cve/2023/CVE-2023-32383.md

18 lines
846 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2023-32383](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32383)
![](https://img.shields.io/static/v1?label=Product&message=macOS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=unspecified%3C%2013.4%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=An%20app%20may%20be%20able%20to%20inject%20code%20into%20sensitive%20binaries%20bundled%20with%20Xcode&color=brighgreen)
### Description
This issue was addressed by forcing hardened runtime on the affected binaries at the system level. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. An app may be able to inject code into sensitive binaries bundled with Xcode.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds