A race condition was addressed with improved state handling. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, iOS 16.7.3 and iPadOS 16.7.3, macOS Sonoma 14.2. An app may be able to execute arbitrary code with kernel privileges.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/HT214034 | Vendor Advisory |
https://support.apple.com/en-us/HT214035 | Vendor Advisory |
https://support.apple.com/en-us/HT214036 | Vendor Advisory |
https://support.apple.com/en-us/HT214037 | Vendor Advisory |
https://support.apple.com/en-us/HT214038 | Vendor Advisory |
https://support.apple.com/en-us/HT214034 | Vendor Advisory |
https://support.apple.com/en-us/HT214035 | Vendor Advisory |
https://support.apple.com/en-us/HT214036 | Vendor Advisory |
https://support.apple.com/en-us/HT214037 | Vendor Advisory |
https://support.apple.com/en-us/HT214038 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
12 Dec 2024, 14:26
Type | Values Removed | Values Added |
---|---|---|
First Time |
Apple ipados
|
|
CPE | cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:* |
09 Dec 2024, 16:46
Type | Values Removed | Values Added |
---|---|---|
First Time |
Apple
Apple macos Apple iphone Os Apple ipad Os |
|
CPE | cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:* |
|
References | () https://support.apple.com/en-us/HT214034 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214035 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214036 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214037 - Vendor Advisory | |
References | () https://support.apple.com/en-us/HT214038 - Vendor Advisory |
Information
Published : 2024-03-28 16:15
Updated : 2024-12-12 14:26
NVD link : CVE-2023-42974
Mitre link : CVE-2023-42974
CVE.ORG link : CVE-2023-42974
JSON object : View
Products Affected
apple
- ipados
- iphone_os
- macos
- ipad_os
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')