Logic Issue in Gatekeeper Checks Affecting macOS Ventura
CVE-2023-40433

5.5MEDIUM

Key Information:

Vendor
Apple
Status
Vendor
CVE Published:
10 January 2024

Summary

A logic issue has been identified in macOS Ventura that involves a potential bypass of Gatekeeper checks. This vulnerability poses risks by allowing applications to circumvent critical security measures designed to protect users from malicious software. Apple has released fixes in macOS Ventura 13.3 to address this issue, enhancing the verification process to ensure that Gatekeeper functions correctly in safeguarding user systems.

Affected Version(s)

macOS < 13.3

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.