2024-07-29 22:03:11 +00:00
{
"id" : "CVE-2023-40396" ,
"sourceIdentifier" : "product-security@apple.com" ,
"published" : "2024-07-29T21:15:11.453" ,
2024-12-10 15:06:06 +00:00
"lastModified" : "2024-12-10T14:46:06.510" ,
"vulnStatus" : "Analyzed" ,
2024-07-29 22:03:11 +00:00
"cveTags" : [ ] ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "The issue was addressed with improved memory handling. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, watchOS 10, tvOS 17. An app may be able to execute arbitrary code with kernel privileges."
2024-07-30 14:03:15 +00:00
} ,
{
"lang" : "es" ,
"value" : " Este problema se solucion\u00f3 con controles mejorados. Este problema se solucion\u00f3 en macOS Monterey 12.6.4, macOS Big Sur 11.7.5, macOS Ventura 13.3, iOS 16.4 y iPadOS 16.4. Un proceso en el espacio aislado puede omitir las restricciones del espacio aislado."
2024-07-29 22:03:11 +00:00
}
] ,
2024-08-01 14:03:18 +00:00
"metrics" : {
"cvssMetricV31" : [
2024-12-10 15:06:06 +00:00
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" ,
"baseScore" : 7.8 ,
"baseSeverity" : "HIGH" ,
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "LOW" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
"availabilityImpact" : "HIGH"
} ,
"exploitabilityScore" : 1.8 ,
"impactScore" : 5.9
} ,
2024-08-01 14:03:18 +00:00
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 6.6 ,
"baseSeverity" : "MEDIUM" ,
2024-08-01 14:03:18 +00:00
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "LOW" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "LOW" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "LOW"
2024-08-01 14:03:18 +00:00
} ,
"exploitabilityScore" : 1.8 ,
"impactScore" : 4.7
}
]
} ,
2024-12-10 15:06:06 +00:00
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "17.0" ,
"matchCriteriaId" : "B511B802-B0A2-412D-ADA4-8B783BDF1880"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "17.0" ,
"matchCriteriaId" : "E22CC7F9-F302-40B1-9B02-00FBC9805199"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "14.0" ,
"matchCriteriaId" : "7A5DD3D5-FB4F-4313-B873-DCED87FC4605"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "17.0" ,
"matchCriteriaId" : "93620AD0-115A-4F86-B533-76A190AF41A0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "10.0" ,
"matchCriteriaId" : "5A079CEF-8220-487C-B114-30BCC45647D6"
}
]
}
]
}
] ,
2024-07-29 22:03:11 +00:00
"references" : [
{
"url" : "https://support.apple.com/en-us/HT213936" ,
2024-12-10 15:06:06 +00:00
"source" : "product-security@apple.com" ,
"tags" : [
"Vendor Advisory"
]
2024-07-29 22:03:11 +00:00
} ,
{
"url" : "https://support.apple.com/en-us/HT213937" ,
2024-12-10 15:06:06 +00:00
"source" : "product-security@apple.com" ,
"tags" : [
"Vendor Advisory"
]
2024-07-29 22:03:11 +00:00
} ,
{
"url" : "https://support.apple.com/en-us/HT213938" ,
2024-12-10 15:06:06 +00:00
"source" : "product-security@apple.com" ,
"tags" : [
"Vendor Advisory"
]
2024-07-29 22:03:11 +00:00
} ,
{
"url" : "https://support.apple.com/en-us/HT213940" ,
2024-12-10 15:06:06 +00:00
"source" : "product-security@apple.com" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://support.apple.com/en-us/HT213936" ,
2024-12-10 15:06:06 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://support.apple.com/en-us/HT213937" ,
2024-12-10 15:06:06 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://support.apple.com/en-us/HT213938" ,
2024-12-10 15:06:06 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://support.apple.com/en-us/HT213940" ,
2024-12-10 15:06:06 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-07-29 22:03:11 +00:00
}
]
}