7.5
CVSSv3

CVE-2023-42844

Published: 25/10/2023 Updated: 02/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. A website may be able to access sensitive user data when resolving symlinks.

Vulnerable Product Search on Vulmon Subscribe to Product

apple macos

Vendor Advisories

About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...
About Apple security updates For our customers' protection, Apple doesn't disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available Recent releases are listed on the Apple security releases page Apple security documents reference vulnerabilities by CVE-ID whe ...

Mailing Lists

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-10-25-2023-4 macOS Sonoma 141 macOS Sonoma 141 addresses the following issues Information about the security content is also available at supportapplecom/kb/HT213984 Apple maintains a Security Updates page at supportapplecom/HT201222 which lists recent software upda ...
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 APPLE-SA-10-25-2023-5 macOS Ventura 1361 macOS Ventura 1361 addresses the following issues Information about the security content is also available at supportapplecom/kb/HT213985 Apple maintains a Security Updates page at supportapplecom/HT201222 which lists recent softwar ...