Path Handling Vulnerability in Apple iOS, iPadOS, and macOS Products
CVE-2023-42961
6.3MEDIUM
Summary
A path handling issue has been identified in Apple’s iOS, iPadOS, and macOS that could allow a sandboxed process to bypass established sandbox restrictions. This vulnerability has been addressed with improved validation measures in the latest software updates, including iOS 17, iPadOS 17, macOS Sonoma 14, and earlier versions. It is critical for users to update their devices to ensure they are protected against this potential security risk.
Affected Version(s)
iOS and iPadOS < 17
iOS and iPadOS < 16.7
macOS < 14
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved