{ "id": "CVE-2023-40389", "sourceIdentifier": "product-security@apple.com", "published": "2024-06-10T20:15:12.753", "lastModified": "2024-11-21T08:19:20.950", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Ventura 13.6.5, macOS Monterey 12.7.4. An app may be able to access sensitive user data." }, { "lang": "es", "value": "El problema se solucion\u00f3 mejorando la restricci\u00f3n del acceso a los contenedores de datos. Este problema se solucion\u00f3 en macOS Ventura 13.6.5, macOS Monterey 12.7.4. Es posible que una aplicaci\u00f3n pueda acceder a datos confidenciales del usuario." } ], "metrics": { "cvssMetricV31": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N", "baseScore": 5.5, "baseSeverity": "MEDIUM", "attackVector": "LOCAL", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "REQUIRED", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "NONE" }, "exploitabilityScore": 1.8, "impactScore": 3.6 }, { "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "type": "Secondary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "baseScore": 5.5, "baseSeverity": "MEDIUM", "attackVector": "LOCAL", "attackComplexity": "LOW", "privilegesRequired": "LOW", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "NONE" }, "exploitabilityScore": 1.8, "impactScore": 3.6 } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "versionEndExcluding": "12.7.4", "matchCriteriaId": "80A8C181-92A9-459F-8DF5-466763A8FF1A" }, { "vulnerable": true, "criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.0", "versionEndExcluding": "13.6.5", "matchCriteriaId": "69C4F06A-061F-46B3-8BB7-5C9B47C00956" } ] } ] } ], "references": [ { "url": "https://support.apple.com/en-us/HT214083", "source": "product-security@apple.com", "tags": [ "Vendor Advisory" ] }, { "url": "https://support.apple.com/en-us/HT214085", "source": "product-security@apple.com", "tags": [ "Vendor Advisory" ] }, { "url": "https://support.apple.com/kb/HT214035", "source": "product-security@apple.com" }, { "url": "https://support.apple.com/kb/HT214036", "source": "product-security@apple.com" }, { "url": "https://support.apple.com/kb/HT214040", "source": "product-security@apple.com" }, { "url": "https://support.apple.com/kb/HT214041", "source": "product-security@apple.com" }, { "url": "https://support.apple.com/en-us/HT214083", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ] }, { "url": "https://support.apple.com/en-us/HT214085", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ] }, { "url": "https://support.apple.com/kb/HT214035", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "https://support.apple.com/kb/HT214036", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "https://support.apple.com/kb/HT214040", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "https://support.apple.com/kb/HT214041", "source": "af854a3a-2127-422b-91ae-364da2661108" } ] }