2023-09-27 16:00:29 +00:00
{
"id" : "CVE-2023-41979" ,
"sourceIdentifier" : "product-security@apple.com" ,
"published" : "2023-09-27T15:19:31.757" ,
2023-10-05 14:00:30 +00:00
"lastModified" : "2023-10-05T13:33:13.683" ,
"vulnStatus" : "Analyzed" ,
2023-09-27 16:00:29 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "A race condition was addressed with improved locking. This issue is fixed in macOS Sonoma 14. An app may be able to modify protected parts of the file system."
2023-10-03 08:00:28 +00:00
} ,
{
"lang" : "es" ,
"value" : "Se solucion\u00f3 una condici\u00f3n de ejecuci\u00f3n con un bloqueo mejorado. Este problema se solucion\u00f3 en macOS Sonoma 14. Es posible que una aplicaci\u00f3n pueda modificar partes protegidas del sistema de archivos."
2023-09-27 16:00:29 +00:00
}
] ,
2023-09-28 16:00:29 +00:00
"metrics" : {
"cvssMetricV31" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N" ,
"attackVector" : "LOCAL" ,
"attackComplexity" : "HIGH" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "REQUIRED" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "HIGH" ,
"availabilityImpact" : "NONE" ,
"baseScore" : 4.7 ,
"baseSeverity" : "MEDIUM"
} ,
"exploitabilityScore" : 1.0 ,
"impactScore" : 3.6
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-362"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "14.0" ,
"matchCriteriaId" : "7A5DD3D5-FB4F-4313-B873-DCED87FC4605"
}
]
}
]
}
] ,
2023-09-27 16:00:29 +00:00
"references" : [
2023-10-03 08:00:28 +00:00
{
"url" : "http://seclists.org/fulldisclosure/2023/Oct/3" ,
2023-10-05 14:00:30 +00:00
"source" : "product-security@apple.com" ,
"tags" : [
"Mailing List" ,
"Third Party Advisory"
]
2023-10-03 08:00:28 +00:00
} ,
2023-09-27 16:00:29 +00:00
{
"url" : "https://support.apple.com/en-us/HT213940" ,
2023-09-28 16:00:29 +00:00
"source" : "product-security@apple.com" ,
"tags" : [
"Release Notes" ,
"Vendor Advisory"
]
2023-09-27 16:00:29 +00:00
}
]
}