CVE-2023-23536
The issue was addressed with improved bounds checks. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, macOS Big Sur 11.7.5, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, tvOS 16.4, watchOS 9.4. An app may be able to execute arbitrary code with kernel privileges.
- Affected products
- Apple Macos, Ios, Ipados, Macos Big Sur, Macos Monterey, Macos Ventura, Tvos, Watchos
- Apple Ipados
- < 15.7.4, 16.4
- Apple Iphone Os
- < 15.7.4
- Apple Macos
- < 13.3
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 0.3% (20th percentile)
- NVD status
- Modified
- Published
- 2023-05-08
CVE-2023-23536 at NVD
1 known exploit for CVE-2023-23536
Proof-of-concept code and exploit modules indexed by Sploitus