CVE-2023-41974
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, iOS 15.8.7 and iPadOS 15.8.7. An app may be able to execute arbitrary code with kernel privileges.
- Affected products
- Xnu Kernel, Ios, Ipados, Apple Macos
- Apple Ipados
- < 15.8.7, 17.0
- Apple Iphone Os
- < 15.8.7, 17.0
- Fix
- Available
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 1.4% (71th percentile)
- Weakness
- CWE-416
- NVD status
- Analyzed
- Published
- 2024-01-10
CVE-2023-41974 at NVD
3 known exploits for CVE-2023-41974
Proof-of-concept code and exploit modules indexed by Sploitus