CVE-2023-42925

The issue was addressed with improved restriction of data container access. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access Notes attachments.
References
Link Resource
https://support.apple.com/en-us/HT213938 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213940 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213938 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213940 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

20 Mar 2025, 21:15

Type Values Removed Values Added
CWE CWE-200

Information

Published : 2024-07-29 21:15

Updated : 2025-03-20 21:15


NVD link : CVE-2023-42925

Mitre link : CVE-2023-42925

CVE.ORG link : CVE-2023-42925


JSON object : View

Products Affected

apple

  • iphone_os
  • ipados
  • macos
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor