cve/2023/CVE-2023-32383.md
2024-05-25 21:48:12 +02:00

18 lines
846 B
Markdown

### [CVE-2023-32383](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32383)
![](https://img.shields.io/static/v1?label=Product&message=macOS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=unspecified%3C%2013.4%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=An%20app%20may%20be%20able%20to%20inject%20code%20into%20sensitive%20binaries%20bundled%20with%20Xcode&color=brighgreen)
### Description
This issue was addressed by forcing hardened runtime on the affected binaries at the system level. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. An app may be able to inject code into sensitive binaries bundled with Xcode.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds