983 - () https://support.apple.com/en-us/HT213983 - Vendor Advisory
References () https://support.apple.com/en-us/HT213984 - () https://support.apple.com/en-us/HT213984 - Vendor Advisory
References () https://support.apple.com/en-us/HT214038 - () https://support.apple.com/en-us/HT214038 - Vendor Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:14.0:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.4

21 Nov 2024, 08:23

Type Values Removed Values Added
References () https://support.apple.com/en-us/HT213982 - () https://support.apple.com/en-us/HT213982 -
References () https://support.apple.com/en-us/HT213983 - () https://support.apple.com/en-us/HT213983 -
References () https://support.apple.com/en-us/HT213984 - () https://support.apple.com/en-us/HT213984 -
References () https://support.apple.com/en-us/HT214038 - () https://support.apple.com/en-us/HT214038 -

22 Feb 2024, 19:07

Type Values Removed Values Added
Summary
  • (es) El problema se solucionó con controles mejorados. Este problema se solucionó en iOS 17.1 y iPadOS 17.1, macOS Ventura 13.6.3, macOS Sonoma 14.1, macOS Monterey 12.7.1. Una aplicación con privilegios de root puede acceder a información privada.

21 Feb 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-21 07:15

Updated : 2025-03-27 21:15


NVD link : CVE-2023-42952

Mitre link : CVE-2023-42952

CVE.ORG link : CVE-2023-42952


JSON object : View

Products Affected

apple

  • macos
  • ipad_os
  • iphone_os
CWE
NVD-CWE-noinfo CWE-269

Improper Privilege Management